In a recent tweet, researcher Ankit Anubhav, specialized in IoT security, drew attention on a list circling the internet, containing thousands of IP addresses of IoT devices including their login data. Many of the devices are still accessible via Telnet, some of them already have been taken over by botnets. What baffles is that despite the many incidents related to poorly secured IoT devices and constant warnings from security professionals, most of the logins couldn’t been easier to guess: When “admin:admin” or “root:123456” grants access to a device, calling it “hacking” to take control already sounds like an insult. My plea: Think of security first, when you think of the IoT!
3


