Live data from Hacker News

Three million malware-infected smart toothbrushes used in Swiss DDoS attacks

tomshardware.com

31–40 of 182 posts

Re: Three million malware-infected smart toothbrushes used in Swiss DDoS attacks

#32
post #19

> Though we don’t have the finer details of the DDoS story, it serves as yet another warning for device owners to do their best to keep their devices, firmware, and software updated; monitor their networks for suspicious activity; install and use security software; and follow network security best practices. Maybe they should only allow qualified consumers with required certification to purchase such a smart toothbru…

> monitor their networks for suspicious activity

Indeed. It's asking the same people who only know their router as a box where the internet comes from to run a packet capture and interpret the results.

Re: Three million malware-infected smart toothbrushes used in Swiss DDoS attacks

#33

I had misremembered these as a single comic, but you can't have everything: https://i0.wp.com/www.litterboxcomics.com/wp-content/uploads... https://i0.wp.com/www.litterboxcomics.com/wp-content/uploads...

This also good:

https://i.imgur.com/YnBnsKA.jpeg

Re: Three million malware-infected smart toothbrushes used in Swiss DDoS attacks

#34
That's a really flimsy article. Someone is claiming 3 million smart toothbrushes were used in a DDoS, but no one is talking what/who/how. That seems like the kind of extraordinary claim that requires at least some kind of evidence.

There is surely at least some technical details that enabled them to identify the toothbrushes, right?

Re: Three million malware-infected smart toothbrushes used in Swiss DDoS attacks

#35

Wouldn't one have to give the toothbrush your wifi password so it can connect?

One probably has to enter the wifi password in an app and then the connection info gets sent to the brush via Bluetooth. That's how my smart watch behaves.

Re: Three million malware-infected smart toothbrushes used in Swiss DDoS attacks

#37

I had misremembered these as a single comic, but you can't have everything: https://i0.wp.com/www.litterboxcomics.com/wp-content/uploads... https://i0.wp.com/www.litterboxcomics.com/wp-content/uploads...

This also good: https://i.imgur.com/YnBnsKA.jpeg

“The door refused to open. It said, “Five cents, please.” He searched his pockets. No more coins; nothing. “I’ll pay you tomorrow,” he told the door. Again he tried the knob. Again it remained locked tight. “What I pay you,” he informed it, “is in the nature of a gratuity; I don’t have to pay you.” “I think otherwise,” the door said. “Look in the purchase contract you signed when you bought this conapt.” In his desk drawer he found the contract; since signing it he had found it necessary to refer to the document many times. Sure enough; payment to his door for opening and shutting constituted a mandatory fee. Not a tip. “You discover I’m right,” the door said. It sounded smug. From the drawer beside the sink Joe Chip got a stainless steel knife; with it he began systematically to unscrew the bolt assembly of his apt’s money-gulping door. “I’ll sue you,” the door said as the first screw fell out. Joe Chip said, “I’ve never been sued by a door. But I guess I can live through it.”

— Philip K Dick, Ubik, 1969

Re: Three million malware-infected smart toothbrushes used in Swiss DDoS attacks

#38

I had misremembered these as a single comic, but you can't have everything: https://i0.wp.com/www.litterboxcomics.com/wp-content/uploads... https://i0.wp.com/www.litterboxcomics.com/wp-content/uploads...

This also good: https://i.imgur.com/YnBnsKA.jpeg

[deleted]

Re: Three million malware-infected smart toothbrushes used in Swiss DDoS attacks

#39
post #19

> Though we don’t have the finer details of the DDoS story, it serves as yet another warning for device owners to do their best to keep their devices, firmware, and software updated; monitor their networks for suspicious activity; install and use security software; and follow network security best practices. Maybe they should only allow qualified consumers with required certification to purchase such a smart toothbru…

The call if of course on device owners, and not device manufacturers whose responsibility it truly is to manufacture secure devices.

Re: Three million malware-infected smart toothbrushes used in Swiss DDoS attacks

#40
post #19

> Though we don’t have the finer details of the DDoS story, it serves as yet another warning for device owners to do their best to keep their devices, firmware, and software updated; monitor their networks for suspicious activity; install and use security software; and follow network security best practices. Maybe they should only allow qualified consumers with required certification to purchase such a smart toothbru…

The call if of course on device owners, and not device manufacturers whose responsibility it truly is to manufacture secure devices.

100% agree, but I have to wonder how much of the problem is that the cost of security is:

A. Not mandated

B. Increases cost of the product

At what point would people just prefer a regular toothbrush if a smart one doesn't provide enough utility to justify the cost?

This isn't specific to toothbrushes, but I wonder what products or services wouldn't exist if they were made to be secure (or safe/ethical/sustainable/etc). Makes me wonder how many existing externalities are causing hard to measure problems that could be prevented by making a higher quality product.

Post reply on HN