Ask HN: Thoughts on Embedded Device Security?

  • You want much of the conversation to happen here, not in email. The magic is in people replying who weren't you or the top-level commenter.

    My two cents: Embedded systems don't usually get managed like computers, so their updates happen slower (or not at all). When a new exploit is announced, IT races to patch the computers, but often doesn't think of the embedded systems.

    Worse, the embedded system manufacturer may be more likely to go out of business than the computer manufacturer, and almost certainly is more likely to go out of business than the OS vendor. Updates simply may not be coming for the embedded system, so it may remain vulnerable forever.