IOT NEWS

Industrial IoT News

Industrial IoT Home

New IoT Ecosystem Report Measures 56 Million Transactions, More Than 90 Percent via Plaintext Channel

By Ken Briodagh
May 28, 2019

Zscaler, a cloud security company, recently released its 2019 report, IoT in the Enterprise: An Analysis of Traffic and Threats, which examines traffic stemming from IoT device footprints across the Zscaler cloud over the course of 30 days. The Zscaler ThreatLabZ research team analyzed 56 million IoT device transactions to understand the types of devices in use, the protocols used, the locations of the servers with which they communicated, and the frequency of inbound and outbound communications.

Over a 30-day period, 56 million transactions were processed in the Zscaler cloud from 270 different types of IoT devices made by 153 different manufacturers. The analysis reportedly showed that more than 1,000 organizations have at least one IoT device transmitting data from the network to the internet via the Zscaler cloud platform.

The most commonly detected IoT device categories across the Zscaler cloud included IP cameras, smart watches, printers, smart TVs, set top boxes, IP phones, medical devices, and data collection terminals, among others.

“As is often the case with new innovations, the use of IoT technology has moved more quickly than the mechanisms available to safeguard these devices and their users. Within only one month of traffic, our threat research team saw an astronomical amount of traffic stemming from both corporate and personal IoT devices,” said Amit Sinha, EVP, Engineering and Cloud Operations, CTO, Zscaler. “Enterprises need to take steps to safeguard these devices from malware attacks and other outside threats.”

Top IoT Security Concerns:

  • Weak default credentials
  • Plain-text HTTP communication to a server for firmware or package updates
  • Plain-text HTTP authentication
  • Use of outdated libraries

“We observed that over 90 percent of IoT transactions are occurring over a plain text channel, which we believe makes these devices and the enterprises that house them vulnerable to crafted attacks,” said Deepen Desai, VP, Security Research, Zscaler. “Enterprises need to assess their IoT footprint, as they will only continue to expand and raise the risk of  cyberattacks. From changing default credentials to restricting access to IoT devices from external networks, there are a variety of steps that can be taken to increase the IoT security posture.”




Edited by Ken Briodagh
Get stories like this delivered straight to your inbox. [Free eNews Subscription]

Editorial Director

SHARE THIS ARTICLE
Related Articles

A 'Truly Great' Match for IIoT: Avassa and OnLogic Establish Partnership

By: Alex Passett    4/18/2024

Edge management software provider Avassa and industrial computer manufacturer OnLogic have partnered to benefit IIoT use cases.

Read More

Industrial Sectors See a Boost in Adoption of Zero Trust Practices, According to Xage

By: Alex Passett    4/11/2024

A new Xage report dives into various industrial and IIoT-centric sectors improving their security protocols by adopting a variety of crucial zero trus…

Read More

Another Smart IIoT Collab: Rockwell Automation and NVIDIA to Harness Omniverse Cloud APIs and Industrial-Scale Digital Twins

By: Alex Passett    4/4/2024

Rockwell Automation is collaborating with industry giant NVIDIA to integrate NVIDIA's Omniverse Cloud APIs with Emulate 3D by Rockwell Automation.

Read More

Having Raised $17M in Series A-1 Funding, Gather AI Continues Optimizing Warehouse Inventory with Drones

By: Alex Passett    4/1/2024

Gather AI recently announced its $17 million Series A-1 funding led by Bain Capital Ventures (with participation from Tribeca Venture Partners, Dundee…

Read More

New Collab Between Scanbot SDK and Cypher Robotics Set to Automate Wearying Warehouse Inventory Processes

By: Alex Passett    3/26/2024

Scanbot SDK and Cypher Robotics have officially partnered to streamline warehousing and inventory cycle counting processes.

Read More