How to improve IoT security
Found on Networkworld on Sunday, 27 August 2017
The tsunami-sized trend to add intelligence with sensors and actuators and to connect devices, equipment and appliances to the internet poses safety, security and privacy risks.
90% of devices collected at least some information via the device
80% of devices, along with their cloud and mobile components, did not require a password complex enough
70% of devices, along with their cloud and mobile components, enabled an attacker to identify valid user accounts through enumeration
70% of devices used unencrypted network services
6 out of 10 devices that provided user interfaces were vulnerable to a range of weaknesses, such as persistent XSS1 and weak credentials
The first one to be responsible is the manufacturer, especially when there is a gross neglection of basic security standards; but the user too needs to learn some responsibility.