Insecure phones, devices creating largest-ever sensor grid (for China) in US homes, says Pepper cyber security report

February 25, 2019  |  Austin Barnes

Pepper cyber security report

As an industry, the state of cyber security is a “hot mess,” Scott Ford said candidly.

Scott Ford, Pepper

Scott Ford, Pepper

“Frankly, its at a point where it ought to be concerning to everybody,” Ford, CEO of Pepper IoT, said in response to a new report that examines the state of the IoT space and released as part of a collaboration between Pepper and DarkCubed, a Virginia based, cyber security firm.

“It certainly validated what we suspected and we’ve seen through our own testing of devices in the market,” Ford said of findings from the report — assembled by DarkCubed CEO Vince Crisler and his team. “It highlights the real need for policy, regulation, and responsibility among distributors to source IoT devices [sold in the U.S.]  that operate on U.S.-based platforms.”

Pepper was named one of Startland’s Kansas City Startups to Watch in 2019. Click here for more on why Pepper was selected.

Research for the report was conducted after DarkCubed purchased smart devices from common retailers and monitored how secure they were, in comparison with the security of their backend infrastructure and android apps, the company explained.

A key finding of the report revealed that many tech devices sold in the U.S. have not been through a security review, Crisler said.

“If I’d learned in this assessment that some of these devices were insecure, that wouldn’t have been surprising,” Crisler said. “To see that these devices are designed, manufactured, distributed and sold — and in use in consumer homes — but nobody has ever looked at it from a security perspective? That is what was really surprising to me.”

Other findings included: inexplicable interactions with personal data; unusual levels of communication between the devices and their infrastructure; connections to IP addresses in questionable nation-states; and security practices and policies that were at best, ineffective and at worst, non-existent, the report indicated.

Click here to read the full report.

“I’m not shy anymore about saying, you know, ‘China is making a strategic play in consumer IoT and nobody cares, right?’ [It] is a big problem that we are deploying the largest sensor grid in the history of the world, in the homes of users across the globe,” Crisler explained.  

Vulnerabilities that allow household tech to send encrypted data to China has both Ford and Crisler on edge, as the two look for ways to innovate the IoT space and rid the consumer market of such security risks, they said.

Part of such a fight will include a strategic partnership between the companies, Ford said.

“Both DarkCubed and Pepper are going to work together — but then also independently — to scan the market and identify issues that we see out there and then come together and decide how to expose those problems,” he said. “The goal here really isn’t to scare the heck out of consumers … It’s really about those who have influence, a decision making power in the marketplace.”

In the future, the two companies plan to co-create reports aimed at raising awareness of emerging cyber security threats as a means of promoting thought leadership in the IoT space and starting candid conversations centered around the issue, Crisler added.

Click here to read more about Pepper’s cyber security efforts.

startland-tip-jar

TIP JAR

Did you enjoy this post? Show your support by becoming a member or buying us a coffee.

Tagged , , , ,
Featured Business
    Featured Founder

      2019 Startups to Watch

        stats here

        Related Posts on Startland News

        KCMO Mayor Quinton Lucas and Gov. Mike Parson, R-Missouri, talk before the announcement of Meta's new $800 million data center in Kansas City

        Meta promises local jobs, impact; How its $800M plan could post growth (and disruption) to KC’s story

        By Tommy Felts | March 24, 2022

        There’s more to Meta’s $800 million upload into Kansas City’s Northland than face value, company officials said Thursday, outlining plans for community impact that extends well beyond anticipated tech jobs.  “We have programs that help to equip people, schools, and organizations with the resources to build skills and increase the use of technology,” Darcy Nothnagle,…

        Rendering of the Meta Kansas City data center at Golden Plains Technology Park

        Facebook coming to Kansas City; Meta selects KCMO for massive, $800M data center

        By Tommy Felts | March 24, 2022

        A new hyperscale data center is expected to be operational in Kansas City by 2024 — bringing global social media and tech giant Meta to the metro and making good on promises that a Northland development could be the next great national technology hub. The Kansas City Area Development Council and its partners announced the…

        Dr. Richard H. Linton, president of Kansas State University, board of directors for TechAccel

        New K-State president joins KC startup’s board, bringing expertise on food science, academic collaboration

        By Tommy Felts | March 23, 2022

        The president of Kansas State University has joined the board of directors of TechAccel, an Overland Park startup focused on scientific breakthroughs to produce healthier plants, animals and foods. Dr. Richard H. Linton, who assumed the leadership of K-State following the Feb. 11 retirement of former Richard Myers, comes with an array of experience expected…

        Penny Dale-McCant and Myron McCant, KD Academy

        $4M dream childcare center opened on Prospect as planned; why the 24/7 KD Academy is struggling to fill its beds

        By Tommy Felts | March 23, 2022

        Penny Dale-McCant built a childcare model — and a $4 million expansion of her KD Academy brand with her husband, Myron McCant — unlike anything else in the region, she said. Today, however, the center serves only a third of its intended capacity: a product of pandemic trends that have limited staffing. “I’m just proud…