Breaking News

Noctua at Computex 2026 GIGABYTE announces AORUS GeForce RTX 50 Series AI BOX Sony Expands Professional Display Lineup with Crystal LED UNIFY PlayStation Plus Game Catalog for June 2026 Introducing the Razer Seiren V3 Pro

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

HP Says Internet of Things Devices Are Vulnerable to Attack

HP Says Internet of Things Devices Are Vulnerable to Attack

Enterprise & IT Jul 29,2014 0

An HP study revealed that 70 percent of the most commonly used Internet of Things (IoT) devices contain vulnerabilities, including password security, encryption and general lack of granular user access permissions. With the rise of IoT, the number and diversity of connected devices is expected to increase exponentially. According to Gartner, "the Internet of Things" will include 26 billion units installed by 2020. IoT product and service suppliers will generate incremental revenue exceeding $300 billion, mostly in services, in 2020."

This spike in demand is pushing manufacturers to quickly bring to market connected devices, cloud access capabilities and mobile applications in order to gain share. While this increase in IoT devices promises benefits to consumers, it also opens the doors for security threats ranging from software vulnerabilities to denial-of-service (DOS) attacks to weak passwords and cross-site scripting vulnerabilities.

"While the Internet of Things will connect and unify countless objects and systems, it also presents a significant challenge in fending off the adversary given the expanded attack surface," said Mike Armistead, vice president and general manager, Fortify, Enterprise Security Products, HP. "With the continued adoption of connected devices, it is more important than ever to build security into these products from the beginning to disrupt the adversary and avoid exposing consumers to serious threats."

HP scanned 10 of the most popular IoT devices, uncovering, on average, 25 vulnerabilities per device—totaling 250 security concerns across all tested products. The IoT devices tested—along with their cloud and mobile application components—were from manufacturers of TVs, webcams, home thermostats, remote power outlets, sprinkler controllers, hubs for controlling multiple devices, door locks, home alarms, scales and garage door openers.

The most common and easily addressable security issues reported include privacy concerns, insufficient authorization, lack of transport encryption, insecure web interface and inadequate software protection, the study found.

For instance, HP said that 8 of the 10 devices tested, along with their corresponding cloud and mobile application components, raised privacy concerns regarding the collection of consumer data such as name, email address, home address, date of birth, credit card credentials and health information. Moreover, 90 percent of tested devices collected at least one piece of personal information via the product itself, the cloud or its mobile application. 6 of the 10 devices evaluated raised security concerns with their user interfaces such as persistent XSS, poor session management, weak default credentials and credentials transmitted in clear text. And 60 percent of devices did not use encryption when downloading software updates, an alarming number given that software powers the functionality of the tested devices.

To protect against security hazards that come along with the rise of IoT, it is imperative for organizations to implement an end-to-end approach to identify software vulnerabilities before they are exploited.

Further details resulting from the study are available at hp.com/go/fortifyresearch/iot.

Tags: HP
Previous Post
IBM, ACS And AT&T Claim Breakthrough In Elastic Cloud-to Cloud Networking
Next Post
China Starts Anti-monopoly Investigation On Microsoft

Related Posts

  • An Intel-HP Collaboration Delivers Next-Gen AI PCs

  • OMEN AND HYPERX POWER UP COOLEST PORTFOLIO YET FOR PERSONALIZED PLAY

  • New KIOXIA RM7 Series Value SAS SSDs Debut on Hewlett Packard Enterprise Servers

  • HYPERX EXPANDS CONSOLE GAMING HEADSET LINEUP WITH CLOUD STINGER 2 FOR PLAYSTATION AND CLOUDX STINGER 2 FOR XBOX

  • KIOXIA first to launch data center NVMe E3.S SSDs on Hewlett Packard Enterprise systems

  • HP debuted its newest HP Spectre and HP Envy laptops

  • HP Announces Omen 16 and Victus 15 new gaming laptops

  • HP Threat Research Shows Attackers Exploiting Zero‐Day Vulnerability Before Enterprises Can Patch

Latest News

Noctua at Computex 2026
Cooling Systems

Noctua at Computex 2026

GIGABYTE announces AORUS GeForce RTX 50 Series AI BOX
GPUs

GIGABYTE announces AORUS GeForce RTX 50 Series AI BOX

Sony Expands Professional Display Lineup with Crystal LED UNIFY
Consumer Electronics

Sony Expands Professional Display Lineup with Crystal LED UNIFY

PlayStation Plus Game Catalog for June 2026
Gaming

PlayStation Plus Game Catalog for June 2026

Introducing the Razer Seiren V3 Pro
Enterprise & IT

Introducing the Razer Seiren V3 Pro

Popular Reviews

Akaso 360 Action camera

Akaso 360 Action camera

Dragon Touch Digital Calendar

Dragon Touch Digital Calendar

Endorfy Thock V2 Wireless Keyboard

Endorfy Thock V2 Wireless Keyboard

be quiet! Pure Loop 3 280mm

be quiet! Pure Loop 3 280mm

Noctua NF-A12x25 G2 fans

Noctua NF-A12x25 G2 fans

Soft2bet and the unseen hardware that makes instant play possible

Soft2bet and the unseen hardware that makes instant play possible

Crucial T710 2TB NVME SSD

Crucial T710 2TB NVME SSD

be quiet! Pure power 13M 750W

be quiet! Pure power 13M 750W

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed