
No-open firmware exploit for the Wyze WLPA19CV2 color bulb
Wireless exploit for the Wyze WLPA19CV2 color bulb
The Wyze Color WLPA19CV2 bulbs have a factory test mode which allows a custom OTA image to be flashed wirelessly through a specific sequence of power cycling.
This project provides
"To break the lock on this ESP32, we're going to use an ESP32"
wyze-hijack-ap to an ESP32S3. Keep it powered on near the bulb.
Success!
The bulb now boots to the wyze-loader, which hosts an AP called wyze-loader_XXXXXX. Connect to this AP and navigate to http://192.168.4.1.
To set up with ESPHome, continue to the ESPHome guide.
I bought these at Microcenter and don't like that you need the cloud for control with Home Assistant. I wanted to flash Tasmota but the board was different.
Ironically, I started this to avoid spending half an hour soldering and instead wasted a weekend reverse engineering and developing.
See docs/TODO.md