{"id":14927,"date":"2017-01-25T19:44:31","date_gmt":"2017-01-25T14:14:31","guid":{"rendered":"https:\/\/blog.resellerclub.com\/?p=14927"},"modified":"2025-02-28T06:54:12","modified_gmt":"2025-02-28T06:54:12","slug":"a-look-into-iot-security-and-vulnerabilities","status":"publish","type":"post","link":"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/","title":{"rendered":"A Look Into IoT Security and Vulnerabilities"},"content":{"rendered":"<p><span style=\"font-weight: 400;\">Looking at the top left in Google Chrome, you may see a red X&#8211;Google\u2019s way to denote unsecured SSL (Secure Sockets Layer). Non-HTTPS sites also face consequences of the 2016 update to Google\u2019s security measures, potentially confusing WordPress users and other login pages that appear to have been compromised (while this is just Google\u2019s way of denoting a non-HTTPS site).<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Also, as consumer electronics manufacturers release new and more complex gadgets, security is likely to be the last thing on people&#8217;s minds. Devices like Apple\u2019s HomeKit turn your iPhone or iPad into a remote control for lights, locks, the thermostat, window shades and even your doorbell, making typical iOS functions like Siri voice-based extensions of controlling a smart home.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Yet even if most electronics on a home network employ top security standards, all it takes is a faulty webcam for an attack to happen.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">We just saw this with internet infrastructure company Dyn in late October of 2016. Mirai malware took advantage of default, easy-to-guess passwords on the webcams of unsuspecting consumers, leading to a massive Distributed Denial of Service (DDoS) attack temporarily shutting down popular sites like Twitter and PayPal.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Along with Apple\u2019s Authentication Coprocessor, HomeKit\u2019s end-to-end encryption helps mitigate the risk of hacking. The coprocessor only sends a certificate that allows an iOS device to unlock an accessory (like your home\u2019s light dimmers, thermostat and power meter) after the accessory completes a challenge sent by the iOS device. Any Internet of Things device that connects to this network, however, may not have the same robustness rules in place.<\/span><\/p>\n<p><a href=\"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2017\/01\/ArxanIG_960.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-14929\" src=\"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2017\/01\/ArxanIG_960.jpg\" alt=\"ArxanIG_960\" width=\"960\" height=\"3600\"><\/a><\/p>\n<p><span style=\"font-weight: 400;\">According to this graphic from Arxan, the number of devices connected to the internet reached 6.4 billion in 2016. According to <\/span><a href=\"http:\/\/www.cisco.com\/c\/en\/us\/about\/security-center\/secure-iot-proposed-framework.html\"><span style=\"font-weight: 400;\">cisco<\/span><\/a><span style=\"font-weight: 400;\">, the estimate number of connected devices is expected to grow to 50 billion by 2020! Thus, in-home communication network security is only half the battle for consumers, as the cars they drive are increasingly becoming connected as well. Car manufacturers have different OEMs when it comes to displays and in-vehicle digital storage, meaning that all devices in a connected car may not use end-to-end encryption. Code scanners can interrupt critical functions and<\/span><a href=\"https:\/\/www.arxan.com\/solutions\/automotive-iot\/\"> <span style=\"font-weight: 400;\">if you look further into automotive IoT security<\/span><\/a><span style=\"font-weight: 400;\"> you\u2019ll find that many parts of a vehicle that have been around for years&#8211;like the OBD2 port for engine diagnostics and on-board computers&#8211;could potentially be decrypted and injected with malware.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">On the issue of DDoS attacks, Arxan CMO Mandeep Khera explains that \u201chackers go after the weakest attack vectors and it\u2019s increasingly apparent that IoT infrastructure from devices and sensors to the embedded software to APIs is the weakest link.\u201d<\/span><\/p>\n<p><span style=\"font-weight: 400;\">The idea of a smart home we see today has been around since the early 2000s, when structured wiring came into focus as a way to connect video and networking devices to DSL, which offered higher speed internet access than over a phone line. Fast forward to wireless technology in 2016, and connected homes are easier to set up, but vulnerable in different ways.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">A lot of today\u2019s IoT hardware, including the consumer webcams that were hacked during the DDoS attack targeting Dyn\u2019s infrastructure, can still access Telnet after changing the default username and password of the system. This keeps the door open for remote hacking and without wireless chip security standards you find in HomeKit, it can be more difficult to build a secure network of non-iOS devices.