TechNewsReel
Live

Slovakia halts traffic camera rollout after finding Russian backdoors

National security officials discovered undocumented modules in 279 speed cameras allowing remote control via Russian phone numbers.

TechNewsReel Newsroom · August 21, 2026

Slovakia's National Security Authority (NBU) has paused the deployment of nearly 300 high-speed traffic cameras after discovering Russian-linked backdoors embedded in the hardware. The breach represents a significant compromise of national infrastructure, granting foreign entities potential remote access to the country's road monitoring networks.

The NBU identified an undocumented module within 279 NERO R-ONE cameras purchased by the Interior Ministry. Technical assessments show this module allows remote control of the devices via SMS commands sent from 12 specific Russian telephone numbers located in the Kemerovo and St. Petersburg regions. Further investigation revealed that the NERO R-ONE units are rebranded versions of the Cordon.Pro.M model, produced in St. Petersburg, Russia. Additionally, the devices allow passwordless access to live video streams for any user who possesses the broadcasting IP address.

Procurement and Political Fallout

The discovery has sparked a political firestorm in Bratislava, as the cameras were acquired through a no-bid direct deal. The contract was awarded to Sodasus, a Cyprus-based shell company that reportedly utilized fake certifications to secure the agreement. This lack of competitive bidding and oversight has led opposition lawmakers to call for the removal of Interior Minister Matúš Šutaj Eštok.

In response to the security concerns, Prime Minister Robert Fico attempted to downplay the risk, suggesting that military satellites are already advanced enough to read text on paper from orbit, implying that the cameras provided no unique intelligence advantage to Russia.

National Security Implications

Cybersecurity experts warn that this incident is a textbook example of how exported technology is weaponized for espionage. Peter Bator, a cybersecurity expert, stated, "This is a completely concrete example of how Russia uses technology that it sells for spying."

The ability to trigger shell access via SMS is particularly dangerous because it allows for the covert execution of malicious code. By bypassing traditional network security, the Russian state could potentially monitor traffic patterns, track specific vehicles, or use the cameras as a pivot point to enter other government networks. This mirrors patterns seen in Ukraine, where surveillance hardware was previously leveraged to coordinate attacks.

Next Steps

While the NBU has paused the rollout of the remaining units, the government must now determine the fate of the devices already installed in the field. It remains unclear whether the Interior Ministry will seek damages from the Cyprus-based vendor or if the entire fleet of NERO R-ONE cameras will be decommissioned and replaced with hardware from a verified, non-adversarial source.

Sources

Get a notification when a big story breaks. A few a day at most — no spam.