Comments on: Without Security, IOT is Just a Smart House of Cards https://bloggeek.me/security-iot-smart-house-of-cards/ The leading authority on WebRTC Sun, 09 Feb 2020 08:18:06 +0000 hourly 1 By: Lennie https://bloggeek.me/security-iot-smart-house-of-cards/#comment-117707 Tue, 14 Oct 2014 11:24:03 +0000 http://bloggeek.me/?p=9058#comment-117707 You talk about automatic updates from the manufacturers like it is going to ever happen or if they are going to do it for devices sold for just a few dollars.

Maybe I’m pessimistic, but I think It’s going to be a lot worse then what you stated. The embedded guys are not going to change their ways, unless the law of the land says they have to or reputation damage is to great. Those are both governed by public opinion.

But there will be an other model, also not really all that great. You will have to pay for it like a ‘cloud service’ or a phone which keeps the device not only updated. But when you stop paying the device stops working: http://www.theatlantic.com/technology/archive/2014/09/when-everything-works-like-your-cell-phone/379820/?single_page=true

You might get the device for ‘free’ if you get a contract for an initial period that is long enough.

(side note: also I know Bash Shell Shock is just an example, but in real life, you wouldn’t actually see a Bash-shell on an embedded device. Most of them use BusyBox)

]]>