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">Cisco neatly outlines the security challenges within IoT systems including Management of multi-party networks, crypto resilience, physical protection and more in <\/span><a href=\"http:\/\/www.cisco.com\/c\/en\/us\/about\/security-center\/secure-iot-proposed-framework.html\"><span style=\"font-weight: 400;\">this<\/span><\/a><span style=\"font-weight: 400;\"> article. <\/span><\/p>\n<p><span style=\"font-weight: 400;\">This detailed <\/span><a href=\"http:\/\/www.ibm.com\/developerworks\/library\/iot-trs-secure-iot-solutions1\/index.html\"><span style=\"font-weight: 400;\">article by IBM<\/span><\/a><span style=\"font-weight: 400;\"> highlights things you can do to secure your IoT devices with mechanisms such as User ID authentication, One Time Passwords, server unique ID authentication and more and offers comprehensive ways to implement such mechanisms.<\/span><\/p>\n<p dir=\"ltr\"><em>Contributors:<\/em><\/p>\n<ul>\n<li dir=\"ltr\">\n<p dir=\"ltr\"><em>Graphic and content contributor: Arxan Technologies<\/em><\/p>\n<\/li>\n<li dir=\"ltr\">\n<p dir=\"ltr\"><em>Arxan is an application attack-prevention and self-protection firm with products for Internet of Things (IoT), Mobile, Desktop, and other applications. The company\u2019s headquarters and engineering operations are based in the United States with global offices in EMEA and APAC.<\/em><\/p>\n<\/li>\n<li dir=\"ltr\">\n<p dir=\"ltr\"><em>Quote contributor: Mandeep Khera, Arxan CMO<\/em><\/p>\n<\/li>\n<\/ul>\n<p><a href=\"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2017\/01\/image.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-thumbnail wp-image-14935\" src=\"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2017\/01\/image-183x200.png\" alt=\"image\" width=\"183\" height=\"200\"><\/a><\/p>\n<p>&nbsp;<\/p>\n<ul>\n<li dir=\"ltr\">\n<p dir=\"ltr\"><em><span id=\"m_-8049301729949078523gmail-docs-internal-guid-ef45f98e-085f-1a2d-beb9-9c2d0400255d\">Mandeep Khera, who gave a quote for this article, is responsible for all marketing and business development functions globally for Arxan. Mandeep brings over two decades of experience in Software\/SaaS\/Managed Services Marketing in the areas of application security, IoT, Big Data and other enterprise software applications to Arxan.<\/span><\/em><\/p>\n<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<div class=\"fb-background-color\">\n\t\t\t  <div \n\t\t\t  \tclass = \"fb-comments\" \n\t\t\t  \tdata-href = \"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/\"\n\t\t\t  \tdata-numposts = \"10\"\n\t\t\t  \tdata-lazy = \"true\"\n\t\t\t\tdata-colorscheme = \"light\"\n\t\t\t\tdata-order-by = \"social\"\n\t\t\t\tdata-mobile=true>\n\t\t\t  <\/div><\/div>\n\t\t  <style>\n\t\t    .fb-background-color {\n\t\t\t\tbackground:  !important;\n\t\t\t}\n\t\t\t.fb_iframe_widget_fluid_desktop iframe {\n\t\t\t    width: 100% !important;\n\t\t\t}\n\t\t  <\/style>\n\t\t  ","protected":false},"excerpt":{"rendered":"<p>Looking at the top left in Google Chrome, you may see a red X&#8211;Google\u2019s way to denote unsecured SSL (Secure Sockets Layer). Non-HTTPS sites also face consequences of the 2016 update to Google\u2019s security measures, potentially confusing WordPress users and other login pages that appear to have been compromised (while this is just Google\u2019s way<\/p>\n","protected":false},"author":40,"featured_media":14941,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1529,813,1533],"tags":[],"hashtags":[],"class_list":{"0":"post-14927","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-marketing","8":"category-website-security-2","9":"category-tech"},"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v17.1 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>A Look Into IoT Security and Vulnerabilities<\/title>\n<meta name=\"description\" content=\"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"A Look Into IoT Security and Vulnerabilities\" \/>\n<meta property=\"og:description\" content=\"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/\" \/>\n<meta property=\"og:site_name\" content=\"ResellerClub Blog\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/profile.php?id=100005889763273\" \/>\n<meta property=\"article:published_time\" content=\"2017-01-25T14:14:31+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-02-28T06:54:12+00:00\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Amrita\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/#website\",\"url\":\"https:\/\/www.resellerclub.com\/blog\/\",\"name\":\"ResellerClub Blog\",\"description\":\"Web Hosting &amp; Domains\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.resellerclub.com\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/#primaryimage\",\"inLanguage\":\"en-US\",\"url\":\"\",\"contentUrl\":\"\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/#webpage\",\"url\":\"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/\",\"name\":\"A Look Into IoT Security and Vulnerabilities\",\"isPartOf\":{\"@id\":\"https:\/\/www.resellerclub.com\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/#primaryimage\"},\"datePublished\":\"2017-01-25T14:14:31+00:00\",\"dateModified\":\"2025-02-28T06:54:12+00:00\",\"author\":{\"@id\":\"https:\/\/www.resellerclub.com\/blog\/#\/schema\/person\/3022c632f8c79376e89b21ebd7e3c777\"},\"description\":\"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!