How the Internet of Things and Smart Homes Make Hacking More Interesting

In 2011, a startup known as Nest Labs has created a thermostat that learned the temperature patterns in your home and adjusted itself without your intervention to maximize your comfort. It also connected to the worldwide internet, making it officially one of the most popular “Internet of Things” (IoT) products for the consumer market. Before this thermostat made it into the market, there was already a variety of products that similarly connected to the internet. While everyone is busy talking about the conveniences such an innovation brings with it, there are very few looking at how complex the security landscape will become as a consequence of IoT.

Why IoT Can Be Problematic

One of the first companies to really assess the problems of that IoT can bring was PerfectCloud. In its lengthy blog post, it detailed how it can be dangerous for businesses that are unwary of the consequences of introducing more possibilities for leakage.

IoT is potentially dangerous not because our machines will “turn on us”, but rather because they are able to communicate with the internet at large. You’ve likely already seen the problems that computers encounter as a result of being connected to the web. They get viruses, they are exploited on a regular basis, and sometimes hackers even gain control of the entire system to do some pernicious activities through it.

IoT simply presents more possibilities for this to happen by connecting your toaster, your fridge, your car, your TV, and other household items to the internet.

How IoT Can Be Used to Threaten Internet Security

iotdanger-botnet

The biggest threat that we face with IoT is botnets. If you don’t know about botnets, you can read up on them in our piece on distributed denial of service (DDoS). In the typical breach scenario, a hacker will infect a computer with a virus that automatically connects the system to a central server. The hacker will then order all infected computers to flood a particular IP address with packets, overwhelming that IP address’ ability to process normal traffic.

With IoT, many devices’ operating systems are simple and very difficult to breach (ironically, complex operating systems are easier to do this with). Instead of attempting to infect an IoT device, most hackers will opt to exploit a vulnerability in the way it communicates. This shorter process makes it very easy to infect thousands of devices at the same time and effectively create a phantom decentralized botnet. A DDoS like this is very difficult to stop! Also, such a thing has already happened.

How to Protect Yourself

Now that you understand the problem in IoT, it’s time to figure out how to help stop your toaster from turning into a battle drone. One of the best ways to do this is to create an “intranet” by setting your router up to prevent the device from communicating with the outside world. Instead, it will only communicate with your LAN, allowing you to monitor and configure the devices at home. Such a configuration restricts the way you use IoT, but it opens less doors to hackers trying to (digitally) break into your house.

Figure out what ports your toaster uses to communicate, then configure your router to shut down that port for external communications. It’s a very simple but effective idea!

Conclusion

Should you stop using IoT entirely? Absolutely not! However, I certainly hope that this piece will teach people to be more careful with the tech that they use. The underlying message here is that convenience sometimes requires a compromise on security that people aren’t ready to make. Tell us your thoughts on this in a comment below!

Subscribe to our newsletter!

Our latest tutorials delivered straight to your inbox

Miguel Leiva-Gomez Avatar

Read next

Suzanne Simard sealed paper birch and Douglas fir seedlings inside plastic bags, fed them carbon-14 and carbon-13 dioxide, and nine days later found carbon had crossed between species through fungal threads in the British Columbia soil beneath her boots
A species of jellyfish called Turritopsis dohrnii can revert its adult cells back to a juvenile polyp stage when injured or starving, effectively restarting its life cycle, and biologists have so far failed to identify any natural limit to how many times it can do this.
A Japanese man named Jiroemon Kimura, who lived to 116, was born in 1897 when Queen Victoria still ruled and died in 2013, meaning a single human life personally overlapped with the invention of the airplane, the atomic bomb, the internet, and Instagram
The Hollywood sign originally read HOLLYWOODLAND when it was built in 1923 as a real estate advertisement for a housing development, and it was only meant to stand for 18 months, but nobody ever got around to taking it down and the city eventually adopted it as a landmark
Almost all of the world’s internet traffic does not travel by satellite but through fibre-optic cables lying on the ocean floor, a hidden web of wires crossing the deepest parts of the sea to connect the continents.
People who flip their phone face down on every table aren’t being secretive. They figured out that staying interruptible meant handing their time to whoever rang first
Twitch vs. Facebook Gaming vs. YouTube Gaming: What’s the Best Live Game Streaming Platform?
Chrome Extensions Ownership Transfer is a Direct Threat to You: How to Stay Safe