Select your language

Can connected appliances affect security?

Domótica

Mexico. Botnets pose a great danger because their operators are able to use a network of infected computers to perform virtually any task, and harm the users of the infected computers and third parties.

They do this by sending spam, distributing hoaxes and threats hidden in attachments, or executing distributed denial of service (DDoS) attacks. ESET, a proactive threat detection company, analyzes the case of Mirai and home electronic devices.

"There is a silent threat in front of our eyes and one that often goes unnoticed. Victims, in general, do not even know they were infected, and attackers have a success rate very close to 100%," warns Camilo Gutiérrez Amaya, Head of the Research Laboratory at ESET Latin America.

A DDoS (distributed denial of service) attack attempts to overwhelm the computational processing capacity of the "targets" of the attack, through the overload of requests to saturate them.

- Publicidad -

In August 2016 a botnet was discovered that only a couple of months later would surprise the whole world with a DDoS attack. Due to the sustained DDoS attack of which the service provider of the Domain Name System Dyn was a victim, cuts were evidenced in sites and services of various kinds: Twitter, Airbnb, Reddit, Amazon, SoundCloud, Spotify, Netflix and PayPal, among many others. That wasn't the only big hit of the Mirai botnet that year: OVH, the French web hosting company, showed significant disruptions in its services and that of its customers and the attack reached a record DDoS traffic for the time, since it exceeded 1.1 terabits per second.

The particularity of the Mirai botnet is that its large network was composed of digital devices connected to the internet (IoT - internet of things) that were infected because they did not have protection, were poorly configured or had weak passwords.

Home routers, video recorders, surveillance cameras and any other type of smart devices were exploited by Mirai to perpetrate its attacks. It is estimated that this botnet was composed of more than 600,000 smart home devices connected to the internet.

That wasn't all because Mirai's source code was posted on open-source forums, which resulted in this technique being used in other malware projects. In fact, during 2023 year there were several attacks where some of its variants were implemented.

"Anyone who installs a router, a camera, a TV or any other IoT device and does not change the default password is favoring cybercriminals to carry out these types of attacks.

Why? It happens that those who carry out DDoS attacks have knowledge of the default passwords of many IoT devices and, if the fateful October 21, 2016 taught us anything, it is that anything that connects to the Internet poses a risk, "concludes Gutiérrez Amaya, from ESET Latin America.

What can be done about it? From ESET they share the following recommendations:

- Publicidad -

- Consider IoT devices in the same way as a personal computer, so you should take the same care as immediately changing the default password and regularly checking for security patches.
- Use the HTTPS interface whenever possible and, when the device is not used, turn it off. If it contains other connection protocols that are not in use, it is best to disable them.

Richard Santa, RAVT
Richard Santa, RAVTEmail: [email protected]
Editor
Periodista de la Universidad de Antioquia (2010), con experiencia en temas sobre tecnología y economía. Editor de las revistas TVyVideo+Radio y AVI Latinoamérica. Coordinador académico de TecnoTelevisión&Radio.


No comments

• If you're already registered, please log in first. Your email will not be published.

Leave your comment

In reply to Some User
Dante Controller 4.15 is now available for download

Dante Controller 4.15 is now available for download

Latin America. Audinate announced that the Dante Controller update, to version 4.15, is now available for download. This update includes:

KNX Latam's Building Automation Days arrives in Chile

KNX Latam's Building Automation Days arrives in Chile

Chile. On May 15, Santiago de Chile will become the epicenter of automation and smart technology with the Building Automation Days by KNX LATAM, Chile edition.

Shure microphones supported the Viña del Mar Festival 2025

Shure microphones supported the Viña del Mar Festival 2025

Chile. The LXIV edition of the Viña del Mar Festival, held from February 23 to March 1, was broadcast live worldwide for the first time to more than 5 million viewers. To ensure exceptional...

AI drives innovation and business growth

AI drives innovation and business growth

Colombia. Companies in Colombia have made significant progress in the adoption of Artificial Intelligence. As reported by the QS World Future Skills Index 2025, the country has had a 669% increase...

Cooling: key to efficient and sustainable data centers

Cooling: key to efficient and sustainable data centers

Mexico. As more servers run their information processing in data centers, it is inevitable that they will generate a large amount of heat that must be dissipated in order for them to remain in...

Maverick Storm 1 Flex, experience without hot spots

Maverick Storm 1 Flex, experience without hot spots

Latin America. The latest addition to Chauvet's Maverick Storm family, the new IP65-rated spot/beam/wash projects a smooth, flat field of light thanks to its LED motor, which replaces a lamp, thus...

This is the jury of the Cala Awards for the Best AV Project

This is the jury of the Cala Awards for the Best AV Project

Latin America. Three of the winners of the CALA Awards in its Best AV Project category will be the juries in charge of choosing the finalists in the 2025 version of the contest that recognizes the...

Vertiv, NVIDIA and iGenius will have sovereign AI data center

Vertiv, NVIDIA and iGenius will have sovereign AI data center

International.Vertiv will collaborate with NVIDIA and iGenius, to deploy Colosseum, one of the world's largest NVIDIA DGX AI supercomputers with NVIDIA Grace Blackwell superchips. 

Automation and security define labor productivity

Automation and security define labor productivity

Latin America. Deloitte's 2025 survey on Global Trends in Human Capital revealed that the main drivers for investing in new technologies are enabling the workforce to do more and faster, and...

Siemens appoints Miguel D'Alessio as CEO in Colombia

Siemens appoints Miguel D'Alessio as CEO in Colombia

Colombia. Siemens has appointed Miguel D'Alessio as its new Chief Executive Officer (CEO) for Colombia, who has a solid track record in the industry, previously leading the Digital Industries...

Suscribase Gratis
Remember Me
SUBSCRIBE TO OUR ENGLISH NEWSLETTER
DO YOU NEED A SERVICE OR PRODUCT QUOTE?
LATEST INTERVIEWS
SITE SPONSORS










LATEST NEWSLETTER
Ultimo Info-Boletin