Comment on Wi-Fi jamming to knock out cameras suspected in nine Minnesota burglaries -- smart security systems vulnerable as tech becomes cheaper and easier to acquire

rekabis@lemmy.ca ⁨9⁩ ⁨months⁩ ago

And that’s why hardlining is still by far the best option available.

  1. Hardlined cameras need to be physically accessed and the cables snipped in order to disrupt them, and most cameras offering hardlining now feed Ethernet through their bases, providing additional protection.
  2. Most sub-20 camera systems can run for up to an hour or two on a 500VA UPS, and up to a week or more with PowerWall backups, defeating intentional power outages.
  3. A fully airgapped system can defeat any sort of direct Internet intrusion.
  4. Shielded Ethernet can help protect from crosstalk attacks provided they are correctly grounded with the appropriate switches.
  5. Hardware auth between cameras and the DVR can help defend against direct attacks via an unplugged cable or an open wall jack, in that only approved hardware can make the needed connections with either end.
  6. Encrypted communications between cameras and DVR can enhance the security of data across the wire.
  7. A brace of identical dummy cameras - similarly powered, if they have external indicators - alongside real ones will waste the time and effort of attackers who conduct physical attacks, while keeping recording-infrastructure needs to a minimum.
  8. Bonus if identical but “dark” Ethernet is similarly spoofed throughout the building, as not only will it confuse physical attackers, but it’ll also be already in-place for future communications-infrastructure improvements.
  9. DVR needs to be in a secured location, ideally fireproof. In combination with № 7 and № 8, a dummy DVR (with live screens showing actual content) can exist elsewhere to distract any physical attackers.

Sure, this list isn’t 100% coverage, but it gets you nearly there with a minimum of effort.

source
Sort:hotnewtop