TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

How to get root access to your Sleep Number bed

312 pointsby jandeboevrie11 months ago

21 comments

miah_11 months ago
Pretty wild. I used to have one of these beds, but it was before everything got &quot;smart&quot;. It had two corded controller&#x27;s hooked up to the pump. The controller displays the number and had up&#x2F;down arrow buttons to adjust.<p>No internet required. No Linux powered microcontroller required. My bed couldn&#x27;t get hacked. I slept in comfort.
评论 #40845876 未加载
评论 #40845736 未加载
评论 #40855131 未加载
评论 #40848738 未加载
protocolture11 months ago
&gt;The hub communicates with the Sleep Number servers by opening an SSH tunnel and providing a reverse tunnel back to the hub that their developers can use to connect to the hub and do maintenance when needed.<p>Kinda interested just to see what the parameters of this are like. Is it using PubkeyAuth or just password? Is it tunnelling home via ip or dns?<p>If everything is just right, I can imagine the setup for the most hilarious DNS hijack in human history.<p>In the immortal words of Homer Simpson. Bed goes up. Bed goes down.
评论 #40844858 未加载
评论 #40847815 未加载
dmitrygr11 months ago
Why does a bed need to run Linux? Why?<p>Of all the possible timelines, we live in the dumbest. What was wrong with a plain old bed without 1GB of RAM and a full OS running on it?! It is the same everywhere. Finding a washing machine that was not WiFi-connected was a chore and I dread doing it again in ten years.<p>As a person who&#x27;s broken into O(1000) &quot;smart&quot; devices (for fun and for profit both), I do not want them in my house, and avoiding them is getting harder due to insanity like this linux-running bed! Please make it stop!
评论 #40844086 未加载
评论 #40838720 未加载
评论 #40846352 未加载
评论 #40838698 未加载
评论 #40838717 未加载
评论 #40838807 未加载
评论 #40838848 未加载
评论 #40845198 未加载
peteforde11 months ago
Funny part to me is that I fully assumed that this was a post about hacking Eight Sleep beds by someone who didn&#x27;t want to explicitly name the company, presumably for vague legal reasons.<p>Then I got to a picture of an apparently real &quot;Number Sleep Hub&quot; and my mind was blown. WTF are we in a timeline so weird that there are two companies making water cooled beds, one is called Eight Sleep and the other is Sleep Number? It&#x27;s like the RNG for this instance had a bad seed.
评论 #40842904 未加载
评论 #40841027 未加载
评论 #40844947 未加载
评论 #40844847 未加载
评论 #40842902 未加载
评论 #40843954 未加载
评论 #40840059 未加载
评论 #40843475 未加载
评论 #40843728 未加载
评论 #40846176 未加载
blopker11 months ago
There&#x27;s a similar method to get into an Eight Sleep Pod 3 [0]. This requires less extra hardware though since some models come with a MicroSD card that you can modify. The method used in TFA might be a good way to get root on Pods without the card. That being said, I just learned that while Eight Sleep does sign their firmware updates, they also send you the private key used to sign the update in the same package.<p>[0]: <a href="https:&#x2F;&#x2F;github.com&#x2F;bobobo1618&#x2F;ninesleep">https:&#x2F;&#x2F;github.com&#x2F;bobobo1618&#x2F;ninesleep</a>
评论 #40851270 未加载
whatsakandr11 months ago
I&#x27;m interested if anyone has pulled the same thing with eight sleep. Not having access to control my bed&#x27;s temperature because my internet is out bothers me deeply.
评论 #40842501 未加载
评论 #40843246 未加载
评论 #40848098 未加载
Animats11 months ago
OK, not buying Sleep Number.<p>I slept on inflatable mattresses for years, until the company making them started outsourcing to China and the seams on the internal baffles broke on two mattresses.
KennyBlanken11 months ago
