< Back to all clusters
[TECHNOLOGY] · Austria, Germany · 2 sources

started · updated

Midea PortaSplit faces EU regulatory pressure and security flaws

The Midea PortaSplit portable air conditioning unit is facing two distinct challenges involving regulatory compliance and cybersecurity.

Under new European Union regulations, the device is under pressure due to the specific refrigerant it utilizes. The EU is progressively tightening requirements to phase out substances that contribute significantly to the greenhouse effect. While existing units in homes will not disappear overnight, the regulation creates a transition period affecting sales, stock management, and future manufacturing requirements for companies operating within the EU market.

Simultaneously, a security vulnerability has been identified regarding the device's Bluetooth Low Energy (BLE) functionality. Researchers discovered that unauthorized individuals in close proximity can bypass the standard app pairing and PIN security to control basic functions. By intercepting Bluetooth data, it is possible to calculate the necessary AES keys, allowing attackers to switch modes, change temperatures, or turn the unit on and off. This specific exploit is limited to the physical range of the Bluetooth signal and does not allow for remote access via the internet or the Midea cloud.

Entities

European Union · Midea · PortaSplit