Software updates are critical for ensuring systems remain free of bugs and vulnerabilities while they are in service. While many Internet of Things (IoT) devices are capable of outlasting desktops and mobile phones, their software update practices are not yet well understood, despite a large body of research aiming to create new methodologies for keeping IoT devices up to date. This paper discusses efforts towards characterizing the IoT software update landscape through network-level analysis of IoT device traffic. Our results suggest that vendors do not currently follow security best practices, and that software update standards, while available, are not being deployed.
翻译:软件更新对于确保系统在使用期间保持无错误和漏洞至关重要。虽然许多物联网(IoT)设备能够比台式电脑和手机更长时间的使用,但它们的软件更新实践尚未被充分理解,尽管有大量研究旨在创建新的方法来保持物联网设备的最新状态。本文通过对物联网设备传输的网络级别分析来探讨特征化物联网软件更新的努力。我们的结果表明,厂商目前未遵循最佳安全实践,并且虽然软件更新标准可用,但尚未得到部署。