小程序
传感搜
传感圈

How to Secure Your Smart Home Devices Against External Threats

2022-11-06
关注

How to Secure Your Smart Home Devices Against External Threats
Illustration: © IoT For All

In 2022, IoT devices have become very common in the typical American household. From the Nest thermostat to the smart refrigerator and Ring appliances, network devices around the home are coming in all forms, all with the insatiable desire to be connected to the series of tubes we call the Internet. These devices can expose home networks, especially if they only have the standard, already-tired, and shoddy defenses against a myriad of existential threats and harms that most folks would be none the wiser about. Let’s take a look at how to secure your smart home devices and protect your home network against external threats.

'The internet can be a scary place, and it’s vital to protect yourself and your family by protecting your IoT devices.' -5QClick To Tweet

3 Ways to Safeguard Your Home

#1: Change the Defaults & Enable Two-Factor Authentication

A few years ago, there were quite a few articles about hackers taking control of baby monitors via Wi-Fi networks to spy on unsuspecting families. While this doesn’t explain all the hacking cases for each baby monitor, we can reasonably ascertain that some default settings were either left by developers or users did not check them, which allowed the hackers a way in.

This may sound exceedingly simple and to some IT folks like a “no-brainer,” but going back through and verifying the configurations of the devices around a smart home to ensure no default passwords and usernames remain will go a long way. Most devices have an administrative console that requires its use for first-time setup, and, to cover our tracks, it may be prudent to go back and make a few fine-tuning adjustments. Ensuring the device is connected to the proper network and that the MAC address is properly recorded so you can find it later on is ideal. While tinkering around in settings, ensure automatic updates are enabled. Developers will often do over-the-air updates to these devices to apply their security hotfixes. All this information would be found in that device’s settings, and you may need to consult the manufacturer’s manual to find specific menus.

#2: Separate Devices Into Networks

Sometimes we need our space, and IoT devices are no different. On the first day of setting up a new device network, VLANs and firewall settings are usually relegated to the “do it later pile.” It is a great idea to go ahead and set that up right now.

There are many ways to accomplish this task; one of the more prevalent ones would be using OpenWRT and its amazing support forum for this. Before you undertake this item, ensure your device is compatible with OpenWRT. Otherwise, you may be stuck using the proprietary software to try and accomplish this goal. But, fear not! If you read all those forum posts and do not really want to expend extra effort setting up a virtual one, installing a second physical router is another solution, and, with some minor tweaks, it can accomplish the same thing.

#3: Set Up a Pi-Hole

After completing the above steps, setting up your DNS server directly to your router(s) would be a great in-place solution to provide additional security. Setting up a Raspberry Pi gives you the chance to purchase (yet another) shiny new gadget and justifies itself simultaneously! The name Pi-hole itself is just an amalgamation of Raspberry Pi and Black Hole, which you’d be setting up, in theory.

Essentially, this would reject domains before they reach your devices, and it comes with the bonus of being a built-in ad blocker. The Pi-hole can keep those pesky IoT devices from phoning home and block connections from unauthorized outside domains and IPs. You can purchase a Raspberry Pi from Amazon or your local tech enthusiast store, and with the Pi-hole documentation, it is a relatively simple process to undertake. Once it’s running, you’ll have more control over your network traffic and more logs than you’ll know what to do with! With that information, you can see what your IoT devices are talking to and if those domains can be trusted.

A Secure Smart Home

With these three steps, you can have a more secure smart home with all the IoT devices you could ever want. The internet can be a scary place, and it’s vital to protect yourself and your family by protecting your devices. Use the suggestions above to make sure you are securing your home!

Tweet

Share

Share

Email

  • Consumer IoT
  • Consumer Products
  • Cybersecurity
  • Device Testing
  • Internet of Things

  • Consumer IoT
  • Consumer Products
  • Cybersecurity
  • Device Testing
  • Internet of Things

参考译文
如何保护你的智能家居设备免受外部威胁
2022年,物联网设备在典型的美国家庭中变得非常普遍。从Nest恒温器到智能冰箱和Ring电器,家庭周围的网络设备正以各种形式出现,所有这些设备都有一种无法满足的愿望,即连接到我们称为互联网的一系列管道上。这些设备会暴露家庭网络,特别是如果它们只有标准的、已经过时的、粗劣的防御系统,以抵御大量存在的威胁和伤害,而大多数人对这些威胁和伤害一无所知。让我们来看看如何保护你的智能家居设备和保护你的家庭网络免受外部威胁。几年前,有不少文章说黑客通过Wi-Fi网络控制婴儿监视器,监视毫无防备的家庭。虽然这不能解释每个婴儿监视器的所有黑客案例,但我们可以合理地确定,一些默认设置要么是开发者留下的,要么是用户没有检查,这让黑客有了进入的机会。这听起来可能非常简单,在一些IT人士看来,这是“无需思考的事情”,但要重新检查和验证智能家居周围设备的配置,以确保没有默认密码和用户名,这将是一项艰巨的任务。大多数设备都有一个管理控制台,需要在首次设置时使用它,为了掩盖我们的踪迹,可能需要谨慎地返回并进行一些微调调整。确保设备连接到正确的网络,并正确记录MAC地址,以便您稍后可以找到它是最理想的。在修改设置时,确保启用了自动更新。开发人员通常会对这些设备进行无线更新,以应用他们的安全修复程序。所有这些信息都可以在该设备的设置中找到,你可能需要参考制造商的手册来找到特定的菜单。有时我们需要自己的空间,物联网设备也不例外。在建立一个新的设备网络的第一天,vlan和防火墙设置通常被归入“以后再做”的范畴。现在就去做这件事是个好主意。完成这项任务的方法有很多;其中比较流行的是使用OpenWRT和它的支持论坛。在进行此项操作之前,请确保您的设备与OpenWRT兼容。否则,您可能会使用专有软件来尝试和实现这个目标。但是,不要害怕!如果你阅读了所有这些论坛帖子,并不想花费额外的精力设置一个虚拟路由器,那么安装第二个物理路由器是另一种解决方案,只需稍作调整,它就可以完成同样的任务。完成上述步骤后,将DNS服务器直接设置到路由器将是提供额外安全性的一个很好的解决方案。设置树莓派让你有机会购买(又一个)闪亮的新设备,同时证明自己!Pi- Hole这个名字本身就是树莓派(Raspberry Pi)和黑洞(Black Hole)的结合,从理论上讲,这是你要建立的。从本质上说,这将在域名到达你的设备之前拒绝它们,而且它还附带一个内置的广告拦截器的好处。Pi-hole可以阻止那些讨厌的物联网设备打电话回家,并阻止来自未经授权的外部域和ip的连接。你可以从亚马逊或当地的技术爱好者商店购买树莓派,有了Pi-hole文档,这是一个相对简单的过程。一旦它运行起来,您将对网络流量和日志有更多的控制,而您不知道如何处理它!有了这些信息,您可以看到您的物联网设备正在与什么进行通信,以及这些域是否可以信任。 通过这三个步骤,你可以拥有一个更安全的智能家庭,拥有所有你想要的物联网设备。互联网可能是一个可怕的地方,通过保护你的设备来保护你和你的家人是至关重要的。使用上面的建议,确保你的家是安全的!
您觉得本篇内容如何
评分

评论

您需要登录才可以回复|注册

提交评论

iotforall

这家伙很懒,什么描述也没留下

关注

点击进入下一篇

你的Matter智能家居,是真连接还是假智能?

提取码
复制提取码
点击跳转至百度网盘