&gt; r: Following this guide will require modifying internal files on your Sleep Number hub. This will void your warranty<p>People, stop spreading this BS.<p>Just like those stickers that say &quot;warranty void if removed&quot; are not legally enforceable, nothing &quot;automatically&quot; invalidates your product&#x27;s warranty except misuse or poor maintenance.<p>If your Smart Bed stops working, you having poked around in the controller does not relieve the manufacturer from their warranty obligations (including implied warranty.) The onus is on them to prove that you damaged it, subjected it to &quot;unreasonable&quot; use, or did not properly maintain it.<p>You fry the bed&#x27;s brain trying to hook up a JTAG when you accidentally bridge 5V to a 3.3V logic circuit? That&#x27;s on you.<p>The controller fails because the power supply blows? The fact that you installed a JTAG header, googly eyes, and painted it pink is irrelevant. They need to fix your shit.<p>Even if you modify the firmware, <i>it&#x27;s on them to prove your modifications caused the failure</i>.<p>Would you expect to have your laptop&#x27;s warranty invalidated because you use it to game (which generates lot of heat)? Of course not. How about if you install Firefox? Or install Linux? Again, of course not. So why do you think the rules change just because a device is &quot;dumber&quot;?
评论 #40839238 未加载
Animats11 months ago
Next, ransomware. &quot;Pay us $1000 or you won&#x27;t be able to sleep in your bed for the next month&quot;.
评论 #40843310 未加载
评论 #40843437 未加载
colechristensen11 months ago
Here are some facts for you<p>* sleep number beds have sensors in them that detect heart rate<p>* they do this by detecting pressure differences in the air mattress<p>* these are effectively microphones, right? and quite sensitive
评论 #40847005 未加载
thunkshift111 months ago
Thats a brand new sentence
banish-m411 months ago
If you want to peek into consumer or any electronics.. probe with a signal analyzer for the usual suspects: RS-232 (TTL-levels, CMOS-levels, and serial-levels), JTAG, SPI, and I2C.<p>First, probe header pins and test points (rows of pads not meant for components) before probing around other components.<p>PSA: If you&#x27;re designing a PCB for hand-testing, save money by eliminating connectors with tag connect plug of nails. They&#x27;re also compatible with automated board testing.
perryizgr811 months ago
This bed has 1 GB of RAM. I used to play FIFA and Max Payne on a PC that had only 256 MB.
surfingdino11 months ago
Cool, but I liked this bed-related hack better <a href="https:&#x2F;&#x2F;techcrunch.com&#x2F;2009&#x2F;12&#x2F;12&#x2F;newlywed-sex-tweets&#x2F;" rel="nofollow">https:&#x2F;&#x2F;techcrunch.com&#x2F;2009&#x2F;12&#x2F;12&#x2F;newlywed-sex-tweets&#x2F;</a>
classified11 months ago
I have an analog bed. No root access necessary for sleeping.
linker300011 months ago
Best add &#x27;solder&#x27; to your shopping list unless you already have some, or the new iron you buy comes with a starter amount.
评论 #40846779 未加载
alduin3211 months ago
With climate change and our general impact on environment worsening each year, our relationship with technology is starting to be like a big elephant in the room. Do people really think a sustainable and equitable society is possible while having microprocessors and telecommunication devices in beds ?<p>This kind of luxury will always be reserved to the wealthiest in society, and its availability dependent on the relentless exploitation of land and human beings.
评论 #40845088 未加载
评论 #40845442 未加载
评论 #40846310 未加载
评论 #40846010 未加载
dailykoder11 months ago
I don&#x27;t have to do any hacks to use my Lidl mattress. It just works. Am I doing something wrong here?
评论 #40844180 未加载
teddyh11 months ago
Buried lede: “What I did find was a &quot;convenient&quot; backdoor that Sleep Number can use to SSH back into the hub (and my internal home network as a result).”
评论 #40839335 未加载
评论 #40842617 未加载
评论 #40839320 未加载
评论 #40838865 未加载
评论 #40838711 未加载
评论 #40842528 未加载
cs70211 months ago
Wait, this is about <i>an actual bed</i> -- you know, the kind that you sleep on -- that <i>runs an SSH server on Linux</i>?<p>W. T. F. !?
评论 #40839439 未加载
评论 #40840713 未加载
评论 #40839155 未加载
评论 #40838797 未加载
评论 #40842531 未加载
grotorea11 months ago
Anyone else getting cloudfare blocked on TFA?
评论 #40848061 未加载
评论 #40843194 未加载
评论 #40842537 未加载