\",\"breadcrumb\":{\"@id\":\"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.resellerclub.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"A Look Into IoT Security and Vulnerabilities\"}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/#\/schema\/person\/3022c632f8c79376e89b21ebd7e3c777\",\"name\":\"Amrita\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.resellerclub.com\/blog\/#personlogo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2019\/08\/amrita.k-150x150.jpg\",\"contentUrl\":\"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2019\/08\/amrita.k-150x150.jpg\",\"caption\":\"Amrita\"},\"description\":\"Amrita Konaiagari is the Team Lead for Content Marketing at Endurance International Group (APAC). She is also the Editor of the ResellerClub blog. She holds a Bachelor\\u2019s Degree in Psychology from St. Xavier\\u2019s College, Mumbai and a Master\\u2019s Degree in Communication & Journalism from the Mumbai University. She has 9 years of experience in Digital Marketing. She has a passion for home decor and hopes to one day be a book author.\",\"url\":\"https:\/\/www.resellerclub.com\/blog\/author\/amrita-k\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"A Look Into IoT Security and Vulnerabilities","description":"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/","og_locale":"en_US","og_type":"article","og_title":"A Look Into IoT Security and Vulnerabilities","og_description":"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!","og_url":"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/","og_site_name":"ResellerClub Blog","article_publisher":"https:\/\/www.facebook.com\/profile.php?id=100005889763273","article_published_time":"2017-01-25T14:14:31+00:00","article_modified_time":"2025-02-28T06:54:12+00:00","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Amrita","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebSite","@id":"https:\/\/www.resellerclub.com\/blog\/#website","url":"https:\/\/www.resellerclub.com\/blog\/","name":"ResellerClub Blog","description":"Web Hosting &amp; Domains","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.resellerclub.com\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"ImageObject","@id":"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/#primaryimage","inLanguage":"en-US","url":"","contentUrl":""},{"@type":"WebPage","@id":"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/#webpage","url":"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/","name":"A Look Into IoT Security and Vulnerabilities","isPartOf":{"@id":"https:\/\/www.resellerclub.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/#primaryimage"},"datePublished":"2017-01-25T14:14:31+00:00","dateModified":"2025-02-28T06:54:12+00:00","author":{"@id":"https:\/\/www.resellerclub.com\/blog\/#\/schema\/person\/3022c632f8c79376e89b21ebd7e3c777"},"description":"Subscribe to the official ResellerClub Blog for tips on your Web Design and Development business. Get updates on Digital Marketing, Doamins and Hosting offers!","breadcrumb":{"@id":"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.resellerclub.com\/blog\/a-look-into-iot-security-and-vulnerabilities\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.resellerclub.com\/blog\/"},{"@type":"ListItem","position":2,"name":"A Look Into IoT Security and Vulnerabilities"}]},{"@type":"Person","@id":"https:\/\/www.resellerclub.com\/blog\/#\/schema\/person\/3022c632f8c79376e89b21ebd7e3c777","name":"Amrita","image":{"@type":"ImageObject","@id":"https:\/\/www.resellerclub.com\/blog\/#personlogo","inLanguage":"en-US","url":"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2019\/08\/amrita.k-150x150.jpg","contentUrl":"https:\/\/www.resellerclub.com\/blog\/wp-content\/uploads\/2019\/08\/amrita.k-150x150.jpg","caption":"Amrita"},"description":"Amrita Konaiagari is the Team Lead for Content Marketing at Endurance International Group (APAC). She is also the Editor of the ResellerClub blog. She holds a Bachelor\u2019s Degree in Psychology from St. Xavier\u2019s College, Mumbai and a Master\u2019s Degree in Communication & Journalism from the Mumbai University. She has 9 years of experience in Digital Marketing. She has a passion for home decor and hopes to one day be a book author.","url":"https:\/\/www.resellerclub.com\/blog\/author\/amrita-k\/"}]}},"_links":{"self":[{"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/posts\/14927","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/users\/40"}],"replies":[{"embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/comments?post=14927"}],"version-history":[{"count":7,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/posts\/14927\/revisions"}],"predecessor-version":[{"id":35717,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/posts\/14927\/revisions\/35717"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/"}],"wp:attachment":[{"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/media?parent=14927"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/categories?post=14927"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/tags?post=14927"},{"taxonomy":"hashtags","embeddable":true,"href":"https:\/\/www.resellerclub.com\/blog\/wp-json\/wp\/v2\/hashtags?post=14927"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}