Internet-connected ‘smart’ devices are dunces about security

(AP Stock)

MAE ANDERSON and BARBARA ORTUTAY, AP Technology Writers NEW YORK (AP) 03/09 These days, it’s possible to use your phone — and sometimes just your voice — to control everything from your TV to your lights, your thermostat and shades, even your car or medical device. (At least, once you have gadgets that can listen.)

But the WikiLeaks allegation that the CIA commandeered some Samsung smart TVs as listening devices is a reminder that inviting the “Internet of Things” into your home comes with some risk.

How safe are your connected devices? Tread carefully, but don’t freak out, experts say.


Connected devices are unquestionably popular. Research firm Gartner expects there to be 8.4 billion connected “things” in use in 2017, up 31 percent from 2016. By 2020, this number could reach 20.4 billion, with smart TVs and digital set-top boxes serving as the most popular consumer gadgets.

For businesses, meanwhile, smart electric meters and commercial security cameras are expected to be the most popular “internet of things” products.

Such gadgets are convenient, but they can present easy targets for hackers. In October of 2016 hackers seized control of webcams and digital video recorders and recruited them into internet “botnets” that launched denial-of-service attacks against popular websites such as Netflix and Twitter, forcing them offline for some users.


There’s a growing call for regulation to secure connected devices, but it’s unclear whether this will happen. Last year, the Department of Homeland Security released a report describing runaway security problems with devices that recently gained internet capabilities, a collection that includes medical implants, surveillance cameras, home appliances and baby monitors.

“The growing dependency on network-connected technologies is outpacing the means to secure them,” Department of Homeland Security Secretary Jeh Johnson said at the time. This, of course, was during the Obama administration; more regulation so far appears unlikely under President Donald Trump.

Forrester Research analyst Josh Zelonis said consumers can’t wait for the government to fix things. Instead, he said, people have to demand that manufacturers are accountable for the security of their products and that they support the products throughout the product’s lifetime, not just when it’s sold.

Which, of course, is far easier said than done.


One problem: Many people don’t realize they have to secure connected devices with passwords like they do with computers. “People don’t think of a TV or a camera as a computer and that’s all it is,” said Gartner analyst Avivah Litan.

If a device comes with a default password, it needs changing the moment you hook it up. Similarly, your Wi-Fi password shouldn’t still be the one it came out of the box; it needs a hard-to-guess passphrase to ensure that it can’t be easily hacked.

Another problem: Cheaper devices from no-name companies also pose more of a security risk. While big companies like Apple, Amazon or Samsung can patch up security holes as soon as they find them, smaller companies don’t have the resources — or, sometimes, the ability or willingness — to do so.

“Bigger companies typically have more resources and more to lose, so they are typically more secure,” said Patrick Moorhead, an analyst at Moor Insights & Strategy.

Password-protecting most connected devices, though, should go a long way toward ensuring they won’t be used to take down Netflix.

“Don’t buy from smaller vendors,” Moorhead said. “Don’t buy devices that don’t encrypt data everywhere.” And change the password if you can.


Sydnee Thompson, a 24-year-old from Troy, Michigan, is cautious but ultimately sanguine about her connected devices. She has an internet-connected TV, but she’s been reluctant to get a “smart” device like Amazon’s Echo home assistant because of worries that it would always be listening — and that others might also.

But Thompson uses a smartphone and already assumes that if the government wants to track her, it can. “If the government wants to find out something about you, they will,” she said. “It’s just the world we live in.”

Cameron Matz from Stafford, Virginia, said he has several smart TVs and plans to keep using them. “We can’t be afraid to live our life because some person out in the world is listening in on your conversation about daily activities.”


AP Tech Writer Tali Arbel in New York contributed to this report.


Copyright 2017 The Associated Press. All rights reserved. This material may not be published, broadcast, rewritten or redistributed.


Posted in: CIA, Cybersecurity/Cybercrime, Data Security/Data Privacy, Intelligence Agencies, Police Equipment/Technology, Surveillance, Surveillance State, U.S. Government

Leave a Reply

Your email address will not be published. Required fields are marked *

11 + 10 =

Terms of Use for Posting Comments

Terms of Use

This site (the “Site”) is operated and maintained by Law Enforcement Education Foundation, Corporation (“Company”). Throughout the Site, the terms “we”, “us” and “our” refer to Company.  The words “user,” “you” and “your” as used herein refer to you.

Please read these terms and conditions of use (“Terms of Use”) carefully before contributing content. If you do not agree to these Terms of Use, please do not contribute content. Your use of the Site is subject to the Terms and Conditions found here .

By contributing content to the Site, you represent and warrant that you are at least eighteen (18) years old and that you have read and understand these Terms of Use and any amendments thereto and agree to be bound by them. If you are not at least eighteen (18) years old or you do not agree and accept these Terms of Use, you are prohibited from contributing content.

From time to time, we may permit users to submit content to the Site.  You hereby acknowledge and agree that by submitting remarks, comments, suggestions, ideas, graphics, feedback, edits, concepts, comments, photographs, illustrations and other materials (other than personal information and/or registration information) through the Site (individually and collectively, “Submissions”), you (i) grant us a nonexclusive, royalty-free, perpetual, transferable, irrevocable and fully sub-licensable right to use, reproduce, modify, adapt, translate, distribute, publish, create derivative works from and publicly display and perform such Submissions throughout the world in any media, now known or hereafter created, without attribution to you; (ii) grant us the right to pursue at law any person or entity that violates your and/or our rights in your Submissions; and (iii) forever waive any and all of your rights, including but not limited to moral rights, if any, in and to your Submissions, including, without limitation, any all rights or requirements of attribution or identification of you as the author of the Submission or any derivative thereof.  We reserve the right to remove any of your Submissions from the Site, in whole or in part, without notice to you, for any reason or no reason.

Submissions are made voluntarily. Any submissions which include personally identifiable information are subject to our Privacy Policy found here .  You may not upload or otherwise publish content on the Site that (i) is confidential to you or any third party; (ii) is untrue, inaccurate, false or other than an original work of your authorship; (iii) that relates to or impersonates any other person; (iv) violates the copyright, trademark, patent or other intellectual property rights of any person or entity; (v) contains any content, personally identifiable information or other information, or materials of any kind that relate or refer to any other person or entity other than the provider of the products, goods or services to which the Submission relates; or (vi) violates any law, or in any manner infringes or interferes with the rights of others, including but not limited to the use of names, information, or materials that (A) libel, defame, or invade the privacy of any third party, (B) are obscene or pornographic, (C) are harmful, threatening, offensive, abusive, harassing, vulgar, false or inaccurate, racially, sexually, ethnically or are otherwise objectionable or otherwise contrary to the laws of any place where such Submissions may be accessed; (D) constitute personal attacks on other individuals; (E) promote criminal, immoral or illegal activity; (F) promote or advertise any person, product or service or solicit funds; or (G) are deemed confidential by any contract or policy.

You are solely responsible for any Submissions you make and their accuracy. We take no responsibility and assume no liability for any Submissions posted by you or any third party.

Unless approved by us in writing in advance, you agree not to: (i) provide or create a link to the Site; or (ii) create any frames at any other sites pertaining to any of the content located on the Site.

We reserve the right, in our discretion, to update, change or replace any part of these Terms of Use for Posting Comments by posting updates and/or changes to our Site.  It is your responsibility to check this page periodically for changes.  Your continued use of, and/or access to the Site, following the posting of any changes to these Terms of Use for Posting Comments, constitutes your acceptance of those changes.