<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Smart lighting security flaw illuminates risk of IoT in Tech Talk</title>
    <link>https://community.isc2.org/t5/Tech-Talk/Smart-lighting-security-flaw-illuminates-risk-of-IoT/m-p/32551#M2290</link>
    <description>&lt;P&gt;Strange this, as predicted, IoT comes to the fore again:&amp;nbsp;&lt;/P&gt;&lt;P&gt;Some good questions to ask as a consumer - but many may not have the appropriate answers:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Then ask the following questions:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Has this device shown any unexpected instability recently?&lt;/LI&gt;&lt;LI&gt;Is it possible to update the firmware?&lt;/LI&gt;&lt;LI&gt;Is the latest software patch installed?&lt;/LI&gt;&lt;LI&gt;How regularly do software patches ship?&lt;/LI&gt;&lt;LI&gt;Is it possible to change any default password/code on the device and has it been changed?&lt;/LI&gt;&lt;LI&gt;Is it possible to use an alphanumeric code?&lt;/LI&gt;&lt;LI&gt;Does the system support the latest edition of its operating system?&lt;/LI&gt;&lt;LI&gt;What is the device’s networking protocol? Is it still current?&lt;/LI&gt;&lt;LI&gt;Is it possible to identify the device from beyond the network using standard network monitoring tools?&lt;/LI&gt;&lt;LI&gt;&lt;EM&gt;If you can’t update the device, or change its password, or it uses an ancient networking protocol, stop using it.&lt;/EM&gt;&lt;/LI&gt;&lt;LI&gt;&lt;EM&gt;If the device is visible to people outside your network, either secure it, or switch it off and send it to be recycled.&lt;/EM&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;EM&gt;&lt;A href="https://www.computerworld.com/article/3521228/smart-lighting-security-flaw-illuminates-risk-of-iot.html" target="_blank"&gt;https://www.computerworld.com/article/3521228/smart-lighting-security-flaw-illuminates-risk-of-iot.html&lt;/A&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;So what happens if the salesman, or reseller cannot answer the above?&amp;nbsp; &lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Would you still purchase regardless?&amp;nbsp; &lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Regards&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Caute_cautim&lt;/EM&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 09 Feb 2020 04:42:25 GMT</pubDate>
    <dc:creator>Caute_cautim</dc:creator>
    <dc:date>2020-02-09T04:42:25Z</dc:date>
    <item>
      <title>Smart lighting security flaw illuminates risk of IoT</title>
      <link>https://community.isc2.org/t5/Tech-Talk/Smart-lighting-security-flaw-illuminates-risk-of-IoT/m-p/32551#M2290</link>
      <description>&lt;P&gt;Strange this, as predicted, IoT comes to the fore again:&amp;nbsp;&lt;/P&gt;&lt;P&gt;Some good questions to ask as a consumer - but many may not have the appropriate answers:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Then ask the following questions:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Has this device shown any unexpected instability recently?&lt;/LI&gt;&lt;LI&gt;Is it possible to update the firmware?&lt;/LI&gt;&lt;LI&gt;Is the latest software patch installed?&lt;/LI&gt;&lt;LI&gt;How regularly do software patches ship?&lt;/LI&gt;&lt;LI&gt;Is it possible to change any default password/code on the device and has it been changed?&lt;/LI&gt;&lt;LI&gt;Is it possible to use an alphanumeric code?&lt;/LI&gt;&lt;LI&gt;Does the system support the latest edition of its operating system?&lt;/LI&gt;&lt;LI&gt;What is the device’s networking protocol? Is it still current?&lt;/LI&gt;&lt;LI&gt;Is it possible to identify the device from beyond the network using standard network monitoring tools?&lt;/LI&gt;&lt;LI&gt;&lt;EM&gt;If you can’t update the device, or change its password, or it uses an ancient networking protocol, stop using it.&lt;/EM&gt;&lt;/LI&gt;&lt;LI&gt;&lt;EM&gt;If the device is visible to people outside your network, either secure it, or switch it off and send it to be recycled.&lt;/EM&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;EM&gt;&lt;A href="https://www.computerworld.com/article/3521228/smart-lighting-security-flaw-illuminates-risk-of-iot.html" target="_blank"&gt;https://www.computerworld.com/article/3521228/smart-lighting-security-flaw-illuminates-risk-of-iot.html&lt;/A&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;So what happens if the salesman, or reseller cannot answer the above?&amp;nbsp; &lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Would you still purchase regardless?&amp;nbsp; &lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Regards&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Caute_cautim&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 09 Feb 2020 04:42:25 GMT</pubDate>
      <guid>https://community.isc2.org/t5/Tech-Talk/Smart-lighting-security-flaw-illuminates-risk-of-IoT/m-p/32551#M2290</guid>
      <dc:creator>Caute_cautim</dc:creator>
      <dc:date>2020-02-09T04:42:25Z</dc:date>
    </item>
  </channel>
</rss>

