Off-Prem

Edge + IoT

Firmware update blunder bricks hundreds of home 'smart' locks

Automatic over-the-air upgrade will knacker front-door gear for at least five days


Hardware biz Lockstate has managed to brick hundreds of internet-connected so-called smart locks on people's front doors with a bad firmware update.

The upshot is you can't use the builtin keypad on the devices to unlock the door. Lockstate's smart locks are popular among Airbnb hosts as it allows them to give guests an entry code to get into properties without having to share physical keys. Lockstate is even a partner with Airbnb.

Earlier this week, though, new software was automatically sent out to folks' $469 Lockstate 6000i locks – one of the upstart's top residential smart locks – which left the keypad entirely useless. The crashed locks – which connect to your home Wi-Fi for remote control and monitoring as well as firmware updates – are now going to be out of action for at least a week.

"Your lock is among a small subset of locks that had a fatal error rendering it inoperable," the locksmiths said in an email sent to affected customers. "After a software update was sent to your lock, it failed to reconnect to our web service making a remote fix impossible."

Owners have two choices. They can either remove the back panel of the lock and send it in to the manufacturer so the software can be manually updated, which will take between five and seven working days. Alternatively they can ask for a replacement, which will take 14-18 days to ship, and then send back the junked lock.

Lockstate will cover all shipping costs for the locks and affected customers will also get one year of free Lockstate Connect, which is a subscription-based service that allows full remote control of all compatible smart home devices.

The physical key on the lock should still work, but that's going to be cold comfort for a lot of Airbnb users, who prefer to keep the physical keys to themselves and set an access code for each lodger that stops by.

In a statement to El Reg on Friday, Lockstate said firmware for its more advanced 7i model had mistakenly been sent to some 6000i customers. All the affected owners, understood to be at least 500 folks, have been contacted, we're told. ®

Send us news
119 Comments

Qualcomm and Qt partner to supercharge UI development for IoT devices

Plus: Qualy punts a 'micro-power' Wi-Fi system for the industrial kit

Some smart meters won't be smart at all once 2/3G networks mothballed

UK reckoning with prospect of millions of homes with obsolete hardware

Future Roku TVs may inject tailored ads into anything and everything when you pause

Muted the audio? That's an advert. Paused a video? That's an advert

CISA in a flap as Chirp smart door locks can be trivially unlocked remotely

Hard-coded credentials last thing you want in home security app

The S in IoT stands for security. You'll never secure all the Things

All too many 'smart' devices are security stupid

India celebrates rapid adoption of its internet of livestock

Latest piece of digital public infrastructure is positively beastly

Microsoft retires Azure IoT Central retirement announcement

And fails to clear up end-of-life debacle

China pushes 'AI Plus' initiative to integrate technology and industry

Beijing used a similar moniker for program that arguably gave us TikTok, Tencent, and Xiaomi

Microsoft 'retires' Azure IoT Central in platform rethink

After March, devs won’t be able to create new application resources, in 2027 the system will be shut down

Husqvarna ports Doom to a robot lawnmower – not, thankfully, its chainsaws

Seminal game runs on everything, so why not pay €2,199 to run it on a tiny screen?

Wyze admits 13,000 users could have viewed strangers' camera feeds

Customers report feeling violated following the security snafu

Is critical infrastructure prepared for OT ransomware?

As extortion tactics evolve, operational shutdowns are the next step