On IROAD v9 devices, the dashcam has hardcoded default credentials ("qwertyuiop") that cannot be changed by the user. This allows an attacker within Wi-Fi range to connect to the device's network to perform sniffing.
The product contains a hard-coded password, which it uses for its own inbound authentication or for outbound communication to external components.