Story image

Enterprise IoT ecosystem extends beyond corporate devices - Zscaler

28 May 2019
Twitter
Facebook

Cloud security company Zscaler has released its 2019 report,  IOT in the Enterprise: An Analysis of Traffic and Threats, which examines traffic stemming from IoT device footprints across the Zscaler cloud over the course of 30 days.

The Zscaler ThreatLabZ research team analysed 56 million IoT device transactions to understand the types of devices in use, the protocols used, the locations of the servers with which they communicated, and the frequency of inbound and outbound communications.

Over a 30-day period, 56 million transactions were processed in the Zscaler cloud from 270 different types of IoT devices made by 153 different manufacturers.

The analysis showed that more than 1,000 organisations have at least one IoT device transmitting data from the network to the internet via the Zscaler cloud platform.

The most commonly detected IoT device categories across the Zscaler cloud were IP cameras, smart watches, printers, smart TVs, set top boxes, IP phones, medical devices, and data collection terminals, among others.

“As is often the case with new innovations, the use of IoT technology has moved more quickly than the mechanisms available to safeguard these devices and their users,” says Zscaler chief technology officer and engineering and cloud operations executive vice president Amit Sinha.

“Within only one month of traffic, our threat research team saw an astronomical amount of traffic stemming from both corporate and personal IoT devices.”

“Enterprises need to take steps to safeguard these devices from malware attacks and other outside threats.”

Top IoT security concerns were:

  • Weak default credentials
  • Plain-text HTTP communication to a server for firmware or package updates
  • Plain-text HTTP authentication
  • Use of outdated libraries

“We observed that over 90% of IoT transactions are occurring over a plain text channel, which we believe makes these devices and the enterprises that house them vulnerable to crafted attacks,” says Zscaler security research vice president Deepen Desai.

“Enterprises need to assess their IoT footprint, as they will only continue to expand and raise the risk of cyber attacks. From changing default credentials to restricting access to IoT devices from external networks, there are a variety of steps that can be taken to increase the IoT security posture.”

The Zscaler ThreatLabZ research team consists of security experts, researchers, and network engineers responsible for analysing and eliminating threats across the Zscaler security cloud and investigating the global threat landscape.

The team shares its research and cloud data with the industry at large to help promote a safer internet.

Story image
28 Aug
HPE, VMware announce Cloud Foundation as a Service
The integration of HPE GreenLake, HPE Synergy and VMware Cloud Foundation to enable mutual customers to keep their applications, tools and data in place while benefiting from cloud and composable infrastructure.More
Story image
10 Sep
ON Semiconductor prepares for new era of IoT power over ethernet
ON Semiconductor is mobilising support for the new IEEE 802.3bt standard amongst its products and technologies, as it gets set for a new era of the internet of things (IoT).More
Story image
27 Aug
Surge in uptake of VMware on AWS, survey reports
Enterprises are expressing growing interest in cloud platforms such as VMware Cloud on AWS, according to managed service provider Faction. More
Story image
11 Sep
‘Rotation Champions’ heralding the way for the future of business in China
“Chinese companies have demonstrated great determination to digitise their organisations against the current complex business environment. But to stay ahead of the competition, business leaders need to achieve disruptive growth and reinvent businesses and ecosystems.”More
Story image
27 Aug
Zadara adds NVMe-as-a-service to enterprise storage platform
Zadara upgraded its fully managed enterprise storage-as-a-service (STaaS) platform to include critical enhancements such as NVMe.More
Story image
06 Sep
Western Digital unveils 20TB mechanical HDDs
Select customers will be able to sample Western Digital’s 18TB Ultrastar DC HC550 CMR HDD and the 20TB Ultrastar DC HC650 SMR HDD, with full production expected to begin in the first half of 2020.More