Researchers at Pen Test Partners found flaws that could allow remote hackers to retrieve real-time GPS coordinates of kids GPS-tracking watches. The Gator line had been in the spotlight in 2017 for having a raft of vulnerabilities, called out by the Norwegian Consumers Council in its WatchOut research. The flaw was easy-to-exploit, severe privilege-escalation vulnerability: The system failed to validate that the user had the appropriate permission to take admin control. Attackers could also call kids on their watches, eavesdrop on their conversations and intercept personal information about them.
Source: https://threatpost.com/kid-tracking-watches-location-data/141335/

