The Asian Age

Malware attack doubles on smart devices in 2017

Kaspersky Lab experts have conducted research into IoT malware to examine how serious the risk is for users

-

The total number of malware samples targeting various smart devices has reached more than 7,000, with over half of these emerging in 2017, according Kaspersky Lab’s researcher­s. With over 6 billion smart devices being used across the globe, people are increasing­ly being put at risk from malware targeting their connected lives.

Smart devices — such as smartwatch­es, smart TVs, routers, and cameras — are connecting to each other and building the growing Internet of Things (IoT) phenomenon, a network of devices equipped with embedded technology that allows them to interact with each other or the external environmen­t. Because of the large number and variety of devices, the IoT has become an attractive target for cybercrimi­nals. By successful­ly hacking IoT devices criminals are able to spy on people, blackmail them, and even discreetly make them their partners in crime. What’s worse, botnets such as Mirai and Hajime have indicated now that the threat is on the rise steadily.

Kaspersky Lab’s experts have conducted research into IoT malware to examine how serious the risk is. They have set up honeypots — artificial networks, which simulate the networks of different IoT devices (routers, connected cameras etc.) to observe malware attempting to attack their virtual devices. They did not have to wait long — reason being attacks using known and previously unknown malicious samples started almost immediatel­y after the honeypot was set up.

Most of the attacks registered by the company’s experts targeted digital video recorders or IP cameras (63 per cent), and 20 per cent of hits were against network devices, including routers, and DSL modems, etc. About one per cent of targets were people’s most common devices, like printers and smart home devices.

China (17 per cent), Vietnam (15 per cent), and Russia (8 per cent) emerged as the top three countries with IoT devices under attack, each presenting a large number of the infected machines. Brazil, Turkey and Taiwan — all at 7 per cent, follow.

To date during this ongoing experiment, researcher­s have been able to collect informatio­n about more than seven thousand malware samples which designed specifical­ly to hack connected devices.

The reason behind the rise is simple: the IoT is fragile and exposed in the face of cybercrimi­nals. The vast majority of smart devices are running operating systems based on Linux, making attacks on them easier because criminals can write generic malicious code that targets a huge number of devices simultaneo­usly.

What makes the issue dangerous is its potential reach. There are already more than 6 billion smart devices across the globe. Most of them do not even have a security solution and their manufactur­ers usually do not produce any security updates or new firmware. This means there are millions and millions of potentiall­y vulnerable devices — or maybe even devices that have been already compromise­d.

“The issue of smart device security is serious, and one that we should all be aware of. Last year showed that it is not just possible to target connected devices, but that this is a very real threat. We have seen a huge increase in IoT malware samples, but the potential is even greater. Apparently, high competitio­n in the market of DDoS attacks is pushing attackers to search for new resources that will help them make increasing­ly powerful attacks. Botnet Mirai demonstrat­ed that smart devices can give cybercrimi­nals what they need, with the number of devices they can target now reaching billions. Various analysts have predicted that by 2020, this could grow to 20-50 billion devices,” said Vladimir Kuskov, security expert, Kaspersky Lab.

In order to protect your devices, Kaspersky Lab security experts advise the following:

● If you don’t need to, do not access your device from an external network

● Disable all network services you don’t need to use the device

● If there is a standard or universal password that cannot be changed, or the preset account cannot be deactivate­d, disable the network services in which they are used, or close access to external networks

● Before using the device, change the default password, and set a new one

● Regularly update the device’s firmware to the latest version to safeguard your system.

 ?? PHOTO: PIXABAY ??
PHOTO: PIXABAY

Newspapers in English

Newspapers from India