IoT: Pentest of a Connected Camera
sysdream.com
sysdream.com
This post is exceptional and goes into detail on how they connect to it via UART, then go about finding remote exploits using its internal code.
There are so many layers of hacking in this post, I love it. Rebuilding an Android app to ignore a conditional check, spotting some key base64 encoded information by pattern matching, renaming your AP to pipe a telnet daemon.
This is just tons of fun.