Are smart homes cyber-security smart?

enisa-logo

ENISA has published the Threat Landscape and Good Practice Guide for Smart Home and Converged Media, a contribution towards the achievement the EU Cyber Security Strategy objectives. The study aims to identify both the security risks and challenges as well as the countermeasures required for emerging technologies in smart homes, providing a specific and focused approach, with an overview of the current state of cyber security in this emerging domain.

For the compilation of this report, an informal expert group was created to collect input at various stages of the project. In addition, the study takes into account existing assessments and publicly available information sources and provides a thematic Threat Landscape in the area of Smart Homes.

Within the scope of the study, threat agents have been identified revealing several sources of vulnerability. Cyber criminals are identified as the largest and most hostile threat category, while the potential abuse of smart homes should be considered high with the increasing number of smart devices and homes and particularly converged media. Furthermore, several economic factors generate security vulnerabilities, while design choices are competing against cost and convenience.

Many of the risks will be of a socio-technical type due to the depth and variety of personal information that can be captured and processed, and will produce data on previously unrecorded activities, with a close link between people and their environments. In addition, the interests of different asset owners in the smart home are not necessarily aligned and may even be in conflict, creating a complex environment for security activity.

On the other hand, converged media and television raise security issues in terms of connectivity, embedded functionality, opaque systems and incompatibility with traditional information security approaches, along with issues of privacy, access and copyright. Converged media devices are likely to be some of the first consumer smart home devices introduced to many homes, and will therefore be the terrain for the initial playing out of many of the identified smart home security issues.

Not all smart homes are created equally due to multiple design pathways which result in their own security and privacy peculiarities, sharing issues and vulnerabilities. Just as in many other areas of ICT, applying basic information security can significantly increase overall security in the smart home domain.

Good practices in the sector involve the design of the smart home as a system, careful consideration of the security of cloud-based smart home designs, an application isolation framework (as developed in smart cars), and keeping critical software separate from non-critical apps, network and communications security measures. Similar approaches referred to for smart grids may prove to be applicable in the smart home context.

The Executive Director, Udo Helmbrecht commented: “The smart home is a point of intense contact between networked information technology and physical space, and therefore brings together security risks from both the virtual and the physical contexts. Identifying cyber threats is crucial for the protection of the smart home and is therefore a key element in ensuring its successful deployment”.

For full report: Threat Landscape for Smart Home and Media Convergence

Recent Articles

Services firm ISS partners with Haltian to build smart facilities

Posted on: May 29, 2020

Facility services company ISS requires an Internet of Things (IoT) platform that is secure, reliable, and easily scaled and modified to customers’ needs. Finnish IoT and product development company Haltian has already been the main provider of IoT solutions for ISS Finland, and now the co-operation is to be extended globally.

Read more

‘0G’ in the management of epidemics

Posted on: May 28, 2020

The coronavirus epidemic has turned into a pandemic. The lack of hindsight and visibility in the face of increasing numbers of victims and the overloading of emergency services has led to the lockdown of half the planet. This containment impacts and will impact all economies, but even more so the economies of developing countries.

Read more