Skip to Content
物联网设备安全
book

物联网设备安全

by Nitesh Dhanjani
March 2017
Intermediate to advanced
262 pages
5h 26m
Chinese
China Machine Press
Content preview from 物联网设备安全
48
2
程端口仅仅是增加了些许难度——仅需几件额外的工具(在电子或杂货商店花几美元就
能买到的梅花螺丝刀)。此外,正如
Brocious
的反驳所指出的那样,
Onity
的门锁设计
无法做到不更新电路板而进行真正的固件更新。因此,实际上,酒店业主不得不更换电
路板(数百万门锁的费用),而不只是进行简单地更新固件。
做出响应几个星期后,
Onity
删除了网站上所有相关的痕迹。进一步调查显示,
Onity
司已经根据门锁的生产日期为一些连锁酒店更换电路板。
针对特定制造商特殊的安全问题,揭示出当涉及大规模产品设计时,我们必须认识到维
修费用问题以及最终会给制造商(
Onity
)和客户(保障客人安全的连锁旅店)带来品牌
声誉的负面影响的问题。首先,批量生产的设备应尽可能包含发布在需要时相关补丁的
能力,这是至关重要的。因为相对硬件修复来说,软件补丁成本更低,更具可扩展性。
其次,鉴于独立研究人员在安全分析方面的兴趣,供应商需要更加透明,并与研究机构
一起促进道德规范和维持最终消费者对其信任。
在本节中,我们关注了为数以百万计的人们提供安全保障的一种很流行的门锁,虽然这
种门锁是传统的(基于磁条的),但仍是面向未来发展的重要一课,因为下一代门锁将
包括磁条卡以及具有更多机制的电子钥匙。我们在本节中学到的内容为继续探讨分析接
下来章节中所涵盖的无线和电子钥匙功能的门锁提供了坚实的基础。
2.2
采用
Z-Wave
技术的门锁案例
Z-Wave
是专为家庭自动化设计的一组无线协议。它用小数据块进行传输,所以能耗很小,
可以很容易地嵌入到设备中,如灯泡、娱乐系统,及各种家用电器。 ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Read now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

数据科学之编程技术:使用R进行数据清理、分析与可视化

数据科学之编程技术:使用R进行数据清理、分析与可视化

迈克尔 弗里曼, 乔尔 罗斯
手把手教会你linux

手把手教会你linux

桑德.范.乌格特
C语言核心技术(原书第2版)

C语言核心技术(原书第2版)

Peter Prinz, Tony Crawford
机器学习设计模式

机器学习设计模式

Valliappa Lakshmanan, Sara Robinson, Michael Munn

Publisher Resources

ISBN: 9787111558668