Posts on iot-security
8 posts on iot-security. Notes from public sources and my own test lab.
Smart Devices, Dumb Mistakes: The Dark Backdoors of the IoT World
Relying on Shodan scans for IoT security is the laziest approach in the industry. Let's talk about the missing 'S' in IoT, why MQTT acts like a gossiping neighbor, and what's actually hiding inside that firmware.
Smart Devices, Dumb Security: IoT Backdoors and Silent Takeovers
From a coffee machine trying to talk to a Domain Controller to hardcoded secrets in firmware, let's dive into the Wild West of IoT security from a Red Teamer's perspective.
Dumb Passwords of Smart Devices: Firmware Hunting and Shadow Protocols in the IoT World
Ever wondered why billion-dollar IoT infrastructures fail? Let's dive into firmware extraction, hidden backdoors, and the inherent risks of misconfigured MQTT protocols from a Red Teamer's perspective.
Is Your Smart Bulb Handing Over Your House Keys? The Dark Backdoors of IoT
Forget 'admin:admin' hunts on Shodan. Real IoT security threats hide deep within unpatched, messy firmware files and unencrypted protocols. Here's a look at how we analyze these devices during Red Team ops.
Smart Devices or Trojan Horses in Your Home? IoT Security Needs More Than Just Shodan Tourism
Scanning for open IPs on Shodan isn't real IoT security. Join Payten's Red Team Lead, Sedat Özdemir, as he dives into firmware analysis, hardcoded backdoors, and why your smart toaster might be a bigger risk than you think.
Could Your Smart Bulb Be Watching You? The 'Shodan' Illusion and Bitter Truths in IoT Security
IoT security is more than just scanning Shodan. Let's dive into the world of 'Embedded Insecurity,' firmware analysis, and why your office coffee machine might be your biggest vulnerability.
Smart Bulbs, Dumb Passwords: The IoT Backdoor Reality
A deep dive into why IoT devices remain the ultimate 'pivot points' for attackers and how a $20 smart plug can compromise an entire corporate network.
Did You Actually Code It or Just Vibe It? The Dark Side of AI-Generated Apps
AI makes coding feel like magic, but that "vibe" can be dangerous. Let's talk about why trusting LLMs too much might break your security.