Episode 377: Why there were 56 OT vulnerabilities this week

Episode 377: Why there were 56 OT vulnerabilities this week

Author: Stacey Higginbotham, tech journalist June 23, 2022 Duration: 57:32

This week we cover the Ericsson mobility report that offers some stats on cellular IoT connections, including the surprising nugget that we won’t see 4G/5G connections surpass 2G/3G connections until some time next year. Then we hit another report. This one is from NPR and covers the state of audio and smart speakers. It proves that growth is slowing for smart speakers and that we may not do as many things with voice as we think. In dystopian news we cover China using COVID tracking apps to lock down protesters, and Microsoft stopping sales of some facial recognition tools. In new product news we talk about the latest Philips Hue gear, a new material that could generate electricity for wearables, and new MCUs from NXP. We also address the closure of SmartDry and explain how Google’s update on the Nest Max Hub may break your Nest x Yale lock. We end by answering a listener question about more accurate motion sensors.

Our guest this week is Daniel dos Santos, head of security research at Vedere, a business unit of Forescout. He’s on the show to discuss why Forescout released 56 new OT vulnerabilities dubbed ICEFALL. He shares the design flaws that led to these vulnerabilities and more importantly, explains what needs to happen if compromised controllers or devices can’t be fixed. He also shares a startling stat about how many industrial customers are actually updating their devices after a vulnerability has been disclosed, and how to encourage more of them to address security flaws. If you want to learn more abut securing critical infrastructure, this is a good place to start.

Hosts: Stacey Higginbotham and Kevin Tofel
Guest: Daniel dos Santos, head of security research at Forescout
Sponsors: Nordic Semiconductor and Wirepas

  • There are still more 2G and 3G IoT connections than 4G/5G ones
  • With smart speakers it’s the same as it ever was
  • Are the new Hue track lights for you?
  • The ICEFALL vulnerabilities are a sign of progress actually.
  • This vendor says only one in ten patch their OT gear

The post Episode 377: Why there were 56 OT vulnerabilities this week appeared first on IoT Podcast - Internet of Things.


For anyone trying to make sense of a world where everything from your thermostat to a factory floor is getting smarter, The Internet of Things Podcast-Stacey On IoT offers essential context. Veteran tech journalist Stacey Higginbotham, who brings her experience from Fortune, and co-host Kevin Tofel break down the weekly flood of news, separating genuine innovation from mere hype. Their analysis spans the entire connected ecosystem, diving into the gadgets in our homes, the sensors transforming industrial workspaces, and the complex enterprise systems tying it all together. This isn't just theoretical; it's a practical guide to the business and technology decisions shaping our networked future. You'll hear from a range of voices that have built and critiqued this landscape, including pioneers like Vint Cerf, insightful commentators like Om Malik, and practitioners from companies such as Amazon, AT&T, and IBM Watson. Listening to this podcast provides a crucial framework for understanding the real-world implications of connectivity, whether you're an industry professional, a curious developer, or simply someone wondering how all these "smart" things actually work-and what they mean for privacy, security, and daily life. It's the clear-eyed conversation you need to navigate the ever-expanding Internet of Things.
Author: Language: en-us Episodes: 100

The Internet of Things Podcast - Stacey On IoT
Podcast Episodes
Episode 407: Does the IoT mean the end of privacy? [not-audio_url] [/not-audio_url]

Duration: 1:02:41
This week’s show kicks off with a discussion about Carnegie Mellon’s research into detecting people’s movements through walls using Wi-Fi. As part of the discussion we also talk about the use of stick figures to protect…
Episode 406: Return of the HomePod [not-audio_url] [/not-audio_url]

Duration: 1:02:23
This week’s show kicks off with a discussion of Apple’s new HomePod, which has some cool machine learning capabilities and new sensors built into it, plus a higher price tag than most smart speakers. Then we talk about a…
Episode 405: More CES trends including wireless power [not-audio_url] [/not-audio_url]

Duration: 1:00:37
Want to bring an IoT company back from the dead? Or understand the technical and business challenges associated with building an IoT product? Then this story by Kevin Chung is for you. Kevin and I have left CES 2023 behi…
Episode 404: CES has more Matter and many voices [not-audio_url] [/not-audio_url]

Duration: 57:55
Kevin and I are at CES 2023 this week and eager for the show floor to open to see all of the new and crazy gear. But before we see the show floor, we had to slog through the planned news and media events, which we’re tal…
Episode 403: Matter upgrades aren’t ready for prime time [not-audio_url] [/not-audio_url]

Duration: 1:03:03
We tried Matter for the first time late last week, and have a lot to share with our listeners about what we and other journalists learned through the process. The early verdict is that most people should not update for a…
Episode 402: Google begins its Matter roll out [not-audio_url] [/not-audio_url]

Duration: 1:01:29
This week’s show is a celebration of Matter actually hitting devices, with Google announcing its Matter roll out and Eve allowing users to update its devices to Matter as well. We’re super excited to play with Matter, an…
Episode 401: Two big smart home deals explained [not-audio_url] [/not-audio_url]

Duration: 54:24
The end of the year is a busy time for M&A as companies rush to get deals done before the start of a new tax year, and this week the smart home sector saw Assa Abloy sell its Yale and August smart lock and some other bra…
Episode 400: How to pronounce IKEA’s Dirigera hub [not-audio_url] [/not-audio_url]

Duration: 1:06:35
This week’s show starts off with a review of news from AWS Re:Invent which is happening now in LAs Vegas. We cover the general availability of support for the latest version of the MQTT messaging protocol, the launch of…
Episode 399: Alexa’s drama and our holiday gift guide [not-audio_url] [/not-audio_url]

Duration: 1:01:39
The biggest news in the internet of things this week was the staggering story about Amazon’s Alexa business being responsible for the majority of an estimated $10 billion loss in the year ahead. So Kevin and I discuss wh…
Episode 398: Bluetooth bets on 6 GHz and TP-Link hops on Wi-Fi 7 [not-audio_url] [/not-audio_url]

Duration: 56:54
Amazon has started laying off workers, including some working on Alexa and in Amazon’s devices business. We discuss this as well as IBM following in Google’s footsteps and shutting down its IoT cloud business. We move fr…