IoT is a vulnerable black-hole to attacks

41 篇文章 1 订阅
4 篇文章 0 订阅

IoT is hyping and may change our life more severly than ever before. But do we ready to its risk or disaster? It may be a a vulnerable black-hole to malicious attacks. Think about a vandal turns off your refrigerator, disable your security system or unlock your back door.

Some scenarios are more terrifying, such as a hacked pacemaker or a successful attack on a moving vehicle.

The things(devices) are exapanding rapidly with the arrival of the IoT, which enlarged network capability to a broad spectrum of devices that never had that capability before, such as office appliances like thermostats and refrigerators. As there devices become Internet-enabled, experts fear an embedded systems security worst-case scenario for enterprises, many of which are unaware of this risk or unable to mitigate them.

The rapid increse in nontranditional Internet-enabled devices means more potential enterprise entry points for attackers, because of embedded system troubing security history. Embedded system usually used wireless communication and proprietary components which can not be shared between each others. So if a bug is founded, it's less likely to be fixed due to cost and resource constraints. The embedded devices are often lack of computing resource, then it's difficult to implement complex schemes for security. Even if a software update is available,
enterprises often overlook these embedded devices because of low cost and low revenue.

The key to secure embedded devices is in securely designing them from the beginning. The hardware and fireware should be designed from the ground up to prevent access from malware and physical tampering. Encryption and fireware digital signature can be used. Using endpoint protection will block everything except whitelisted products.

Deploying embedded devices behind a gateway/hub or a virtual system is also a good choice. It's cost-efficient to update a new rule to stop new threats in a concentrated point.

Besides the tech, we also should pay more attention to the IoT security with better understanding and rules. According to a recently research, more than two-thirds of Forbes Global 2000 companies in the UK remain vulnerable to attacks that exploit incomplete remediation of the Heartbleed vulnerability in OpenSSL. Although the serious vulnerability was discovered and complete remediation also provided last year, still many enterprises overlooked this risk.

Better tech and better pre-prepartion can make our life more convenient and more comfortable. Neither can be ignored

  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值