# TP-Link Kasa cameras leaked home GPS via unauthenticated UDP for 6 years

A security vulnerability in TP-Link Kasa cameras exposed the GPS coordinates of users' homes via unauthenticated UDP packets for over six years. The flaw allowed anyone on the network to extract location data without authentication. This poses a significant privacy risk for millions of users who may have been unknowingly broadcasting their home addresses.

**Importance:** 3/5

## Sources

### Technology
- [Hacker News](https://github.com/BadChemical/IoT-Vulnerability-Research-Public/blob/main/TP-Link_Kasa_EC71/Kasa_EC71.md) — Fri, 17 Jul 2026 21:42:43 +0000