Hackers Expose Flock's Camera Surveillance System, Revealing Tracking Capabilities

The cameras operate continuously, capturing millions of vehicles daily
Most people photographed by Flock cameras have committed no crime and are under no suspicion.
Mark

So hackers got into Flock's system and pulled out the actual code. What does that tell us that we didn't already know?

Mimi

The code shows what the cameras actually record versus what Flock says they record. The company talks about license plates and vehicle identification, but the system is capturing much more—detailed images of occupants, surrounding areas, and it's building movement profiles across time and location.

Luke

But we should be careful here. We know hackers extracted code and shared findings with media. The specific capabilities you're describing—are those confirmed by independent analysis of the code, or are these the hackers' interpretations? There's a difference.

Mimi

Fair point. The media outlets that received the data did analyze it, but we're relying on their technical assessment. What's not in question is that the breach happened and that the data revealed more tracking capability than Flock's public statements acknowledge.

Mark

Why does this matter beyond the technical details? What changes because of this breach?

Mimi

It changes the conversation about what these cameras actually do. Flock has thousands of cameras deployed in hundreds of jurisdictions. Most police departments and the public only know what Flock tells them. Now there's evidence of the real scope.

Luke

Though we don't know yet if Flock's public statements were deliberately misleading or just incomplete. We also don't know if other camera companies have similar capabilities. This is one company, one breach.

Mark

What about the people whose movements are being tracked? Do they have any recourse?

Mimi

That depends entirely on the jurisdiction. Some cities have policies governing how police can use these cameras. Many don't. There's no federal standard. Most people don't even know the cameras exist or that their vehicle is being photographed and catalogued.

Luke

And we should note: we don't yet have Flock's response to any of this. They may have explanations for what the code shows, or they may dispute the researchers' interpretations. That's still pending.

  • Hackers penetrated Flock's camera network and pulled its operational source code, handing journalists a rare look inside a surveillance system deployed across hundreds of American jurisdictions.
  • What the code revealed went well beyond license plate reading — the cameras capture detailed images of vehicles, occupants, and surroundings, building movement profiles that persist in searchable databases with inconsistent oversight.
  • The breach tears open a credibility gap between Flock's crime-fighting marketing and the actual granularity of tracking its system enables, leaving police departments and the public with only the company's own word about what the technology does.
  • Civil liberties advocates are treating the stolen data as concrete confirmation of what they have long argued: these networks amount to mass surveillance of people who have done nothing wrong.
  • Flock has not publicly responded, while law enforcement agencies that rely on the cameras now face hard questions about transparency, oversight, and whether the infrastructure they deployed is itself secure.

In the quiet hum of American streets, thousands of cameras have been watching — and now, those who built the watchtowers have themselves been watched. Security researchers breached Flock Safety's surveillance network, extracting the company's operational code and sharing it with journalists, revealing a system far more expansive in its reach than public statements had suggested. The incident places a long-simmering tension into sharp relief: the infrastructure built to protect communities may itself be vulnerable, and the data it quietly accumulates about ordinary lives has been neither fully disclosed nor fully secured.

Security researchers broke into Flock Safety's camera network, extracted the company's software code, and distributed their technical findings to outlets including 404 Media, WIRED, and The Hill. What the code revealed has forced a public reckoning with how deeply these cameras have embedded themselves into the daily movement of American life.

Flock operates thousands of fixed and mobile cameras used by law enforcement to identify and track vehicles — marketed as tools for recovering stolen cars, locating suspects, and finding missing persons. Police departments across hundreds of jurisdictions have mounted them at intersections, on utility poles, and on patrol vehicles. The system captures license plate images and runs them against databases of flagged vehicles, but the hacked code tells a more expansive story: the cameras record detailed images of vehicles, their occupants, and surrounding areas, and the system can correlate movements across time and geography to build comprehensive profiles of individual vehicles and the people inside them.

