SDMmag logo
search
Go to Ask SDM AI
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
SDMmag logo
  • NEWS
  • PRODUCTS
  • TOPICS
    • Access Control & Identification
    • Integration & Network Solutions
    • Life Safety & Fire Alarm
    • Monitoring
    • Smart Home
    • Trends & Industry Issues
    • Video Solutions
  • COLUMNS
    • Digital Shuffle
    • Editor's Angle
    • Insider News & Business
    • Integration Spotlight
    • Marketing Madmen
    • Security & the Law
    • Security Comings & Goings
    • Security Networkings
    • Technology @ Work
    • Technology Solutions & Skills
    • SIA Waypoints
    • Cybersecurity Chronicle
  • EXCLUSIVES
    • Annual Industry Forecast
    • Dealer of the Year
    • Project of the Year
    • SDM 100
    • State of the Market Series
    • Systems Integrator of the Year
    • Top Systems Integrator Report
    • TMA Excellence Awards
  • BLOG
  • MEDIA
    • Videos
    • Podcasts
    • Polls
    • White Papers
  • EVENTS
    • Industry Calendar
    • Webinars
  • MORE
    • Classified Ads
    • Newsletters
    • SDM Store
    • State of Security eBook
    • Sponsored Insights
  • BUYERS GUIDE
    • Buyers Guide
    • Take a Tour
  • EMAG
    • eMagazine
    • Archive Issues
    • Monitoring Today
    • Advertise
  • SIGN UP!
Hosted & Managed ServicesColumnsSecurity NetWorkings

Is Distributed Denial of Service The New False Alarm?

By David Engebretson
DDOS: the ‘False Alarms’ Of the 21st Century?
December 2, 2016

If you read the kind of stuff that I do, you cannot help but be amazed at the explosive growth of the Internet of Things, IoT for short. With the costs of Wi-Fi interfaces dropping into the range of $1 per device in large volume, more and more “things” are getting connected to LAN networks and the Internet. These “things” can be smart thermostats, video streaming sticks, gaming consoles, and some of our industry’s electronic security-related devices such as IP cameras, door locks, and video encoders.

While some estimates are largely guesses, it seems likely that within a few years there will be trillions of IoT devices installed in homes, businesses, industrial, and institutional buildings.  I have read reports that say that the average home with two teenagers under roof will have 20-plus Internet-connected devices by the year 2020. It appears that nothing will stop the surging wave of IoT devices coming in the future.

I think it’s important that we understand exactly what technologies or lack thereof are included in a typical IoT device. Every IoT component is a “computer” with wired LAN and/or Wi-Fi connectivity, and these devices are usually powered “on” 24/7/365 with no capability to turn them off short of killing their power source. Also, there usually is no convenient way to update the software or to provide any type of firewall functionality in the IoT devices themselves. These units are wholly dependent on the knowledge of the installer when programmed, and they rely on the LAN network’s protective firewall(s) to stop intrusion from the Internet.

Simple scanning software, such as the free Zenmap, can scan thousands of public IP addresses and search out specific brands of IoT devices. This search method is based on looking at the Media Access Control (MAC) addresses of devices on the Internet, which are burned in at the factory. Of the six two-character sections in a MAC address the first three are a vendor code, so for example if I run Zenmap on my network it will identify the Honeywell, Vivotek, and Axis cameras on my LAN because it identifies their MAC addresses.

Once IoT devices have been detected, one primary problem is that intruders can often gain access to these devices by using the default user/password that was installed at the factory. This situation would be simple to avoid if DIY home-owners, as  well as our industry personnel, change all factory-default user settings every time. However, ignorance and haste on the part of the building owner or system installer can leave the devices potentially open to intrusion and manipulation.

The primary problem that compromised IoT devices can create is the Distributed Denial of Service (DDOS) attack. Let’s say I’m selling Cubs jerseys on my website for $29, and you are selling the same shirt on your website for $19. As the World Series approaches, as a “bad actor” I want to shut down your website. I would reach into the dark corners of the Internet to find a “bot master” who will do my bidding for a price. I engage his services to bombard your website, effectively shutting you down while I continue to sell my shirts.

The “bot master” has remote control capabilities over hundreds or possibly thousands of compromised PCs and IoT devices (robots or “bots”) that can be directed to attack specific IP addresses on the Internet. A DDOS attack is no different than a massive traffic jam. Let’s pretend that every person with a car in Atlanta decides that they need to go to the Varsity restaurant (get the chili dogs) located near Georgia Tech right now. As you can imagine, the traffic jam would be colossal and the business at the Varsity would slow to a crawl as their personnel try to service the millions of customers trying to jam into their building.

Looking for quick answers on security topics? Try Ask SDM, our new smart AI search tool. Ask SDM →

A recent DDOS attack on the Akamai website (they sell DDOS protection technology as well as other high-end network services) was apparently launched from tens of thousands of IP cameras from a single manufacturer that were hacked and turned into controllable “bot” devices. At one point it was estimated that over 750 Gigabits per second of data packets from over a million separate devices were being launched at the Akamai Web address.

