Despite Emerging Regulations, Mobile Device, IoT Security Requires More Industry Attention

November 6, 2024 at 02:43PM Internet-connected devices are integral to daily life but pose significant cybersecurity risks. Consumers must remain vigilant against insecure devices and scams, particularly in light of recent regulatory advancements like the EU’s Cyber Resilience Act. Manufacturers need to adapt to evolving security requirements and enhance communication between product and cybersecurity teams. … Read more

Cybersecurity Labeling for Smart Devices Aims to Help People Choose Items Less Likely to be Hacked

May 23, 2024 at 09:09AM Consumer labels indicating cybersecurity standards compliance will soon appear on smart devices in the US, helping consumers make informed choices. The “Cyber Trust Mark Initiative” allows manufacturers to affix the label if federal standards are met. The labels, similar to the Energy Star program, aim to empower consumers and encourage … Read more

New U.K. Law Bans Default Passwords on Smart Devices Starting April 2024

April 30, 2024 at 03:03AM The UK NCSC urges smart device manufacturers to comply with the new PSTI act, prohibiting default passwords. This aims to enhance ongoing protection against cyber attacks for consumers. Failure to comply may result in recalls and fines of up to £10 million or 4% of global revenues. This makes the … Read more

iPhone, Android Ambient Light Sensors Allow Stealthy Spying

January 19, 2024 at 11:46AM Researchers at MIT have discovered that ambient light sensors in smart devices, usually used for adjusting screen brightness, can covertly capture images of user gestures without requiring permission, posing a privacy threat. The team highlighted the potential risk and suggested measures like restricting information rates and adding permission controls to … Read more