The existence of information security risks in the Internet of Things era cannot be ignored

In response to the advent of the Internet of Things (IoT) era, the NCC announced yesterday (31) that it will successively formulate and publish technical guidelines for information security testing such as wireless IP CAM, Wi-Fi AP, and wireless routers. Through the security testing of IoT devices, gradually Improve the security environment of Taiwan's information communication and promote the development of various innovative application services of the Internet of Things.

NCC stated that the draft of the "Technical Guidelines for Security Testing of Wireless Network Cameras" was announced in May. In the second half of the year, technical guidelines for security testing of IoT devices such as Wi-Fi APs, wireless routers, and digital set-top boxes will be further announced as a promotion. Reference for information security testing of networked equipment.

In addition, NCC is cooperating with the Industry Bureau of the Ministry of Economic Affairs to promote the Internet of Things equipment security testing system and certification marks, and at the same time encourages designers, manufacturers, and service providers of Internet of Things equipment to pay attention to the security of connected equipment.

In recent years, Internet of Things services have risen rapidly, spanning smart cities, smart transportation, smart energy, smart medical and other fields. Although the development of related innovative services has brought convenience to life, the endless information security incidents have gradually highlighted the large number of connected devices Face potential information security risks.

The most well-known incidents include in October 2016, Dyn, a well-known American domain name service company, suffered a DDoS attack from the Mirai botnet, which caused the disruption of large websites such as CNN, Amazon, and Twitter.

The era of the Internet of Things is coming, the existence of information security risks cannot be ignored

In February last year, a certain university in the United States was hit by a Mirai variant botnet for 54 hours of continuous DDoS attacks. Talos, a threat intelligence organization under Cisco, disclosed that the VPNFilter attack led by the Russian hacker group has infected 500,000 routers around the world and has the ability to monitor traffic, steal website credentials, and disconnect devices.

The NCC cited information security industry Armis estimates that currently about 496 million IoT devices are exposed to the risk of DNS rebinding attacks. Hackers can bypass firewalls and intranets through browser security vulnerabilities. To communicate.

As the Internet of Things information security attacks have surfaced one by one, the information security defense of the Internet of Things has become a topic that cannot be ignored in the digital economy. NCC pointed out that if the target of the attack involves critical infrastructure, it is more likely to endanger national security.

Facing the increasingly severe IoT security challenges, the United States Department of Homeland Security, the Royal Academy of Engineering, OWASP and other international organizations have issued IoT-related security guidelines and reports, suggesting that the security of information communication should be taken into consideration in the design phase of connected devices. As for Taiwan, NCC emphasized that in the future, it will work with all walks of life to promote the Internet of Things certification and verification system, and further promote the development of innovative application services and equipment manufacturing for the Internet of Animals.

Barrier Terminal Block

Barrier Strip Connector ,Barrier Type Terminal Block ,Dual Row Terminal Block ,Barrier Terminal

Cixi Xinke Electronic Technology Co., Ltd. , https://www.cxxinke.com

Posted on