Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I am a bit disappointed that no one has mentioned a big problem with all these machines: security. Most of these items were developed by companies with only limited experience in security. They offer a tempting attack surface for attackers. Once they are compromised they can be used to attack other devices in your network. Most of them run proprietary software, so it is not possible to verify its code. They require that the network is correctly configured which is not at all easy. There have already been a lot of incidents where surveillance cameras were exposed on the internet.


Even if they do have security experience (i.e Google), I would expect that for many vendors security is WAY, WAY down the list. And security doesn't end when they ship the device, it also must be present throughout all updates, even when the device is no longer supported by the vendor.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: