Yeah I totally agree with this list. In contrast, Coros had a pretty nonchalant response to their security issues last year. Attackers could:
> Hijacking the vicitim’s COROS account and accessing all data
> – Eavesdropping sensitive data, e.g. notifications
> – Manipulating the device configuration
> – Factory resetting the device
> – Crashing the device
> – Interrupting a running activity and forcing the recorded data to be lost [0]
The security firm disclosed the vulnerability to Coros in Mar 2025. They planned to fix it by the end of 2025, and didn’t address it until the security firm publicly released the finding.
[0]:https://www.dcrainmaker.com/2025/06/coros-confirms-substanti...