Post Al8CljWiM3bC4fv5fs by bert_hubert@fosstodon.org
 (DIR) More posts by bert_hubert@fosstodon.org
 (DIR) Post #Al8CljWiM3bC4fv5fs by bert_hubert@fosstodon.org
       2024-08-19T16:00:00Z
       
       0 likes, 0 repeats
       
       Recently, a Dutch hacker found a vulnerability allowing him to shut down 4 million solar power installations. A handful of mostly non-European places manage perhaps 100 GW of solar power in the EU. Any mishap there, or heaven forbid, a compromise, could easily shut down so much power that the European electricity grid would collapse. Shockingly, we regulate these massive control panels as if they are online birthday calendars. And that must change. https://berthub.eu/articles/posts/the-gigantic-unregulated-power-plants-in-the-cloud/
       
 (DIR) Post #AlEWuBYDD2rTL1gghE by stf@chaos.social
       2024-08-20T11:29:07Z
       
       0 likes, 0 repeats
       
       @bert_hubert our inverters have never been connected to the internet, there is absolutely no reason to do so. they are connected to a wifi AP that has no internet connectivity at all, so your phone app can still connect to them and do local management and looking at ugly telemetry. with a small (and non-consumer-grade python tooling i actually fake the cloud and stuff all the telemetry into grafana) and yes, all communication is cleartext and goes to china.... if i would let it.
       
 (DIR) Post #AlEWuCMuAZPXsFPAi8 by stf@chaos.social
       2024-08-20T11:33:15Z
       
       0 likes, 0 repeats
       
       @bert_hubert actually the inverters talk zigbee with a central APSystems ECU-R "information gateway" - some fine dutch people did most of the hard work reverse-engineering the protocol and providing nice homeassistant and openhab integration.the people installing the system were shocked that i refused to have it connected to the internet.
       
 (DIR) Post #AlEWuCsSHGeFS6AMt6 by lispi314@udongein.xyz
       2024-08-22T18:10:19.002663Z
       
       0 likes, 0 repeats
       
       @stf @bert_hubert Good to know that was done, at least.
       
 (DIR) Post #AlEWuDJOf6COnelssi by iska@catposter.club
       2024-08-22T18:26:06.054Z
       
       0 likes, 0 repeats
       
       @lispi314@udongein.xyz @stf@chaos.social @bert_hubert@fosstodon.org also, every inverter has an industry standard RS485 serial connector. You can get an adapter and connect it to any PC