Recent Posts

GM Launches Bug Bounty Program, Minus the Bounty

In-brief:  General Motors (GM) has launched a program to entice white hat hackers and other expert to delve into the inner workings of its software. The reward: so far, a promise not to sue. 

ZigBee, Thread Group to Drive IoT Standards Interoperability

eWeek reports that the ZigBee Alliance and Thread Group, two industry groups working on standards for the Internet of things space will roll out an offering that will integrate the work of both consortiums later in the year. From the article: ZigBee’s Common Application Library will be compatible with the Thread Group’s IP networking layer. A complete solution that includes a certification program will be in place by the third quarter, according to ZigBee officials. The solution that will enable ZigBee-based products to use the Thread networking protocol, according to eWeek. Source: ZigBee, Thread Group to Drive IoT Standards Interoperability

Missing in Michaels Data Breach: Harm To Consumers | Digital Guardian

In-brief: A federal court has thrown out a class action suit against Michaels Craft Stores, saying that the plaintiff couldn’t prove she was damaged as a result of her information being stolen. The basis for the ruling: a 2013 Supreme Court case concerning the government’s secretive FISA courts. 

Podcast: Security is a Four Letter Word on the Internet of Things

In-brief: In this podcast, Dennis Fisher of onthewire.io and I talk about securing the Internet of Things. 

Password Shaming: SCADA Password Dump Intended to Improve Security

In-brief: Call it “password shaming”: a group of security researchers has published a list of default administrator credentials for the software that runs many of the world’s industrial facilities and manufacturing lines.