A vigilante is putting a huge amount of work into infecting IoT devices

Caporegime
Joined
18 Oct 2002
Posts
26,102
Most IoT devices are a dumpster fire when it comes to security. It gets even worse when a company that isn't traditionally the sort that would have an infosec department (like someone who makes fridges) decides to buy IoT integration off the shelf from some random Shenzhen tat merchant, as the company simply isn't geared up to handle any sort of reporting of security issues and respond to them in an adequate way.

There is zero chance I'd be opening ports through to a CCTV recorder or leaving UPnP enabled for the devices to do it themselves. If you want to access stuff inside your network on the move then use a VPN.
 
Soldato
Joined
24 Feb 2003
Posts
4,203
Location
Stourport-On-Severn
They are only as unsecure as we allow them to be. For the average "joe public" that wants his fridge to tell him he is low on milk......................that's something he will never think about. Much in the same way most peeps never think about the security of a smart TV.
 
Man of Honour
Joined
13 Oct 2006
Posts
91,164
If what is going around on some darker corners of the internet is true then some people are putting a huge amount of work into being able to infect IoT devices with a crypto payload which can then reinfect a network later (potentially over and over) after you think you've cleaned out the infection when it first appears.

I can't stress enough if you have important data make sure you have offline copies that can be write protected and/or cloned to recover from.
 
Soldato
Joined
29 May 2005
Posts
4,899
I always have a feeling that we are always going to be on the loosing side of this battle. The hackers just get better with each cycle. their coding gets more sophisticated along with the increase in software advances, hardware capabilities and ultimately capacity of the net.
 
Associate
Joined
15 May 2015
Posts
103
Used to work for a major electronics retailer that would always get us to push sales of IoT. Very difficult when so many of the public are more concerned about privacy than the gimmicky features offered by many IoT products.
 
Soldato
Joined
18 Oct 2002
Posts
18,296
Location
Brighton
Security is seemingly an afterthought with IoT, it's all well and good being technically savvy enough to mitigate this by segregating the devices but the average user doesn't 1) care 2) know how, so they just get plonked on the network with everything else.

Very difficult when so many of the public are more concerned about privacy than the gimmicky features offered by many IoT products.

That's actually quite refreshing to hear if that's true.
 
Back
Top Bottom