home.social

#iotsecurity — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #iotsecurity, aggregated by home.social.

  1. 📣 THE COUNTDOWN TO NEXUS IS ON

    Join more than 250 CPS security leaders from global organizations in Washington, DC. as we tackle business resilience in the AI era.

    With the cybersecurity industry at an inflection point, Nexus Conference 2026 is your opportunity to lead the way forward.

    👉 Apply to attend: nexusconference.io

    #Nexus2026 #cybersecurity #OTsecurity #IoTsecurity #industrial #healthcare #publicsector #commercial #AI #artificialintelligence #CISO

  2. Reflecting on Day 1 of the HTX CTF Finals here in Singapore.

    I didn't win, but the technical takeaway was clear: Precision is a force multiplier.

    By focusing on a high hit rate rather than just speed, I held 5th place for a good portion of the day. It’s a great reminder that in our field, being precise is a technical skill in itself.

    Looking forward to the Day 2 challenges tomorrow!

    #CTF #Cybersecurity #AISecurity #IoTSecurity #DEFCON #HTXsg #DEFCONSG #EthicalHacking #CaptureTheFlag #PublicSafety #HTXctf

  3. 🔒 CVE-2026-7031: HIGH-severity buffer overflow in Tenda F456 (v1.0.0.5). Remote, no user interaction needed. Exploit public, no patch yet. Limit device exposure & monitor for updates. More: radar.offseq.com/threat/cve-20 #OffSeq #Vulnerability #IoTSecurity #NetSec

  4. Qualified for HTX CTF Finals at DEF CON Singapore 🇸🇬 - 13th in the online round, 65/74 solved. 🔥

    Both tracks were AI Security and IoT Exploitation. Neither is my daily work. Meant learning how prompt-driven systems break, how MQTT/CoAP expose attack surface, and how one forgotten device pivots into everything else.

    All under the clock. ⏱️ Finals end of April. 💪

    #CTF #Infosec #AISecurity #IoTSecurity #DEFCON #HTXsg #DEFCONSG #EthicalHacking #CaptureTheFlag #PublicSafety

  5. IoT privacy compliance development.
    Samsung will revise ACR data practices after legal action by the Texas Attorney General.

    Key elements:
    • Real-time viewing habit collection under scrutiny
    • Enhanced disclosure & consent flow promised
    • Emphasis on consumer transparency
    • Broader regulatory pressure on smart device telemetry

    ACR data monetization highlights a persistent tension:
    Device intelligence vs user autonomy
    Advertising revenue vs explicit consent
    Convenience vs continuous telemetry
    As regulatory enforcement increases, IoT vendors may face stricter consent design expectations.
    Question for security & privacy professionals:
    Should connected consumer devices require periodic re-consent for telemetry collection?

    Source: therecord.media/samsung-update

    Engage below.
    Follow TechNadu for privacy law, IoT security, and compliance updates.
    Repost to broaden awareness.

    #Infosec #PrivacyEngineering #ACR #IoTSecurity #DataGovernance #ConsumerPrivacy #RegulatoryCompliance #SmartDevices #CyberLaw #SecurityAwareness #DigitalRights

  6. IoT privacy compliance development.
    Samsung will revise ACR data practices after legal action by the Texas Attorney General.

    Key elements:
    • Real-time viewing habit collection under scrutiny
    • Enhanced disclosure & consent flow promised
    • Emphasis on consumer transparency
    • Broader regulatory pressure on smart device telemetry

    ACR data monetization highlights a persistent tension:
    Device intelligence vs user autonomy
    Advertising revenue vs explicit consent
    Convenience vs continuous telemetry
    As regulatory enforcement increases, IoT vendors may face stricter consent design expectations.
    Question for security & privacy professionals:
    Should connected consumer devices require periodic re-consent for telemetry collection?

    Source: therecord.media/samsung-update

    Engage below.
    Follow TechNadu for privacy law, IoT security, and compliance updates.
    Repost to broaden awareness.

    #Infosec #PrivacyEngineering #ACR #IoTSecurity #DataGovernance #ConsumerPrivacy #RegulatoryCompliance #SmartDevices #CyberLaw #SecurityAwareness #DigitalRights

  7. IoT privacy compliance development.
    Samsung will revise ACR data practices after legal action by the Texas Attorney General.

    Key elements:
    • Real-time viewing habit collection under scrutiny
    • Enhanced disclosure & consent flow promised
    • Emphasis on consumer transparency
    • Broader regulatory pressure on smart device telemetry

    ACR data monetization highlights a persistent tension:
    Device intelligence vs user autonomy
    Advertising revenue vs explicit consent
    Convenience vs continuous telemetry
    As regulatory enforcement increases, IoT vendors may face stricter consent design expectations.
    Question for security & privacy professionals:
    Should connected consumer devices require periodic re-consent for telemetry collection?

    Source: therecord.media/samsung-update

    Engage below.
    Follow TechNadu for privacy law, IoT security, and compliance updates.
    Repost to broaden awareness.

    #Infosec #PrivacyEngineering #ACR #IoTSecurity #DataGovernance #ConsumerPrivacy #RegulatoryCompliance #SmartDevices #CyberLaw #SecurityAwareness #DigitalRights

  8. IoT privacy compliance development.
    Samsung will revise ACR data practices after legal action by the Texas Attorney General.

