Hi Carlos, All,

Hi Wolfgang, All,

Interesting read about bad actors of IoT vendors (well, one vendor):
https://krebsonsecurity.com/2018/10/naming-shaming-web-polluters-xiongmai/

Naming & Shaming doesn't really work with spammers and the like, but could it really work with IoT vendors…?
Naming & Shaming can raise awareness but will unlikely help a lot solving the issue in general. I think we have to
live with the fact that there are many vendors that don’t care about security as long as it does not affect their revenue
stream.

In my opinon a solution would be handling the IoT (and other devices) potential security threads at the home gateway
with a strict, user controlled access policy. That would at least reduce the possible effect. There are the SPIN project 
and other initiatives that try to adress the issue although I haven’t seen something completely convincing, yet ;)

Best,
(the other) Peter


Regards,
Carlos



best regards
Wolfgang
--
Wolfgang Tremmel

Phone +49 69 1730902 26 | Fax +49 69 4056 2716 | Mobile +49 171 8600 816 | wolfgang.tremmel@de-cix.net
Geschaeftsfuehrer Harald A. Summa | Registergericht AG Köln HRB 51135
DE-CIX Management GmbH | Lindleystrasse 12 | 60314 Frankfurt am Main | Germany | www.de-cix.net


_______________________________________________
iot-wg mailing list
iot-wg@ripe.net
https://lists.ripe.net/mailman/listinfo/iot-wg
_______________________________________________
iot-wg mailing list
iot-wg@ripe.net
https://lists.ripe.net/mailman/listinfo/iot-wg
Peter Steinhäuser, CEO
embeDD GmbH · Alter Postplatz 2 · 6370 Stans · Switzerland
Phone: +41 (41) 784 95 85 · Fax: +41 (41) 784 95 64