Previous in Forum: White City Streets   Next in Forum: Can Tesla Survive?
Close
Close
Close
8 comments
Rate Comments: Nested
Guru
United States - Member - New Member Popular Science - Cosmology - New Member Technical Fields - Education - New Member

Join Date: Jan 2014
Location: Albany, NY
Posts: 1187
Good Answers: 24

An Unanticipated Lapse in IoT Security

04/17/2018 3:38 PM

I did a little research on IoT security for a recent article. Let's say that the scales fell from my eyes at the [lack of] security, in part because companies don't realize how many entry points the crooks can find. This article tells the story of a perfect example.

How many of you work for organizations that have at least some level of understanding of and plans for IoT security?

Register to Reply
Interested in this topic? By joining CR4 you can "subscribe" to
this discussion and receive notification when new comments are added.
Guru

Join Date: Mar 2007
Location: by the beach in Florida
Posts: 33392
Good Answers: 1817
#1

Re: An unanticipated lapse in IoT security

04/17/2018 4:51 PM
__________________
All living things seek to control their own destiny....this is the purpose of life
Register to Reply
Guru

Join Date: Apr 2010
Location: About 4000 miles from the center of the earth (+/-100 mi)
Posts: 9910
Good Answers: 1141
#2

Re: An unanticipated lapse in IoT security

04/17/2018 8:12 PM

Anything connected to a computer network is a potential point of entry for hackers. The more doors and windows you have, the more likely one will be left unlocked and a burglar can break into your house. Same principle.

Register to Reply
Guru

Join Date: Oct 2009
Posts: 1460
Good Answers: 30
#3

Re: An unanticipated lapse in IoT security

04/18/2018 7:04 AM

I'm not an IT person, but it seems a bit daft that confidential customer files and fish tank data are even on the same network. If they are, then the key deficiency is in the firewall and password policy allowing that first entry into the network. How does one envisage multiple entry points?

Register to Reply
Guru
United States - Member - New Member Popular Science - Cosmology - New Member Technical Fields - Education - New Member

Join Date: Jan 2014
Location: Albany, NY
Posts: 1187
Good Answers: 24
#4
In reply to #3

Re: An unanticipated lapse in IoT security

04/18/2018 8:36 AM

Based on recent surveys, many entities have no idea how many back doors are on their corporate networks. If you don't know where they are, you can't protect them. The work involved in upgrading to a secure network probably $care$ the executives as much as the potential for serious breaches.

This article has a few links to best practices and other resources.

Register to Reply
Guru
Hobbies - CNC - New Member

Join Date: Jul 2013
Location: Lost Wages Nevada
Posts: 1578
Good Answers: 55
#5

Re: An Unanticipated Lapse in IoT Security

04/18/2018 4:35 PM

A few years ago, I remember that a secretary from the department I was in was the cause of a huge virus infection of the City of Henderson's computer network. Including the main servers too! It was a social engineering ploy and got her to simply "CLICK" on a hyperlink and that infected the network within minutes, IT called our facility and we were instructed to not touch any computers and any that were logged on, to log off and leave alone. It took them about 2 weeks to clean it up and the secretary got a little lecture on clicking on unknown e-mails! At the time, there really weren't ant IoT things but I can see where these items would be attached to the network just because a supervisor wanted a certain sensor or computer connection and they really didn't think about their computer also being connected to the City network. Whoops!

__________________
Though it does seem he frequently has a Swiss Army knife or Leatherman and a roll of duct tape with him.
Register to Reply
Guru

Join Date: Oct 2008
Posts: 42355
Good Answers: 1693
#6

Re: An Unanticipated Lapse in IoT Security

04/18/2018 6:59 PM

Ignorance is bliss.

Arrogance is fatal.

I have probably 5 different free credit checking sites "protecting" my credit because the most trusted organizations in the country are too arrogant to take the proper steps to protect their clients.

"Dear so and so. We regret to inform you, six months after the fact, that all your personal credit, banking, social security and health records have been stolen" (and probably sold by now). "We regret any inconvenience that this may cause you and assure you that in six or seven years you may be able to repair your credit to the point that you can rent an apartment. Good news, since you have no personal possessions after the various foreclosures and wage attachments, you don't need much room."

If there's anything we can do for you please do not hesitate to call on us. There's a pay phone at most police stations.

Register to Reply
Guru

Join Date: Apr 2015
Location: NYC until mid 2015, currently NC
Posts: 756
Good Answers: 8
#7

Re: An Unanticipated Lapse in IoT Security

04/18/2018 10:13 PM

My first intention was to respond that the bridge collapse in Florida was due to a "hack" of some relevant specs.

After reading all of the comments and articles, I'm beginning to think that my off the cuff thought might actually be true!

__________________
Good judgment comes from experience, and a lotta that comes from bad judgment.
Register to Reply
Guru
Engineering Fields - Power Engineering - New Member

Join Date: May 2007
Location: NYC metropolitan area.
Posts: 3230
Good Answers: 444
#8

Re: An Unanticipated Lapse in IoT Security

04/23/2018 7:27 PM

At one point I sold ethical (white hat) hacking services to major financial and legal firms as part of our internet security services. It took longer for the legal documents to be signed than it took the hackers to achieve their goal. The look on the internet security "experts" who swore it couldn't be done was priceless!

__________________
“Tell me and I forget. Teach me and I remember. Involve me and I learn.” Ben Franklin.
Register to Reply
Register to Reply 8 comments
Copy to Clipboard

Users who posted comments:

BestInShow (1); Casper71 (1); lyn (1); Original_Macgyver (1); phph001 (1); RAMConsult (1); Rixter (1); SolarEagle (1)

Previous in Forum: White City Streets   Next in Forum: Can Tesla Survive?

Advertisement