Most of this data persists in Flock's systems, searchable by law enforcement under oversight standards that vary widely by jurisdiction. The company has not publicly disclosed the full scope of what it retains or for how long. Millions of vehicles are captured daily — the overwhelming majority driven by people under no suspicion and subject to no warrant.

The breach raises two distinct alarms. The first is about surveillance itself: the same infrastructure that helps find a stolen car also creates a permanent, searchable record of where ordinary people go and who travels with them. The second is about security: if researchers could penetrate Flock's systems, what else is exposed — and who else might be looking? For civil liberties advocates, the incident is a vindication. For law enforcement agencies that have quietly deployed these cameras with minimal public debate, it is an uncomfortable confrontation with questions of transparency and accountability they have largely deferred.

Security researchers broke into Flock's camera network and extracted the company's software code, then distributed their findings to journalists. What they discovered inside the system has forced a reckoning with how thoroughly these cameras monitor movement across American cities.

Flock operates thousands of fixed and mobile cameras that law enforcement agencies use to identify vehicles and track their movements. The company markets the technology as a tool for solving crimes—finding stolen cars, locating suspects, recovering missing persons. Police departments in hundreds of jurisdictions have installed the cameras at intersections, on utility poles, and mounted on patrol vehicles. The system works by capturing license plate images and running them against databases of vehicles flagged for various reasons: outstanding warrants, involvement in crimes, or simply being on a watchlist.

When the hackers gained access to Flock's infrastructure and pulled the camera's operational code, they were able to see exactly what the system records and how it processes that information. They shared their technical analysis with media outlets including 404 Media, WIRED, The Hill, and others. The findings revealed capabilities that go well beyond simple license plate recognition. The cameras are recording far more data than the company's public statements suggest—capturing not just plates but detailed images of vehicles, their occupants, and surrounding areas. The system's architecture shows how Flock integrates with law enforcement databases and enables tracking of specific vehicles across multiple camera locations and time periods.

The breach exposes a fundamental tension in surveillance infrastructure: the same technology that helps police locate a stolen vehicle or find a missing child also creates a persistent record of where ordinary people drive, when they drive, and who rides with them. The cameras operate continuously, capturing images of millions of vehicles daily, most of them driven by people who have committed no crime and are under no suspicion. That data persists in Flock's systems, searchable by law enforcement with varying levels of oversight depending on the jurisdiction.

Flock has not publicly disclosed the full scope of what its cameras record or how long the company retains images. The company's marketing materials emphasize the crime-fighting applications and the speed with which officers can identify vehicles of interest. But the hacked code tells a different story about the system's actual reach and the granularity of the tracking it enables. Researchers examining the stolen data found that the system can correlate vehicle movements across time and geography, building detailed movement profiles of individual vehicles and their occupants.

The breach raises urgent questions about the security of surveillance infrastructure itself. If hackers could penetrate Flock's systems, what other vulnerabilities exist in the cameras and networks that law enforcement relies on? What safeguards protect the massive database of vehicle images and movement records from unauthorized access or misuse? The incident also highlights the opacity surrounding how these systems actually work—most police departments and the public have only Flock's own descriptions of the technology's capabilities, not independent verification.

For civil liberties advocates, the breach is a vindication of long-standing concerns about mass surveillance infrastructure. They have argued that these camera networks, deployed with minimal public debate and often without clear policies governing their use, represent a form of pervasive tracking that chills freedom of movement. The hacked data provides concrete evidence of the scope and sophistication of what Flock cameras actually capture and how comprehensively they can track vehicles and people.

Flock has not yet responded publicly to the breach or the findings researchers shared with media. The company faces pressure to explain what happened, how the breach occurred, and what steps it is taking to secure its systems. Law enforcement agencies that have invested in Flock cameras are now confronting questions about the technology they have deployed in their communities and what level of oversight and transparency they have maintained over its use.

The cameras operate continuously, capturing images of millions of vehicles daily, most of them driven by people who have committed no crime
— Technical analysis of Flock's system capabilities
Contact Us FAQ