Episode 377: Why there were 56 OT vulnerabilities this week

Episode 377: Why there were 56 OT vulnerabilities this week

Author: Stacey Higginbotham, tech journalist June 23, 2022 Duration: 57:32

This week we cover the Ericsson mobility report that offers some stats on cellular IoT connections, including the surprising nugget that we won’t see 4G/5G connections surpass 2G/3G connections until some time next year. Then we hit another report. This one is from NPR and covers the state of audio and smart speakers. It proves that growth is slowing for smart speakers and that we may not do as many things with voice as we think. In dystopian news we cover China using COVID tracking apps to lock down protesters, and Microsoft stopping sales of some facial recognition tools. In new product news we talk about the latest Philips Hue gear, a new material that could generate electricity for wearables, and new MCUs from NXP. We also address the closure of SmartDry and explain how Google’s update on the Nest Max Hub may break your Nest x Yale lock. We end by answering a listener question about more accurate motion sensors.

Our guest this week is Daniel dos Santos, head of security research at Vedere, a business unit of Forescout. He’s on the show to discuss why Forescout released 56 new OT vulnerabilities dubbed ICEFALL. He shares the design flaws that led to these vulnerabilities and more importantly, explains what needs to happen if compromised controllers or devices can’t be fixed. He also shares a startling stat about how many industrial customers are actually updating their devices after a vulnerability has been disclosed, and how to encourage more of them to address security flaws. If you want to learn more abut securing critical infrastructure, this is a good place to start.

Hosts: Stacey Higginbotham and Kevin Tofel
Guest: Daniel dos Santos, head of security research at Forescout
Sponsors: Nordic Semiconductor and Wirepas

  • There are still more 2G and 3G IoT connections than 4G/5G ones
  • With smart speakers it’s the same as it ever was
  • Are the new Hue track lights for you?
  • The ICEFALL vulnerabilities are a sign of progress actually.
  • This vendor says only one in ten patch their OT gear

The post Episode 377: Why there were 56 OT vulnerabilities this week appeared first on IoT Podcast - Internet of Things.


For anyone trying to make sense of a world where everything from your thermostat to a factory floor is getting smarter, The Internet of Things Podcast-Stacey On IoT offers essential context. Veteran tech journalist Stacey Higginbotham, who brings her experience from Fortune, and co-host Kevin Tofel break down the weekly flood of news, separating genuine innovation from mere hype. Their analysis spans the entire connected ecosystem, diving into the gadgets in our homes, the sensors transforming industrial workspaces, and the complex enterprise systems tying it all together. This isn't just theoretical; it's a practical guide to the business and technology decisions shaping our networked future. You'll hear from a range of voices that have built and critiqued this landscape, including pioneers like Vint Cerf, insightful commentators like Om Malik, and practitioners from companies such as Amazon, AT&T, and IBM Watson. Listening to this podcast provides a crucial framework for understanding the real-world implications of connectivity, whether you're an industry professional, a curious developer, or simply someone wondering how all these "smart" things actually work-and what they mean for privacy, security, and daily life. It's the clear-eyed conversation you need to navigate the ever-expanding Internet of Things.
Author: Language: en-us Episodes: 100

The Internet of Things Podcast - Stacey On IoT
Podcast Episodes
Episode 427: What it takes to put LTE on the moon [not-audio_url] [/not-audio_url]

Duration: 1:03:02
We start this week’s show with a review of DeviceScript, a limited subset of the TypeScript programming language, built by Microsoft to bring a more modern programming option to connected device programing. Kevin downloa…
Episode 426: Our take on Apple’s Vision Pro and fixes for bad air [not-audio_url] [/not-audio_url]

Duration: 1:04:18
It may not surprise anyone, but Kevin and I have thoughts on Apple’s Vision Pro mixed reality headset that we’re sharing with y’all. We also lay out some details about changes to Apple’s various operating systems and ser…
Episode 425: Smarter grocery stores are coming [not-audio_url] [/not-audio_url]

Duration: 1:00:17
Krogers and Walmart are both expanding various IoT devices to more of their stores as part of a larger shift in how connectivity and intelligence will change how we shop. Walmart is deploying electronic shelf labels in 5…
Episode 424: Trust, AI, and the economy drive IoT conversations [not-audio_url] [/not-audio_url]

Duration: 1:01:28
This week’s show is live from Dallas as I attend the Parks Associates Connections smart home event, so I start out discussing some of the themes I’ve seen so far, including the growing importance of data privacy, local p…
Episode 423: Why Wemo is a no go for us [not-audio_url] [/not-audio_url]

Duration: 59:37
We start this week’s show with a conversation about Latch, the company that is acquiring Jamie Siminoff’s stealth startup. Siminoff, who also founded Ring, left Amazon (which had acquired Ring in 2018) this week ahead of…
Episode 422: The Pixel tablet is a smart home let down [not-audio_url] [/not-audio_url]

Duration: 57:46
Google launched a new tablet and dock at the Google I/O event Wednesday, and Kevin and I share our thoughts on how it might fit in with a smart home. Will it replace your Nest Smart Displays? We also share some of the up…
Episode 421: Amazon adds Thread and beefs up Alexa [not-audio_url] [/not-audio_url]

Duration: 54:07
Amazon has turned on the Thread-capabilities inside its Echo devices so they can support the Matter smart home interoperability standard in its totality, so Kevin and I talk about what that will and won’t do for smart ho…
Episode 420: First impressions of the new Aqara mmWave sensor [not-audio_url] [/not-audio_url]

Duration: 50:45
This week we start the show with my first impressions of the Aqara FP2 mmWave sensor. This $83 sensor can detect multiple people in a room, light settings, and falls. It’s also one of the first presence sensors that uses…
Episode 419: Little sensors save big amounts of water [not-audio_url] [/not-audio_url]

Duration: 1:02:02
This week’s show has lots of updates and small updates. We start off with a story about a golf course near San Diego that has saved millions of gallons of water using connected soil sensors. And then we review what chang…
Episode 418: Why is the smart home still so terrible? [not-audio_url] [/not-audio_url]

Duration: 1:09:10
This week’s show is full of both good news and bad news, starting with Google apparently dropping software update support for third-party smart displays. We question Google’s commitment to the smart home, even though the…