Skip to main content
  1. Home
  2. Smart Home
  3. News

Researchers warn smart home appliances could be used to attack power grids

Add as a preferred source on Google
Ian Muttoo/Flickr

When you invite a connected device into your home, you may also be opening your doors to hackers who may want to use your internet connected appliance to attack power grids and other high-profile targets. That warning comes courtesy of security researchers at Princeton University who are worried about the lack of security in smart home appliances.

The team of academics primarily focused on larger appliances such as ovens, air conditioners, and space heaters that offer internet-connected features, such as remote access via mobile apps and connectivity with other smart devices and hubs like Amazon Echo. Those devices, in theory, could be used to create a botnet — a collection of hijacked devices that are used to overwhelm services with massive influxes of traffic that can knock targets offline.

Recommended Videos

While the researchers didn’t highlight any specific flaws they discovered, they did offer proof-of-concept attacks that show how a threat actor could potentially disrupt electrical grids and other major utilities. The attacks focus on supervisory control and data acquisition (SCADA) systems, which are used to monitor and maintain the many peripheral devices that keep power plants operating.

Such an attack — known as a “Maniuplation of demand via Internet of Things,” or “MadIoT” — could do serious damage to the operation of power grids, and could prove difficult to detect and stop once they start. This DDoS (Distributed Denial of Service) attacks require no real knowledge of how a grid operates, it simply overwhelms them by directing infected smart appliances to send huge amounts of traffic to the systems.

This type of attack is enabled by the fact that most internet-connected devices lack basic security measures. Because many come with default passwords other insufficient authentication checks, it is easy for attackers to quickly find devices exposed via the internet and compromise them without much effort. As many as 70 percent of smart home devices are vulnerable to such attacks, HP found.

Luckily, there are ways to make sure your devices don’t contribute to this type of attack. Some simple best security practices like strong Wi-Fi passwords and setting unique passwords and PINs for connected devices are good first steps for protecting your home. You should also always make sure that devices are running the latest updates and patches to prevent against any security holes.

AJ Dellinger
AJ Dellinger is a freelance reporter from Madison, Wisconsin with an affinity for all things tech. He has been published by…
My smart home experiment has reached its natural limit
Smart-home technology keeps improving, but being easier to automate doesn’t make everything worth automating
Computer, Electronics, Laptop, Smart Home

The first device I added to my smart home was a light bulb. It seemed like the safest possible place to start. I could turn it on from anywhere, put it on a schedule, and eventually work it into routines with everything else.

Then I tapped the button in the app and waited. The delay was only about half a second, but half a second is surprisingly noticeable when the alternative is a wall switch that responds immediately and has never once asked for a firmware update. Using my phone was worse. I had to unlock it, find the app, open the right room, and tap the light I could have switched on several steps earlier.

Read more
Google Home’s Interactive Storytime feature has me wondering who actually asked for this
Google Home gets interactive AI storytime, smarter alarms, and broader camera support.
Computer, Electronics, Tablet Computer

Google Home's latest update introduces several new features, including Gemini-powered Interactive Storytime. While I’m not sure who asked for the feature, it lets families build original stories about specific topics on the fly, instead of just listening to a known story. 

So what's the big new feature here?

Read more
Proxima wants to move blood tests into the home, and it has cleared an important early hurdle
The portable analyzer delivers blood-count results in about 20 minutes, but its promise depends on transparent clinical data
Furniture, Table, Desk

Algocyte’s Proxima is designed to run blood-count tests from a small finger-prick sample and send the results to a clinician in about 20 minutes. For patients who need frequent monitoring, that could mean fewer trips to a clinic or laboratory.

The device has also moved beyond the concept stage. Proxima carries UK conformity credentials, while Algocyte operates under a certified medical-device quality system. Those steps give the project more weight than a prototype shown at a launch event.

Read more