Security and Monitoring of Sofar HYD 6000-ES Inverters for yourself - an investigation
A friend has a Sofar HYD 6000-ES hybrid PV inverter installed, and I was interested in The possible security implications of its nominal WiFi/Internet connection How to get the logging data directly into one's own software and bypass the "cloud" which is located in China! Security Issues In respect of the first point, this webpage has some interesting insights viz. the Access Point (AP) interface remains active even when you've configured it as a Station (STA) to access your home WiFi, including the following interfaces, according to the article: 53/UDP, DNS 80/TCP, HTTP 8899/TCP, Datalogger Info 48899/UDP, HF AT Interface Depressingly, the article shows how easy it is to hack the passwords from copies of the firmware :-/, so given the importance of the kit, it's probably good to take some remedial action. Possible actions: Access Point access: The configuration screens allow for the SSID to be hidden, which at least prevents casual detection/connection, althoug...