5 ms·
Dodgy IoT devices will be the end of us all.
by losthobbies 1y ago
Dodgy IoT devices will be the end of us all.
- bearjaws 1y agoIt's wild to think with the proliferation of 1gbps fiber internet, even a modern pi board or old desktop is a potential 1gbps bot host.
- dinkblam 1y ago[flagged]
- franga2000 1y agoWhen your IP is found to have been part of a botnet, I think ISPs should just limit you to like 20Mbps for at least a year, so you think twice about buying that 10$ wifi baby monitor next time.
- bogdan 1y agoThat's quite harsh. Good thing you're not in charge of making decisions.
- deleted 1y ago[deleted]
- mschuster91 1y agoWhen you get caught speeding on the road or being a nuisance otherwise you can and will get punished by the courts, including temporary restrictions on your driver license. When you money mule for others, even if you don't know that you actually fell victim to a scam, you get punished as well. When you litter in Singapore, you can get ordered to work community service. I see no issue in handing out similar punishments in the digital space. The Internet is a shared medium, everyone who connects to it has a responsibility to not be a nuisance to others.
- xwolfi 1y agoOn the road you could have killed someone. Your 20$ baby monitor bought from an authorized store you know... whatever happens, it's not gonna kill anyone very directly ... The main ingredient of crime is intent, whatever you say. A smaller ingredient can be recklessness, but maybe it's the ISPs sending all those millions of empty packets to a single server that should start feeling some heat ?
- mschuster91 1y ago> Your 20$ baby monitor bought from an authorized store you know... whatever happens, it's not gonna kill anyone very directly ... Yeah, not kill, but participating in a DDoS against a heavily frequented commercial site that makes hundreds of thousands of dollars of revenue a minute, that's still some substantial damage. In the end it should boil down to the ability of holding the seller of the product with security issues accountable for the damages, and the seller in turn can hold the manufacturer accountable. Maybe that will lead to some substantial change.
- Spivak 1y agoYou are ignoring the fact that the criminal in question bought a baby monitor. that is the full extent of their crime. A person who buy all reason has absolutely no idea how any of this shit works. If you wanna go after somebody go after the manufacturer of said baby monitor.
- Khaine 1y agoA person who buys a Tesla has no idea how any of it works. Look at the moment, the owner of devices that participate in DDoSes are not head liable, and neither are manufacturers who don't secure their shit. This needs to change.
- motorest 1y agoPlease explain in your own words why I should be liable for a third party misappropriating a product I own.
- hooverd 1y agoThanks to CGNAT you, obviously an upstanding digital citizen, will also have to pay for your neighbor purchasing an IoT toaster.
- BenjiWiebe 1y agoYour ISP can tell you apart from your neighbor since they are the ones doing the CGNAT.
- ycombinatrix 1y agoThat doesn't make any sense. Who do you think is doing the CGNAT?
- hooverd 1y agoYea, it would be bad practice to nuke an IP just because it was implicated in a botnet.
- NoMoreNicksLeft 1y agoIf that could make people think about it, I'd be all for it. But the people buying that junk are absolutely clueless, and would remain so even after the punishment was well-underway.
- philipallstar 1y agoObviously they are - everyone's clueless about everything except the one thing they know about. I imagine for the clothes you're wearing you're clueless about the conditions of the people who made them.
- NoMoreNicksLeft 1y agoNo, I'm aware of their conditions I just don't care.
- yupyupyups 1y agoOr you go after the producers and retailers of these devices. This way you wont have to harm tech-illiterate people.
- motorest 1y ago> This way you wont have to harm tech-illiterate people. What leads you to believe this is a tech illiteracy issue? Do you believe that only consumer IoT devices are unwitting participants in DDoS attacks?
- yupyupyups 1y agoThere is no way for an ISP to differentiate between an infected router or IoT device and an infected PC due to the user's own neglegence. If laws like the Cyber Recillience Act have been put into effect long enough for us to see a significant improvement in device security, then we can softly begin to rule out that cause and focus on the user. We are not there yet, because (imo) devices are still not properly secured enough for us to go straight to blaming the user.
- motorest 1y ago> When your IP is found to have been part of a botnet, I think ISPs should just limit you to like 20Mbps for at least a year, so you think twice about buying that 10$ wifi baby monitor next time. You're talking as if people can't just get another account or change ISPs. Also, it seems you're mainly interested in gratuitously punish people who are powerless about issues instead of thinking about very basic approaches such as rate-limiting policies.
- NoPicklez 1y agoOkay and when your brand new Samsung TV is used in a botnet you should have your internet limited to 20Mbps as well? It's not just $10 pieces of crap of Amazon that fall victim to Botnet's.
- lostlogin 1y ago> the proliferation of 1gbps fibre internet And increasingly, 2gbps, 4gbps and 8gbps. It’s great, mostly.