{"id":12345,"date":"2018-12-03T17:54:58","date_gmt":"2018-12-03T13:54:58","guid":{"rendered":"https:\/\/me-en.kaspersky.com\/blog\/?p=12345"},"modified":"2019-11-15T15:22:41","modified_gmt":"2019-11-15T11:22:41","slug":"things-of-internet","status":"publish","type":"post","link":"https:\/\/me-en.kaspersky.com\/blog\/things-of-internet\/12345\/","title":{"rendered":"Things of Internet: How smart devices fail because of their Web dependence"},"content":{"rendered":"<p>After a long day at work, you\u2019re heading home. You open an app in your smartphone and tap a button on the screen. A dozen miles away, your apartment comes to life. Smart bulbs light up, the smart thermostat starts to heat the room, the smart kettle begins to boil the water for your evening tea. A smart home seems so convenient!<\/p>\n<p>But every coin has two sides, and the flip side of this one is that smart homes rely on a lot of things to work. And because every single thing is subject to malfunction, the more third parties you use, the less reliability you get.<\/p>\n<h3>A freezing disconnect\n<h3>\n<\/h3><\/h3><p>A few days ago, Twitter saw a surge of complaints from owners of Netatmo thermostats who suddenly <a target=\"_blank\" href=\"https:\/\/www.thesun.co.uk\/tech\/7814050\/netatmo-smart-heating-outage-down-freezing\/\" rel=\"noopener noreferrer nofollow\">lost the ability to change the temperature in their houses<\/a>. That was a result of some Netatmo servers going down, and the remaining servers not being able to handle all of the user requests.<\/p>\n<p>Netatmo thermostats have a manual override mode for such situations, and it\u2019s supposed to allow users to change the temperature manually, not using the app. But it seems that for some customers, it didn\u2019t work, and so they were left in their freezing homes with pieces of brilliant but completely useless tech.<\/p>\n<p>There\u2019s another dimension to that problem: Dependence on third-party providers creates even more points of failure. For example, some smart devices are controlled with a very interesting service called IFTTT (If This Then That), which is hosted on the Amazon Web Services platform. When a <a target=\"_blank\" href=\"https:\/\/mashable.com\/2017\/02\/28\/aws-smart-home-iot-fail\/%23kfgUQ2kDHqqh\" rel=\"noopener noreferrer nofollow\">glitch in Amazon\u2019s infrastructure brought IFTTT servers down<\/a> last year, users were left unable to turn on the lights or do anything else with their smart home appliances until the servers were back online.<\/p>\n<h3>Smart home\u2019s end of life<\/h3>\n<p>An outage at the data center is not the only thing that can happen to a smart home. Once upon a time (before 2014, to be more precise), there was a small company called Revolv that produced smart hubs \u2014 those boxes that are supposed to be the center of your smart home and communicate with the app on your smartphone. The hub and the app use the server to speak to each other.<\/p>\n<p>But, you know, businesses are sold and bought, and that\u2019s what happened to Revolv \u2014 it was purchased by a bigger smart-home vendor called Nest (which Google had bought several months prior to the deal).<\/p>\n<p>After the acquisition, Nest immediately stopped selling Revolv smart hubs, although the existing devices continued to work for a while. However, in 2016, Nest decided to rid itself of Revolv\u2019s heritage completely, and it shut down the servers that were responsible for handling the Revolv infrastructure. After the shutdown, which happened in May 2016, <a target=\"_blank\" href=\"https:\/\/mashable.com\/2016\/04\/04\/revolv-smart-home-shutdown\/%23.RBmGc.vgsqZ\" rel=\"noopener noreferrer nofollow\">Revolv smart hubs became absolutely useless<\/a>. They couldn\u2019t do anything. At all. And the app was no longer accessible. Back in 2014, a Revolv hub cost $300 \u2014 a nice price for what would effectively become a worthless plastic box in a couple of years.<\/p>\n<h3>GDPR-incompatible bulbs<\/h3>\n<p>The enactment of the GDPR (Global Data Protection Regulation \u2014 the EU\u2019s law regulating data processing) had quite an impact on the Internet \u2014 for example, some US websites are inaccessible from European IP addresses because their owners chose to avoid handling European citizens\u2019 data; if something went wrong, it would\u2019ve cost those companies a fortune.<\/p>\n<p>GDPR has affected real-life objects as well \u2014 the Internet and physical world are too entangled nowadays to avoid that. For example, in Europe, Xiaomi Yeelight smart bulbs, which allowed remote control using an app, <a target=\"_blank\" href=\"https:\/\/www.makeuseof.com\/tag\/smart-home-devices-gdpr\/\" rel=\"noopener noreferrer nofollow\">lost all their functionality after a GDPR-compliant update<\/a> for the app was issued. They became just normal bulbs that you could turn on using a light switch. Better than nothing, but probably not what people expected when they were buying those light bulbs.<\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"500\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">Hi! <\/p>\n<p>Just letting you know you can't use your lights anymore because we're slathering your data around and GDPR is here.<\/p>\n<p>good luck! bye! <a href=\"https:\/\/t.co\/3ZI2WkqPAI\" target=\"_blank\" rel=\"noopener nofollow\">pic.twitter.com\/3ZI2WkqPAI<\/a><\/p>\n<p>\u2014 Internet of Shit (@internetofshit) <a href=\"https:\/\/twitter.com\/internetofshit\/status\/999619364541394944?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener nofollow\">May 24, 2018<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<h3>Robovac spies<\/h3>\n<p>None of the aforementioned hiccups happened on the user side: Netatmo thermostats, Revolv hubs, and Yeelight bulbs would\u2019ve been perfectly functional if not for something happening on the server side. And there\u2019s actually a lot happening there. Vendors collect and process the data their apps and smart appliances gather. The data serve two clear purposes: to enable the smart appliances\u2019 functions and to develop new features. They also help the vendor learn more about you. Oh, and some of them sell that data, too.