I’m worried about anything that can be controlled through a third-party online service. The amazon doorbell thing is a prime example of what can go wrong, but it can be more subtle, too. And I’m not even talking about obsolescence. Frankly, I’d still be worried if it was a self-hosted, properly configured system where I’m the only one with a legit access.
I understand the convenience of all this. I also have to deal with the risk balance of security vs convenience, which causes me to not tolerate that “too tired to go across the room” justifies “a third party have full control over my doors, lights, heating, ovens, etc.” (not shooting fire at you, see this as a generic example).
The bare minimum would be a fully self-hosted solution, which is possible, although difficult because hardware manufacturers don’t always play nice. And even then, proper, secure setup and maintenance is not for everyone. In the meantime, yeah, I’ll have to move myself when I want to turn on my dishwasher.
Though I’ll admit, I have some lights that are controlled wirelessly… my old phone have an IR port, and they have IR remotes… Technically, an attacker could probably turn them on/off/change colors from behind a window :D
I’m worried about anything that can be controlled through a third-party online service. The amazon doorbell thing is a prime example of what can go wrong, but it can be more subtle, too. And I’m not even talking about obsolescence. Frankly, I’d still be worried if it was a self-hosted, properly configured system where I’m the only one with a legit access.
I understand the convenience of all this. I also have to deal with the risk balance of security vs convenience, which causes me to not tolerate that “too tired to go across the room” justifies “a third party have full control over my doors, lights, heating, ovens, etc.” (not shooting fire at you, see this as a generic example).
The bare minimum would be a fully self-hosted solution, which is possible, although difficult because hardware manufacturers don’t always play nice. And even then, proper, secure setup and maintenance is not for everyone. In the meantime, yeah, I’ll have to move myself when I want to turn on my dishwasher.
Though I’ll admit, I have some lights that are controlled wirelessly… my old phone have an IR port, and they have IR remotes… Technically, an attacker could probably turn them on/off/change colors from behind a window :D