[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

Home thermostats can now get infected with ransomware

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 13
Thread images: 1

File: HackedThermostat[1].jpg (85KB, 1024x621px) Image search: [Google]
HackedThermostat[1].jpg
85KB, 1024x621px
http://thenextweb.com/gadgets/2016/08/08/thermostats-can-now-get-infected-with-ransomware-because-2016/

>If you’ve encountered ransomware before, you’re familiar with how incredibly destructive it can be. It literally holds your computer and files hostage unless you cough up a steep ransom, usually paid in Bitcoin.

>Now, it looks like ransomware is about to make the leap from computers and smartphones to Internet of Things devices.

>Andrew Tierney and Ken Munro – two UK-based researchers for IT security firm Pen Test Partners – demonstrated the world’s first ransomware for a smart thermostat earlier this week at the DefCon security conference in Las Vegas.

>The Wi-Fi enabled thermostat that the researchers targeted is basically a Linux computer. It allows the user to upload wallpapers and configuration settings through an SD card; that’s what they use as a vehicle to install a malicious program onto the device. At this point, an attacker would have full control over the thermostat.
...
>>
>It’s worth noting that for a device to be infected, an attacker would need physical access, or the owner would have to be tricked into infecting their own thermostat.

>So far, the name and manufacturer of the device affected hasn’t been publicly announced. That’s because the researchers only identified the vulnerability two days before the conference was scheduled to start, and have not been able to contact the manufacturer in order to arrange a fix.

>Thankfully, Tierney and Munro both believe that it will be an easy problem to patch.

>This episode illustrates the troubling fragility of Internet of Things devices.

>There are far too many of them that have shipped with vulnerabilities that leave their users at risk, from Wi-Fi enabled kettles that leak network passwords, to “smart fridges” that broadcast the user’s Gmail credentials in plaintext.

>As the number of IoT manufacturers and users proliferate, and as the devices become mainstream household appliances, it seems probable we’ll see even more high-profile security issues.
>>
Couldn't you just buy a new thermostat?
>>
>>65645
You can just reset it because the files arent important
>>
>>65634
>It’s worth noting that for a device to be infected, an attacker would need physical access, or the owner would have to be tricked into infecting their own thermostat.

So basically it's fucking nothing and this is just sensationalist garbage.
>>
>>65667
It sounds like an invitation to invent more malware to me.
>>
Like ransomware in a reaper drone?
>>
>>65674
https://www.youtube.com/watch?v=6QhfkmEbQto

ALIEN FOUND
>>
>>65667
Most viruses require tricking the user to give access. A simple fake advertisement like "Software update for your SmartTherm! Just download into your phone and transfer by bluetooth!" would do the trick on maybe 1/1000 of people in a mass email -- maybe more since the file you send, being for neither your phone nor comp, might not be detected on virus scanners.
>>
>>65667
>>It’s worth noting that for a device to be infected, an attacker would need physical access, or the owner would have to be tricked into infecting their own thermostat.
>So basically it's fucking nothing and this is just sensationalist garbage.
so the majority of viruses these days then
>>
>>65634
>There are far too many of them that have shipped with vulnerabilities that leave their users at risk, from Wi-Fi enabled kettles that leak network passwords, to “smart fridges” that broadcast the user’s Gmail credentials in plaintext.

Why aren't companies required by law to encrypt user/customer information? Seems like something that would be common sense in 2016.
>>
>>65787
What Congress would pass something like that? Certainly not this gridlocked one.
>>
>>65646
>implying my porn collection isn't important

I mean it's not easy standing in the hall fapping to the thermostat, but at least my mom doesn't find dirty pictures on my computer.
Thread posts: 13
Thread images: 1


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.