Monday, October 24, 2016

Internet of Things (IoT) default/weak password revisit

 One article cited the use of IoT devices with default or weak passwords to attack a security blog. The same malware was released and then caused a widespread Internet outage. This use of the IoT botnets will probably continue.

 Another aspect to consider. The IoT devices you have on your network like cameras, DVRs, thermostats, etc. can be used against your home network just as easily. Please secure the password and access to all of your IoT devices if you are able. Some IoT devices have passwords set in firmware and thus can not be changed. Contact the vendors to have this vulnerability addressed or replace with like devices that can be secured. Segment your IoT devices on a separate network. A reboot of IoT devices with Mirai infections will clear the bot net from memory, but scanners from the Internet will find and re-infect within minutes.

 An interesting comment on the recent IoT events: A network designed to survive a nuclear was was brought down by toasters.

No comments:

Post a Comment