FYI - CNN estimates 70% of "Internet of things" hackable

Tony Su tonysu at
Wed Dec 17 10:49:10 PST 2014

Consistent with this month's meeting topic

Only one concrete suggestion in the article, restrict direct access to
the embedded device to the LAN.  The unspoken corollary is that if you
do want to grant Internet access to the device, proxy the connection.

I'd also probably suggest that any device be inspected for potential
exposure to the recent SSL vulnerabilities (patched only with later
releases). If they can't be patched, then again they should be proxied
if you want to setup WAN access.

Maybe could be a meeting topic sometime...
For those who don't know firewalls and in particular the difference
between something like IPtables vs a proxy firewall, it could be


