MAC address vendor

Hangzhou Gubei Electronics Technology Co., Ltd. (BroadLink) — 3 prefixes (MA-L)

Primary prefix
78:0F:77
Block
MA-L
Status
Active

Summary

// what this is
HangZhou Gubei Electronics Technology is registered to MAC prefix 78:0F:77 and 2 more in the IEEE OUI database. When a device's MAC address begins with 78:0F:77, that block was registered by HangZhou Gubei Electronics Technology — the OUI identifies the maker of the network hardware, which is not always the brand on the device.
// analyst note
Three separate OUI assignments plus independent, non-vendor corroboration of the BroadLink product line indicate a real, deployed IoT manufacturer rather than a bare single-OUI shell registration.
[ 01 ] — Context

About this vendor.

Updated  ·  Confidence: Medium

A MAC address beginning with 78:0F:77, 34:EA:34, or C8:F7:42 belongs to Hangzhou Gubei Electronics Technology Co., Ltd., a Chinese IoT manufacturer that trades under the consumer brand BroadLink, typically seen on Wi-Fi smart plugs, universal IR/RF remote controllers, smart wall switches, environment sensors, and connected security devices.

The company is registered with IEEE at Room 106, No.611 Jianghong Road, Binjiang District, Hangzhou, Zhejiang, China 310052, and holds three separate MA-L assignments rather than a single bare registration — a pattern consistent with an active manufacturer shipping multiple product lines over time rather than a shell registrant.

Independent, non-vendor sources corroborate the device context: B2B/company-profile listings describe the same product line (smart plugs, universal remotes, switches, sensors), and BroadLink's own App Store listing confirms the companion app is named "e-Control." Third-party IoT security research (Attify) treats BroadLink hardware as a real, deployed consumer product, not just a marketing claim.

That security research (Attify blog) demonstrates an evil-twin Wi-Fi attack against the Broadlink A1 air-quality sensor: an attacker who already knows the target network's SSID and password sets up a spoofed access point with matching credentials, sends deauthentication packets to force the device off its legitimate network, and the device automatically reconnects to the spoofed AP — after which the attacker can query it directly using an unofficial third-party Python client. This is researcher-sourced, not vendor-confirmed, and is narrower than a phishing flow: the article's fake-firmware-update-prompt scenario is a generic illustration of evil-twin attacks in general, not something demonstrated against this vendor's hardware. A separately circulated claim of an undocumented firmware "suicide" reset function on BroadLink devices could not be corroborated against a primary source and is not asserted here.

Third-party aggregators list registration dates of 2016-04-27, 2017-12-11, and 2018-10-13 for the three prefixes. IEEE's public OUI registry publishes no assignment dates at all, so these are database-scrape artifacts, not IEEE facts, and are not recorded here as authoritative.

IEEE assignment
3 prefixes (78:0F:77, 34:EA:34, C8:F7:42) → HangZhou Gubei Electronics Technology Co.,Ltd, registered Hangzhou, Zhejiang, China [Confirmed] — IEEE MA-L
Registry / block size
MA-L (24-bit OUI); 3 IEEE prefixes on file for this registrant [Confirmed] — IEEE the IEEE MA-L registry; cross-checked against rst.im and maclookup.app
HQ / country
Room 106, No.611 Jianghong Road, Binjiang District, Hangzhou, Zhejiang, China 310052 [Confirmed] — IEEE MA-L
Company status
active; consumer brand BroadLink [Likely] — linkedin.com/company/broadlink-hangzhou-gubei-electronics-technology-co-ltd-, zoominfo.com
Device types
Wi-Fi smart plugs, universal IR/RF remote controllers, wall switches, environment sensors, security systems, soundbars [Likely] — rst.im, globalsources.com, tradewheel.com
Notable products
BroadLink "e-Control" app-paired smart home line [Likely] — blog.attify.com, apps.apple.com/us/app/broadlink-e-control/id793152994
Verified sample prefixes (all MA-L, this registrant)
78:0F:77, 34:EA:34, C8:F7:42 [Confirmed] — IEEE the IEEE MA-L registry
Registration dates
third-party aggregators list 2016-04-27 (34:EA:34), 2017-12-11 (78:0F:77), 2018-10-13 (C8:F7:42) — explicitly NOT IEEE facts [Unknown as IEEE fact] — maclookup.app, rst.im
Security note
independent research (Attify blog) demonstrates an evil-twin Wi-Fi attack against the Broadlink A1 — an attacker with prior knowledge of the network's SSID/password sets up a spoofed access point, deauthenticates the device, and the device auto-reconnects to the spoofed AP, after which it can be queried directly via an unofficial Python client; not vendor-confirmed or cross-checked against a primary CVE database. A separately circulated claim of an undocumented firmware "suicide" reset function on BroadLink devices could not be corroborated against a primary source and is not asserted here
[Likely] — blog.attify.com
Related vendors
none independently confirmed [Unknown]
Analyst note
three separate OUI assignments plus independent security-research coverage of BroadLink hardware indicate a real, deployed IoT product line rather than a bare-shell registration.
[ 02 ] — OUI prefixes

Assignments by IEEE.

3
// registered prefixes3
  1. 78:0F:77MA-L
  2. 34:EA:34MA-L
  3. C8:F7:42MA-L
[ 03 ] — Related

Keep digging.