Ransomware for robots is the next big security nightmare

Researchers Robots Vulnerable to Ransomware

Researchers Robots Vulnerable to Ransomware

It's coming for robots, too.

The first warning was based on research that found that because many robots use multicast DNS to advertise their presence on the network, it is relatively easy to find a robot's host name. In a video demo, a retail robot switched from being helpful and polite to malicious and demanding the cryptocurrency Bitcoin.

This new research on robotic ransomware builds on the original research that Apa conducted with Cerrudo, CTO at IOActive, in 2017, during which they discovered nearly 50 vulnerabilities in robots from various robot technology suppliers.

The team also noted a hacked robot's potential ability to steal stored data, say curse words, or display controversial content such as pornography if it has a screen. But as companies often don't have backups to restore systems from, if a robot becomes infected with ransomware, it's nearly impossible for the user to restore it to normal by themselves.

As robots become increasingly commonplace, from smart speakers like Amazon Echo to manufacturing plants, it's a reminder of the threats that could disrupt our lives.

In IOActive's case, the ransomware installation required the same Wi-Fi network as the robot.

Aperio Group LLC Raises Position in Regal Entertainment Group (RGC)
General American Investors Company Inc bought 142,045 shares as the company's stock declined 4.72% while stock markets rallied. Verition Fund Ltd Limited Liability Company holds 0.29% of its portfolio in Johnson & Johnson (NYSE:JNJ) for 27,388 shares.

(NYSE:XOM) Holdings Reduced by Keel Point LLC
It is flat, as 57 investors sold XOM shares while 806 reduced holdings. only 114 funds opened positions while 621 raised stakes. The stock of Bank of America Corporation (NYSE:BAC) has "Buy" rating given on Friday, October 6 by RBC Capital Markets.

GST Council likely to simplify tax returns
Movement of goods of more than 50 thousand rupees in value can not be made by a registered person without an E-way bill. While the Tax Exemption for Exporters has been extended, the ground reality should be checked by the Government.

The experiment followed IOActive's work past year that discovered 50 vulnerabilities in robots manufactured by a number of vendors, including SoftBank Robotics.

While a tiny robot making threats might initially seem amusing - if a little creepy - the proof-of-concept attack demonstrates the risks associated with a lack of security in robots and how organisations which employ robots could suddenly see parts of their business grind to a halt should they become a victim of ransomware.

IOActive said researchers alerted SoftBank Robotics to the security issues in January 2017, but the company has not yet fixed the flaws. The robotics firm did not respond to a request for comment.

"Knowing that, we made a decision to conduct a proof-of-concept ransomware attack on the Nao robot, leveraging vulnerabilities we uncovered in our prior research in 2017". "If robot vendors don't act quickly, ransomware attacks on robots could cripple businesses worldwide". At large corporations, the cost can be even higher.

As a result of the attack, which shut down systems at hospitals across the country, ambulances were redirected and many services were forced to operate on an emergency-only basis.

Although the IOActive research didn't harm a business or consumer, it's an example of the potential issues of robots and connected devices. "And because the robots are directly tied to production and services, when they stop working they'll cause a financial problem for the owner, losing money every second they're not working", Cesar Cerrudo, CTO at IOActive Labs, told ZDNet.

Recommended News

We are pleased to provide this opportunity to share information, experiences and observations about what's in the news.
Some of the comments may be reprinted elsewhere in the site or in the newspaper.
Thank you for taking the time to offer your thoughts.