Welcome!

Microservices Expo Authors: Pat Romanski, John Katrick, Elizabeth White, Liz McMillan, Yeshim Deniz

Related Topics: @ThingsExpo, @CloudExpo, Cloud Security

@ThingsExpo: Blog Feed Post

How to Turn Your Microwave into a Camera | @ThingsExpo #IoT #M2M #Security

All kidding aside, there is no way to take a microwave oven and use it 'as is' as a surveillance tool

You can turn a microwave into a camera and I’ll teach you how in a minute, but before I do, let me share this news item. In a recent interview with a reporter from the Bergen Record, Kellyanne Conway was asked about surveillance. She responded: “There are many ways to surveil each other now, unfortunately. There was an article this week that talked about how you can surveil someone through their phones, certainly through their television sets, any number of different ways. And microwaves that turn into cameras, etc. So we know that that is just a fact of modern life.”

On its face, her statement about “microwaves that turn into cameras, et cetera” is ridiculous. It reminds me of the late Sen. Ted Stevens’ famous “Tubes” speech. I went right after “Uncle Ted” for his techno–faux pas, but even then, there were bigger issues to consider. It would be exceptionally easy to jump all over Ms. Conway for her techno–faux pas. But doing so would be taking a cheap shot at an easy target while completely missing a very, very important teaching moment.

You Cannot Hide
First and foremost, if you are a normal person who does not have a professional security team ensuring your privacy, and you are targeted, you cannot hide. There are countless legal and illegal ways to watch you (assuming you’re interesting enough to be watched), and you will not know you are being watched until someone makes use of the surveilled material. Get over it. As Ms. Conway suggests, “that is just a fact of modern life.” If you’re wondering what these mysterious “countless ways” might be, type “surveillance” into Google and read through some of the 186 million results. This may have been her point. If it was, she was just fear-mongering. Very few people are interesting enough to be watched.

Professionals Have Countermeasures
If your personal or business dealings require enterprise-grade security and privacy, you can hide. Although, even professional surveillors have trouble keeping up with professional surveillees – and vice versa, because surveillors and surveillees are locked in an iterative, accelerating arms race that will never end. That said, if this is the “fact of modern life” Ms. Conway was referring to, she either misspoke or was just misinformed about microwave ovens.

A Massive Gap in Understanding
The bigger problem with Ms. Conway’s statement was that it clearly illustrated that she has no idea what is, or is not, technologically possible. A blanket statement about digital surveillance may fulfill her communications mandate, but it raises a serious question: Does she (or do the people who crafted her message) know enough about the technology she’s attempting to describe to hold informed, rational policy discussions about it? And without this understanding, is it possible to lead the world into the 21st century?

Lifelong Learning
Policy is already years behind technology, and it’s falling farther behind every day. Our elected officials need to have either a deep understanding of technological capabilities that are just over the horizon or the ability to enlist (and listen to) world-class tech advisors or, preferably, both. Sadly, this requirement for future-preparedness is not in evidence.

The Imminent Danger of IoT
Smart homes and connected devices are everywhere, and with the advent of natural language understanding (NLU) systems such as Alexa Voice Services, sales are becoming robust. Over the next few years, we will find sensors in every conceivable device, and all of these devices (an estimated 50 billion of them) will be connected to some kind of network.

Data security is already a formidable problem, and it will be an even bigger problem moving forward. But device security is also going to command our attention. There are almost no ubiquitously agreed-upon security standards for IoT devices. Just how many unregulated transceivers with central processing units do you want in your home? Is the hard-coded, unchangeable password to that network-connected, budget indoor/outdoor thermometer “1234?” If so, welcome to hacker heaven. Could an inexpensive device like this be used by hackers to commit a massive DDoS attack? In October 2016, that’s exactly what happened.

Will someone hack your devices to do something even worse? Time will tell, but Kellyanne Conway could have used her moment in the spotlight to ask real questions about IoT. BTW, earlier this week, Maureen Ohlhausen, acting head of the Federal Trade Commission, said the “Internet of Things should self-regulate.” ’Nuff said.

Turning Your Microwave into a Camera
As promised, here’s how to turn your microwave (oven), which is what I think Ms. Conway meant, into a camera.

Take a smartphone and connect it to your local area network (WiFi). Download any time-lapse photography app you like. Now, duct tape the smartphone to your microwave. Do your best to camouflage it and hide the charging cord. Walk away saying something like, “Nothing to see here, folks” to divert the attention of the curiosity seekers.

Your microwave has now been turned into a camera. Of course, it will still work as a microwave – that’s what’s so great about this! Who in their right mind would ever think a microwave could be turned into a camera?

Disclaimer
All kidding aside, there is no way to take a microwave oven and use it “as is” as a surveillance tool. Microwave ovens are shielded, not typically network-connected, and they do not possess the proper component parts for image-making. Even the transducer that makes the beep is not really suited for use as a microphone.

