Skip to main content

New guidelines to protect smart home devices from botnets and privacy invasion

black lives matter ddos attacks attack oct 21v2
Are there Trojan horses in your home and in your neighbors’ homes and apartments waiting for signals to attack? The inherent vulnerability from untended internet connectivity is an unplanned, unsavory, and unacceptable consequence of the rapid proliferation of smart devices in homes. In an attempt to control or at least minimize security and privacy threats, a major industry group released recommendations for Internet of Things (IoT) manufacturers, especially those that make products sold for use in consumer’s homes.

The Broadband Internet Technical Advisory Group (BITAG) represents a broad cross-section of internet companies. The group’s purpose is to bring transparency and clarity to internet management and to the interactions among networks, applications, devices, and content that can affect users’ internet experience.

The potential threats to your security and privacy are one side of the major concern of IoT smart home devices. The recently demonstrated potential for individual home devices to be recruited into botnets for ill purposes represents the other side of home device threats. On October 21 a recruited botnet Distributed Denial of Service (DDoS) attack on the DYN name server was a wake-up call. As a result of that attack, major internet sites including Twitter, GitHub, and Spotify were unavailable for large parts of the day because they were bombarded by requests from unprotected crib cams, smart thermostats, and garage door openers.

Internet-connected smart home devices are particularly vulnerable to outside snooping and control. The BITAG report states, “Although consumers face general security and privacy threats as a result of any Internet-connected device, the nature of consumer IoT is unique because it can involve nontechnical or uninterested consumers …”

The BITAG report, “Internet of Things (IoT) Security and Privacy Recommendations,” addresses six major areas of concern: security vulnerabilities in some IoT devices that ship with outdated software; insecure communications including a lack of encryption and data leaks; susceptibility to malware; potential for service disruption; persistent security and privacy threats from a lack of software updating; and devices that do not abide by best software and best security practices.

The report has additional recommendations to manufacturers that focus on device and communications robustness and security. Because the recommendations are just that, with no force of law, they are not enforceable. The guidelines are a start, however, and at some time in the future may form the basis of minimum good practices for market acceptance.

Bruce Brown
Digital Trends Contributing Editor Bruce Brown is a member of the Smart Homes and Commerce teams. Bruce uses smart devices…
Best Amazon year-end deals on Alexa-compatible Echo and Ring smart home devices
amazon cuts 100 off its hottest combo echo show 8 and dot  charcoal with 1

Amazon's year-end smart home device deal prices may not be quite as low as during Black Friday and Cyber Monday, but you still can save on a good selection of smart home products, especially the most popular items with Alexa-compatible Echo and Ring devices.

As 2019 heads towards the end, there's still time to finish tasks and check off some of the goals you set for yourself for the year. If smart home setups were part of your 2019, there's enough time to equip your home with smart devices to protect your family and property, to boost your home entertainment capacity, and to make life a little more convenient.

Read more
Nest Doorbell vs. Ring Battery Doorbell Plus: which is the better video doorbell?
The Ring Battery Doorbell Plus installed outside a front door.

Ring and Nest are responsible for some of the best video doorbells available. With easy-to-use smartphone apps, simple installation processes, and the ability to customize your motion alerts, the Ring Battery Doorbell Plus and Nest Doorbell have quickly established themselves as two of the best video doorbells money can buy.

But what exactly is the difference between these two popular gadgets? And which is better for your smart home?

Read more
The best Apple HomeKit devices for 2023
A person unlocking the Aqara U100 smart lock with their phone.

While not as widespread as Google Home or Amazon Alexa, Apple HomeKit remains one of the most popular smart home ecosystems of 2023. The software plays well with iOS devices, and several other gadgets such as smart lights, smart locks, thermostats, and cameras can be controlled using the fancy technology. If you’re looking to build your smart home around Apple’s ecosystem, here are the best HomeKit devices available today.
Locks

HomeKit doesn’t have the largest selection of smart locks, but that doesn’t really matter when you have something as well-rounded as the Aqara Smart Lock U100. Not only does it offer full HomeKit support, but you’ll even gain access to Apple home keys -- allowing you to unlock your door with your iPhone or Apple Watch. There’s also the standard keypad for entering a passcode, along with a fingerprint sensor that can store several dozen fingerprints (so your whole family can enter the home without worrying about forgetting their password or smartphone).

Read more