    Key elements:
    • Real-time viewing habit collection under scrutiny
    • Enhanced disclosure & consent flow promised
    • Emphasis on consumer transparency
    • Broader regulatory pressure on smart device telemetry

    ACR data monetization highlights a persistent tension:
    Device intelligence vs user autonomy
    Advertising revenue vs explicit consent
    Convenience vs continuous telemetry
    As regulatory enforcement increases, IoT vendors may face stricter consent design expectations.
    Question for security & privacy professionals:
    Should connected consumer devices require periodic re-consent for telemetry collection?

    Source: therecord.media/samsung-update

    Engage below.
    Follow TechNadu for privacy law, IoT security, and compliance updates.
    Repost to broaden awareness.

    #Infosec #PrivacyEngineering #ACR #IoTSecurity #DataGovernance #ConsumerPrivacy #RegulatoryCompliance #SmartDevices #CyberLaw #SecurityAwareness #DigitalRights

  9. UNC3886 leveraged ORB infrastructure for stealthy telecom targeting.

    Per Cyber Security Agency of Singapore:
    • Zero-day firewall compromise
    • Rootkit persistence mechanisms
    • GOBRAT & TINYSHELL C2 nodes
    • ORB-tagged IP clustering in Singapore ASNs
    • NetFlow-confirmed router-to-ORB communications
    • Pre-positioned reconnaissance

    Attribution aligned with assessments from Mandiant linking activity to China-sponsored espionage.

    ORB networks blur the line between botnets and residential proxy ecosystems, increasing attribution friction and collateral risk.

    Defensive priorities:
    • Threat intel enrichment
    • Edge device patch enforcement
    • ASN anomaly detection
    • Zero-trust segmentation
    • IoT telemetry visibility

    How mature are ORB detection capabilities in your SOC?

    Engage below.

    Source: cyberpress.org/orb-networks-ma

    Follow @technadu for advanced threat analysis.

    #ThreatIntel #UNC3886 #ORBNetworks #IoTSecurity #ZeroDay #C2Infrastructure #NetFlow #TelecomSecurity #BlueTeam #ThreatHunting #APTActivity #CyberOperations #Infosec

  10. because this catches me every-time. hint to myself and any #security researcher out there.
    Don't use GREP command on unix!

    Get ripgrep . It actually does what you think grep will do, on EVERY file.

    "rg -uuu -i <whatever you're looking for>"

    thank me later

    #reverseengineering #disclosure #cybersecurity #securityresearch #iot #iotsecurity #softwareengineering

  11. A critical RCE vulnerability in legacy D-Link DSL routers allows unauthenticated attackers to execute arbitrary commands with root privileges.

    With the devices now End-of-Life and no patch expected, immediate replacement is the only recommended mitigation.

    Details:
    technadu.com/critical-rce-vuln

    #RCE #IoTSecurity #RouterSecurity #Infosec #VulnerabilityManagement

  12. 🚨 Massive surge in automated #botnet activity
    → Targeting PHP servers, IoT devices & cloud gateways
    → Mirai, Gafgyt, Mozi exploiting known CVEs
    → AWS & Google Cloud used to hide source
    Experts warn: even low-skilled attackers can now wreak havoc with public exploit kits.

    💭 Thoughts on securing production environments from automated scans?
    Follow @technadu for real-time #infosec updates & research drops.

    #CyberSecurity #Botnet #PHP #IoTSecurity #CloudSecurity #ThreatIntel #DevSecOps #Malware #VulnerabilityManagement #DigitalDefense

  13. “You think it’s just a light bulb—but it’s not off. It’s watching, listening… maybe even hacking.”

    LMG Security’s @tompohl revealed how $20 smart outlets and light bulbs can be exploited for WiFi cracking, evil twin attacks, and stealth monitoring—turning everyday gadgets into real-world threats.

    In our latest blog, we’ll share:

    ▪ How attackers can exploit everyday IoT gadgets to breach your organization
    ▪ Advice on how to lock down your smart tech
    ▪ Tips on segmentation, firmware auditing, and red teaming

    Read the blog: lmgsecurity.com/i-have-the-pow

    #IoTSecurity #Cybersecurity #SmartDevices #LMGSecurity #Cyberaware #IoT #Cyber #Tech #CISO #IT #PenetrationTesting #RogueDevices #BSidesDesMoines #Infosec #ITsecurity

  14. 🚨 90% of UK industrial firms hit by cyberattacks this year

    IoT vulnerabilities, insider threats, and OT risks are exposing critical systems in manufacturing, energy, and more.

    💡 How to stay secure? RELIANOID ADC protects industrial IT infrastructure with:
    ✅ mTLS authentication
    ✅ Real-time threat blocking
    ✅ Zero-downtime updates

    Strengthen your defenses today!


    relianoid.com/blog/strengtheni

  15. The absolute best part of the #BigEar project is that I can just buy random #BLE sensors and throw them anywhere. Security is such a joke (its just broadcast) but the threat model is "someone driving past might notice that my pool is warm." 🤷 🌡️

    (I do mean REALLY anywhere though, within about 4 yards/houses in most directions, using zero equipment outside the main house. Later I'll waterproof one and try it on the fence..)

    Y'all shouldn't be buying #oralb toothbrushes or really ANY #bluetooth bathroom scale. Just saying. (And yes, I can probably see your growroom sensor too.)

    #homeassistant #esp32 #security #iot #iotsecurity