IoT is Insecure, Get Over It! Say Researchers

Solarquest

Moderator
Thread author
Verified
Staff Member
Malware Hunter
Well-known
Jul 22, 2014
2,525
BOSTON—Noted security experts Charlie Miller and Chris Valasek said the Internet of Things can’t be secure, but it can be tamed.

Drawing from their car hacking experience, the two spent the morning contemplating the larger universe of IoT security and conceded that there will always be thousands of connected devices that will never be secure, and that industry should prioritize personal safety and the security of automobiles and medical devices, for example, over toothbrushes and door locks.
“We write code and we are not perfect. The problem is, great security is expensive. You can’t just keep looking for vulnerabilities. You need to ship product and accept the fact you can’t solve security,” said Miller, who along with Valasek are principal autonomous vehicle security architects at GM’s Cruse Automation. The comments were made during a keynote at the Black Duck Software’s Flight 2017 conference.

...
...
 

Solarquest

Moderator
Thread author
Verified
Staff Member
Malware Hunter
Well-known
Jul 22, 2014
2,525
..if they say so....
I personally think all companies have to provide at least a minimum level of security, a minimum you would expect from a "diligent person" that works in the field.
Even a "toaster", a "touthbrush" IOT manufacturer should think at security since if the toaster/toothbrush get hacked all network could be at risk.
I also think that we learn from doing, from mistakes.
If we keep on learning, patchin, improving...hacking gets more and more difficult.
If companies just "concentrate" (spend some money) in the popular or hopefully more sensible products the other ones keep on being vulnerable.
How many bugs were found in the past? How many were patched and how many not?
How many products are still vulnerable because companies didn't want to patch even when vulnerability were found and disclosed????
I get back to my old thought, we need minimum security standards per law and (high) fines for all companies that don't follow them.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top