In-brief: there’s a growing consensus that the Internet of Things will spell trouble for the information security industry. A vast population of connected devices, endemic problems with software quality and sophisticated adversaries will combine to make the juice of the Internet of Things not worth the security “squeeze.”
Software
Consumer Group Sues Samsung Over Lack of Updates for Smart Phones
In-brief: A consumer group in The Netherlands is suing smart phone giant Samsung over its lax management of the security of its devices – part of the larger fragmentation of the Android ecosystem.
Backdoor Account Found In Hardware Sold to Whitehouse, Pentagon
In-brief: A firm that sells secure conferencing equipment to the U.S. government and military has acknowledged that it shipped software for the device that contained an undocumented “backdoor” account.
Linux Kernel Flaw Reaches Into Internet of Things
In-brief: Software updates were released to address a serious and exploitable security flaw in the Linux kernel on Tuesday. The issue, in a feature called keyring, could impact embedded systems as well as mobile devices.
Podcast: Craig Smith of OpenGarages on Vehicle Security and GM’s Bug Bounty
In-brief: In this podcast, Paul speaks with Craig Smith of Open Garages on GM’s bounty program, the state of connected vehicle security, and what the auto industry can learn from open source.