<\/p>\n<p>Our data being sold and bought is nothing new to anyone who hasn\u2019t been living under a rock for the last decade. But sometimes we just don\u2019t realize what information about us is collected and how. We all know that Google and Facebook collect data, but do all Nest users realize that Nest was purchased by Google and is now under Alphabet\u2019s umbrella? That Google now owns information about the temperature in their house, for example?<\/p>\n<p>And do owners of iRobot robotic vacuum cleaners know that <a target=\"_blank\" href=\"https:\/\/www.zdnet.com\/article\/irobot-and-google-team-up-to-understand-your-smart-home\/\" rel=\"noopener noreferrer nofollow\">iRobot and Google recently reached an agreement<\/a> that, among other things, allows Google to peer into the home-mapping data gathered by the robovacs? Basically, Google now knows your home\u2019s layout \u2014 in addition to the many other things it already knew about you.<\/p>\n<p>It\u2019s not only Google and Facebook that are obsessed with user data. Xiaomi is <a target=\"_blank\" href=\"https:\/\/www.kaspersky.com\/blog\/xiaomi-mi-robot-hacked\/20632\/\" rel=\"noopener noreferrer nofollow\">gathering floor plans<\/a> with its Xiaomi Mi Robot vacuum cleaners as well. Did we mention that Xiaomi robovacs can only be operated using an app that works only if it\u2019s connected to a server (for most users, that\u2019s a server in China)?<\/p>\n<h3>Final blow<\/h3>\n<p>These problems may not seem big enough to outweigh the convenience of remotely controlling your home appliances. But there\u2019s no shortage of serious incidents. This October, <a target=\"_blank\" href=\"https:\/\/www.zdnet.com\/article\/yale-botches-smart-lock-update-imprisons-users-in-their-own-homes\/\" rel=\"noopener noreferrer nofollow\">something happened with the app that controlled the Yale smart alarm system<\/a> \u2014 and it wreaked all kinds of havoc in homes equipped with this alarm. People were forced to stay home because they couldn\u2019t turn the alarm off. It took Yale engineers more than a day to fix the issue.<\/p>\n<p>Earlier, a <a target=\"_blank\" href=\"https:\/\/www.zdnet.com\/article\/smart-locks-not-so-smart-customers-stranded-over-botched-firmware-update\/\" rel=\"noopener noreferrer nofollow\">similar problem occurred with smart locks manufactured by Lockstate<\/a>. A misdirected firmware update bricked locks. All of them.<\/p>\n<p>Who on earth uses smart locks? Turns out, AirBNB hosts are big fans, so the glitch affected more than 200 AirBNB guests, who found themselves locked out of their rentals. Worse, the problem couldn\u2019t be fixed quickly with a new remote firmware update \u2014 users had to either remove the locks and return them to the vendor for repair or wait for an engineer to come and replace them. Either solution took 2\u20133 weeks.<\/p>\n<p>We call connected devices the <em>Internet of Things<\/em>, but we might just as well call them <em>Things of Internet<\/em> \u2014 they are absolutely dependent on being connected, and if something goes wrong with the connection, be it a server problem, connectivity issues, errors in apps or firmware, or something else, they are rendered mostly or even totally useless \u2014 and definitely not smart at all.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Smart home appliances are dependent on remote servers, apps, and other things, which can cause all kinds of trouble.<\/p>\n","protected":false},"author":675,"featured_media":12346,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1226],"tags":[1312,22,628,765,1970,1971,629,1620,1937],"class_list":{"0":"post-12345","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-technology","8":"tag-gdpr","9":"tag-google","10":"tag-internet-of-things","11":"tag-iot","12":"tag-nest","13":"tag-netatmo","14":"tag-smart-devices","15":"tag-xiaomi","16":"tag-yale-locks"},"hreflang":[{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/things-of-internet\/12345\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/things-of-internet\/14739\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/things-of-internet\/16655\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/things-of-internet\/14846\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/things-of-internet\/13829\/"},{"hreflang":"es","url":"https:\/\/www.kaspersky.es\/blog\/things-of-internet\/17455\/"},{"hreflang":"it","url":"https:\/\/www.kaspersky.it\/blog\/things-of-internet\/16655\/"},{"hreflang":"ru","url":"https:\/\/www.kaspersky.ru\/blog\/things-of-internet\/21818\/"},{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/things-of-internet\/5538\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/things-of-internet\/24799\/"},{"hreflang":"fr","url":"https:\/\/www.kaspersky.fr\/blog\/things-of-internet\/11210\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/things-of-internet\/11275\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/things-of-internet\/10107\/"},{"hreflang":"de","url":"https:\/\/www.kaspersky.de\/blog\/things-of-internet\/18182\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/things-of-internet\/22106\/"},{"hreflang":"ru-kz","url":"https:\/\/blog.kaspersky.kz\/things-of-internet\/17709\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/things-of-internet\/21588\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/things-of-internet\/21587\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/me-en.kaspersky.com\/blog\/tag\/iot\/","name":"IoT"},"_links":{"self":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/12345","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/users\/675"}],"replies":[{"embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/comments?post=12345"}],"version-history":[{"count":2,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/12345\/revisions"}],"predecessor-version":[{"id":14560,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/posts\/12345\/revisions\/14560"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/media\/12346"}],"wp:attachment":[{"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/media?parent=12345"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/categories?post=12345"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/me-en.kaspersky.com\/blog\/wp-json\/wp\/v2\/tags?post=12345"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}