The camera manufacturer issued a strong, but simple statement. Their findings were that first, the cameras involved used firmware dating from before January 2015. The second issue was (surprise) that many of the compromised cameras still had the default user/password combinations in place. The third issue was that the rogue devices were “exposed to the Internet without the protection of an effective network firewall.”

The real problem is that a device can be hacked and turned into a controllable bot without any indication that can be discerned by the end user. The camera works the same, but it’s been taken over. The thermostat keeps turning on the heat, but it is also bombarding some website with garbage packets simultaneously.

Sophisticated enterprise-level networks are often equipped with robust firewall technology that can not only stop intruders from the Internet but also monitor any unwanted data packets that are being transmitted out from the LAN.  But most homes, small businesses, and simple LANs have firewall functions that only face “out” to the Internet, blocking unwanted intrusion but not monitoring what is being sent out of the network to the Internet.

Now is the time for electronic security and low-voltage installation companies to take network security seriously. That means always changing passwords from the defaults, making sure devices have the latest firmware, and verifying that users have adequate firewall protection. 

I also suspect that many installation companies use the exact same administrative passwords on all of their IP devices installed in their clients’ locations. This is a bad practice as it would be a simple matter for a technician to leave one company and go to another while retaining the ability to disable or otherwise mess with IP devices installed by his or her previous employer. Different clients should equal different passwords.

We don’t want to be blamed for the coming wave of DDOS attacks launched from IoT devices like we were blamed for the false alarm problem, most of which were/are generated by misuse of systems by end users.

KEYWORDS: security technology

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Dave Engebretson is the president of Slayton Solutions Ltd., which provides fiber optic, IP networking, and cable termination and testing training for our industry. Catch his speeches at the ADI Expo in your area and win a prize if you can identify the 1970s era rock song that is his ringtone. See his work at slaytonsolutionsltd.com.

Recommended Content

JOIN TODAY
to unlock your recommendations.

Already have an account? Sign In

  • SDM 100

    SDM 100: Top 100 Security Dealers of 2026

    The top 100 security dealers navigated a complex...
    SDM 100 Report
    By: Karyn Hodgson
  • Security camera

    State of the Market: Video Surveillance

    As video surveillance shifts from siloed systems to...
    State of the Market Series
    By: Brianna Wilson
  • 2026 Industry Forecast

    SDM 2026 INDUSTRY FORECAST

    Rapid technology advances meet shifting economic...
    Exclusives
    By: Karyn Hodgson
Manage My Account
  • SDM Newsletters
  • Online Registration
  • eMagazine Subscriptions
  • Subscription Customer Service
  • Manage My Preferences

More Videos

Sponsored Content

Sponsored Content is a special paid section where industry companies provide high quality, objective, non-commercial content around topics of interest to the SDM audience. All Sponsored Content is supplied by the advertising company and any opinions expressed in this article are those of the author and not necessarily reflect the views of SDM or its parent company, BNP Media. Interested in participating in our Sponsored Content section? Contact your local rep!

close
  • Doctor examining child patient with mother present in medical clinic
    Sponsored byHID

    The Human Side of Hospital Security: How Modern Visitor Management Protects People First

Popular Stories

Video surveillance camera

Why Video Health Monitoring Is a ‘No Brainer’

ESA Board of Directors Q2 26 Elections

Electronic Security Association Announces 2026 Board of Directors Election Results

TMA & SDM Logos

Becklar, Elite & Puget Win 2026 TMA/SDM Monitoring Center Excellence Awards

SDM Dealer of the Year 2026 Promotion

Poll

What’s the most promising trend in the industry?

What’s the most promising trend in the industry?
View Results Poll Archive

Products

Physical Security Assessment Handbook An Insider’s Guide to Securing a Business

Physical Security Assessment Handbook An Insider’s Guide to Securing a Business

See More Products
SDM 100 2026 Rankings

Related Articles

  • DICE.jpg

    The New DICE Adds Calipsa False Alarm Filtering to Matrix Interactive

    See More
  • Security Law

    Is a False Alarm Ordinance a Tax or a Fee?

    See More
  • Security  Law 2019

    Is County Required to Pay False Alarm Late Fines?

    See More

Related Products

See More Products
  • school safety.jpg

    The Handbook for School Safety and Security

  • Physical Security and Safety: A Field Guide for the Practitioner

  • facility manager.jpg

    The Facility Manager's Guide to Safety and Security

See More Products
×

Be in the forefront of security intelligence when you receive SDM.

Join over 10,000+ professionals when you subscribe today.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Directories
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2026. All Rights Reserved BNP Media, Inc. and BNP Media II, LLC.

Design, CMS, Hosting & Web Development :: ePublishing