Internet of Things (IoT)
The internet of things (IoT) promises to revolutionize the daily lives with their increased reliance on machine-to-machine (M2M) technology that filters out the bottleneck of human decisions. Â The IoT promises real-time capture of information in citiesâfrom traffic patterns and emissions to waste production and energy consumptionâand âconnected homesââthe fridge that ensures you never run out milk, the climate control system that dynamically adjusts heating/cooling to the presence of humans. Â
As a computer scientist, I am excited at the prospect of added conveniences that IoT can provide in making my life easier than it is now. Â However, to this end, I believe there should be a certain degree of concern as to the security of these emerging hardware devices posed. Â As asserted in the âSilent Intelligence,â there is great diversity in the M2M technological ecosystem, and as such, standards are still emerging. Â In the chaos of this diversity, there is great potential for exploitation of such technology by hostile parties, such as foreign bodies, in using the IoT for malicious purposesâthe most salient example of such an event would be the recent hack of Dyn using home networks and routers. Â Such attacks could grow to be worse in scale and scope with the arrival of unsecured devices in the IoT. Â There has been significant growth in the use of IoT in global supply chains presentlyâthink Amazon and its use of warehouse bots to move/organize packages around. Â One potential risk that cannot be overlooked is the possibility insecurity of IoT devices and the potential disruption that could be unleashed if robots working in the supply chain were hacked. Â Some may claim that regulation on IoT devices could stifle innovation, but in this end, policymakers need to lay some sort of careful groundwork to ensure that IoT devices used on an industrial level and scale have some reasonable degree of security from malicious hijackers. Â As factories and distribution warehouses rely more heavily on automation, the potential for disruption from a hijacking grows significantly. Â Ensuring some sort of security may prove to be especially troublesome given the growing democratization of hardware production with the advent of 3D-printing which makes the scope of regulation much larger for the government (many parties engaged in creation, including small firms instead of few large players making such devices.)
Another salient concern of devices in the IoT is that of privacy and trust. Â It may be one thing to have the privacy of your smart fridge being compromised such that the world knows what you eatâit is another matter entirely if sensor data tied to your health records is poorly secured or de-anonymized for the world to know. Â With greater potential benefitsâease of living and convenienceâcome a lot more risks for security. Â Following the recent pivot in my position towards security, I believe it should be the prerogative of policymakers to put some sort of reasonable security protections in placeâsuch as end-to-end encryption of data sent to and from IoT devicesâto ensure that the privacy of consumers is maintained. Â
Security and privacy issues are the issues that IoT has to face during its development. I totally agree on the part that IoT devices can be exploited for malicious purposes. With large amount of IoT devices available online, they could be a perfect source for launching DDoS attack. Also, I would like to add one additional point on this part. Another vulnerability exposed by IoT devices is that once one device is hacked, all the devices connected to the hacked device are in danger. The magic that all IoT devices can be connected together is that they share the same interface, whatever it is. Such a universal interface could be a lifesaver for the developers, but it can also be a nightmare for the security guys. High-level security is a must for such an interface. The privacy issues coming along with IoT devices can also be thought of a consequence of this universal interface. Yes it doesnât matter that what you have in your fridge, but it will be a different problem when your smartphone is connected to your fridge. As said in the post, end-to-end encryption could be a viable solution, but the high computation cost that may introduce makes it not very practical on light-weighted IoT devices.




















