Upgrade & Secure Your Future with DevOps, SRE, DevSecOps, MLOps!

We spend hours on Instagram and YouTube and waste money on coffee and fast food, but won’t spend 30 minutes a day learning skills to boost our careers.
Master in DevOps, SRE, DevSecOps & MLOps!

Learn from Guru Rajesh Kumar and double your salary in just one year.

Get Started Now!

Internet of Things devices: Stick to these security rules or you could face a ban

Source: zdnet.com

Insecure Internet of Things devices and other connected products could be banned if they fail to meet basic security standards to be used in homes and businesses.

Proposals from the Department for Culture, Media and Sport (DCMS) and the National Cyber Security Centre (NCSC) have set out three standards that manufacturers will have to follow if their smart devices are to be sold in the UK – and potential punishments if the standards aren’t met.

The proposed rules are relatively modest in scope. They would require that device passwords must be unique and not re-settable to any universal factory setting, that manufacturers must provide a public point of contact so anyone can report a vulnerability, and that makers must state the minimum length of time that the device will receive security updates.

The NCSC is also looking for feedback from product manufacturers on the proposed legislation in order to ensure that they can be helped to make IoT devices as secure as possible.

“People are at risk because fundamental security flaws in their connected devices are often not fixed – and manufacturers need to take this seriously,” said Dr Ian Levy, technical director at the NCSC.

“We would encourage all consumer device manufacturers to make their views heard and help us ensure the technology people bring into their homes is as safe and secure as possible.”

The government is also seeking suggestions on the sanctions required. For example, one option is that devices that don’t meet the security requirements could be temporarily or even permanently banned from being sold in the UK. Products deemed to be insecure could also be issued with recall notices, requiring manufacturers and retailers to organise the return of devices.

It’s even possible that manufacturers who are deemed to have sold insecure devices that put consumers and businesses at risk could have the products confiscated and destroyed, and even find themselves issued with a financial penalty.

The aim of the proposals is to help protect UK citizens and businesses from the threats posed by cyber criminals increasingly targeting Internet of Things devices. IoT devices can be a weak point into home and corporate networks, providing cyber criminals with a backdoor into targets, as well as the ability to rope in IoT devices to conduct DDoS attacks.

“Internet of Things products are quickly growing in popularity but most people still do not realise the dangers to personal data from smart products that are insecure,” said Graham Wynn, assistant director of the British Retail Consortium.

“We welcome practical proposals from the government based on the three rigorous requirements to ensure that consumers’ safety and privacy are protected,” he added.

The proposed rules were previously detailed as potential legislation earlier this year, with the latest announcement moving another step forward to becoming law.

The UK isn’t alone in attempting to secure Internet of Things devices – ENISA, the European Union’s cybersecurity agency, is also working towards legislation in this area, while the US government is also looking to regulate IoT in an effort to protect against cyberattacks.

Related Posts

Investing in the Human Element of IIoT

Source: mbtmag.com A recent report by Vodafone Business found that COVID-19 has ignited a surge in Internet of Things (IoT) adoption, with 79 percent of U.S. businesses saying they’ve Read More

Read More

When ‘code rot’ becomes a matter of life or death, especially in the Internet of Things

Source: zdnet.com The possibilities opened up to us by the rise of the Internet of Things (IoT) is a beautiful thing. However, not enough attention is being Read More

Read More

The Good and Not So Good of the IoT Cybersecurity Improvement Act of 2020

Source: securityboulevard.com In September, the House of Representatives passed a bill requiring that all internet of things (IoT) devices purchased by the government meet minimum security requirements. Read More

Read More

Delivering the Revolution: How the Trucking Industry Utilizes the IoT and AI

Source: iotbusinessnews.com The trucking industry, and the logistics that keep it running, have become fundamental to the success of supply chains, both nationally and internationally. Without those Read More

Read More

How the Internet of Robotic Things is helping supply chains to evolve in times of uncertainty

Source: In recent years, the Internet of Things has been hailed as a game changer for businesses. The Internet of Robotic Things (IoRT) is helping businesses to Read More

Read More

Internet of Things is transforming the mobility space

Source: talkiot.co.za South Africa’s economy is easing back towards levels of activity last seen before the Covid-19 lockdown. Logistics fleets are returning to full capacity, and private Read More

Read More
Subscribe
Notify of
guest
0 Comments
Oldest
Newest Most Voted
0
Would love your thoughts, please comment.x
()
x