Abusing the Internet of Things

(Rick Simeone) #1

So how does this apply in the case of Belkin? Since we have studied the Belkin WeMo
Baby in detail, let us look at another product (the WeMo Switch) also designed by Belkin, to
see if similar security issues exist across its product line. This will give us additional perspec-
tive to understand whether the issue of insecure design can permeate a company. Many exist-
ing and upcoming IoT corporations will have to maintain consistency in terms of security
across their products, so it is important to continuously analyze the security of multiple prod-
ucts produced by the same organization.
The Belkin WiFi-enabled WeMo Switch (shown in Figure 3-8) lets you turn electronic
devices in your home on or off from anywhere. The WeMo Switch uses the home WiFi net-
work to provide wireless control of lamps, fans, heaters, and any other electronic devices that
are plugged into it. All you have to do is download the free WeMo app from the Google Play
Store or the Apple App Store, plug the Switch into an outlet in your home, and plug any
device into the Switch. Once this is done, you can use the WeMo app to turn the device on or
off from anywhere.


FIGURE 3-8. The Belkin WeMo Switch


The WeMo app (Figure 3-9) is quite simple. All you have to do is launch the app and click
on the power button associated with the Switch to toggle the power on or off. This will cause
the device connected to the Switch to turn on or off.


CHAPTER 3: ASSAULTING THE RADIO NURSE—BREACHING BABY MONITORS AND

(^78) ONE OTHER THING

Free download pdf