'They're all about pushing the products and shiny things rather than fundamental security':Mapping socio-technical challenges in securing the smart home

'They're all about pushing the products and shiny things rather than fundamental security':Mapping socio-technical challenges in securing the smart home
复制标题

“它们都是为了推销产品和闪亮的东西,而不是基本安全”:绘制确保智能家居安全的社会技术挑战

DOI:
10.1080/13600834.2021.1957193
复制
发表时间:
2021
影响因子:
1.5
通讯作者:
Chen J
Chen J
中科院分区:
--
文献类型:
--
作者:
Chen J

文献摘要

相似文献

不安全的互联设备不仅会对智能家居所有者造成严重威胁,还会对底层基础设施网络造成严重威胁。学术界和监管机构对从物联网供应商和最终用户的角度解决网络安全风险的兴趣日益浓厚。例如,除了目前的数据保护和网络安全法律框架外,英国政府还发起了‘设计安全’运动。尽管已经有关于组织和个人如何管理自己的网络安全风险的工作,但目前尚不清楚物联网供应商在多大程度上支持最终用户执行此类风险的日常管理,以及是什么阻止了供应商改进此类支持。我们采访了物联网领域的13位专家,确定了物联网产品使用安全的三大障碍:技术障碍、法律障碍和组织障碍。在本文中,我们进一步讨论了这些发现的政策含义,并提出了一些建议。
Insecure connected devices can cause serious threats not just to smart home-owners, but also the underlying infrastructural network. There has been increasing academic and regulatory interest in addressing cybersecurity risks from both the standpoint of IoT vendors and that of end-users. In addition to the current data protection and network security legal frameworks, for example, the UK government has initiated the ‘Secure by Design’ campaign. While there has been work on how organisations and individuals manage their own cybersecurity risks, it remains unclear to what extent IoT vendors are supporting end-users to perform day-to-day management of such risks, and what is stopping the vendors from improving such support. We interviewed 13 experts in the field of IoT and identified three main categories of barriers to making IoT products useably secure: technical, legal and organisational. In this paper we further discuss the policymaking implications of these findings and make some recommendations.