Get the latest tech news

Bambu Connect's Authentication X.509 Certificate and Private Key Extracted


Hot on the heels of Bambu Lab’s announcement that it would be locking down all network access to its X1-series 3D printers with new firmware, the X.509 certificate and private key from the Ba…

This application was intended to be the sole way for third-party software to send print jobs to Bambu Lab hardware as we previously reported. The Bambu Connect app is a fairly low-effort Electron-based affair, with some attempt at obfuscation and encryption, but not enough to keep prying eyes out. The de-obfuscated main.js file can be found here, with the certificate and private key clearly visible.

Get the Android app

Or read this on Hacker News

Read more on:

Photo of authentication

authentication

Photo of bambu connect

bambu connect

Photo of x.509 certificate

x.509 certificate

Related news:

News photo

The "email is authentication" pattern

News photo

Tell HN: X stopped requiring authentication, nitter works again

News photo

Critical SAP flaw allows remote attackers to bypass authentication