Importantly, this is not true of other devices Ms. Conway mentioned. A professional can easily install software in a smart television (which typically features a microphone for voice recognition and a camera for gesture control) for surveillance use. In practice, anything with a transducer (microphone or speaker) in your home that is network-connected is a relatively easy target for espionage. But – and this is a big but – in almost every case, someone would need to break into your home to do the required modifications. This is not true with respect to turning your smart phones or some other types of smart devices against you. That can be done remotely.

Lastly, none of these surveillance techniques are easy to accomplish, and all of them require a warrant from a court of competent jurisdiction. But the rules only apply to governments and law enforcement. Criminals (hackers and other bad guys) don’t tend to follow rules or regulations. That’s what makes them criminals. So, without promoting fear, uncertainty and doubt (FUD) and without espousing conspiracy theories, let me leave you with one thought. It’s the Wild West, it’s getting wilder by the day, and there ain’t no sheriff.

The post How to Turn Your Microwave into a Camera originally appeared here on Shelly Palmer

Read the original blog entry...

More Stories By Shelly Palmer

Shelly Palmer is the host of Fox Television’s "Shelly Palmer Digital Living" television show about living and working in a digital world. He is Fox 5′s (WNYW-TV New York) Tech Expert and the host of United Stations Radio Network’s, MediaBytes, a daily syndicated radio report that features insightful commentary and a unique insiders take on the biggest stories in technology, media, and entertainment.

@MicroservicesExpo Stories
For organizations that have amassed large sums of software complexity, taking a microservices approach is the first step toward DevOps and continuous improvement / development. Integrating system-level analysis with microservices makes it easier to change and add functionality to applications at any time without the increase of risk. Before you start big transformation projects or a cloud migration, make sure these changes won’t take down your entire organization.
When you focus on a journey from up-close, you look at your own technical and cultural history and how you changed it for the benefit of the customer. This was our starting point: too many integration issues, 13 SWP days and very long cycles. It was evident that in this fast-paced industry we could no longer afford this reality. We needed something that would take us beyond reducing the development lifecycles, CI and Agile methodologies. We made a fundamental difference, even changed our culture...
In his session at 20th Cloud Expo, Mike Johnston, an infrastructure engineer at Supergiant.io, discussed how to use Kubernetes to set up a SaaS infrastructure for your business. Mike Johnston is an infrastructure engineer at Supergiant.io with over 12 years of experience designing, deploying, and maintaining server and workstation infrastructure at all scales. He has experience with brick and mortar data centers as well as cloud providers like Digital Ocean, Amazon Web Services, and Rackspace. H...
You often hear the two titles of "DevOps" and "Immutable Infrastructure" used independently. In his session at DevOps Summit, John Willis, Technical Evangelist for Docker, covered the union between the two topics and why this is important. He provided an overview of Immutable Infrastructure then showed how an Immutable Continuous Delivery pipeline can be applied as a best practice for "DevOps." He ended the session with some interesting case study examples.
Without lifecycle traceability and visibility across the tool chain, stakeholders from Planning-to-Ops have limited insight and answers to who, what, when, why and how across the DevOps lifecycle. This impacts the ability to deliver high quality software at the needed velocity to drive positive business outcomes. In his general session at @DevOpsSummit at 19th Cloud Expo, Eric Robertson, General Manager at CollabNet, will discuss how customers are able to achieve a level of transparency that e...
"DivvyCloud as a company set out to help customers automate solutions to the most common cloud problems," noted Jeremy Snyder, VP of Business Development at DivvyCloud, in this SYS-CON.tv interview at 20th Cloud Expo, held June 6-8, 2017, at the Javits Center in New York City, NY.
The Jevons Paradox suggests that when technological advances increase efficiency of a resource, it results in an overall increase in consumption. Writing on the increased use of coal as a result of technological improvements, 19th-century economist William Stanley Jevons found that these improvements led to the development of new ways to utilize coal. In his session at 19th Cloud Expo, Mark Thiele, Chief Strategy Officer for Apcera, compared the Jevons Paradox to modern-day enterprise IT, examin...
We all know that end users experience the internet primarily with mobile devices. From an app development perspective, we know that successfully responding to the needs of mobile customers depends on rapid DevOps – failing fast, in short, until the right solution evolves in your customers' relationship to your business. Whether you’re decomposing an SOA monolith, or developing a new application cloud natively, it’s not a question of using microservices - not doing so will be a path to eventual ...
In his session at 20th Cloud Expo, Scott Davis, CTO of Embotics, discussed how automation can provide the dynamic management required to cost-effectively deliver microservices and container solutions at scale. He also discussed how flexible automation is the key to effectively bridging and seamlessly coordinating both IT and developer needs for component orchestration across disparate clouds – an increasingly important requirement at today’s multi-cloud enterprise.
Your homes and cars can be automated and self-serviced. Why can't your storage? From simply asking questions to analyze and troubleshoot your infrastructure, to provisioning storage with snapshots, recovery and replication, your wildest sci-fi dream has come true. In his session at @DevOpsSummit at 20th Cloud Expo, Dan Florea, Director of Product Management at Tintri, provided a ChatOps demo where you can talk to your storage and manage it from anywhere, through Slack and similar services with...
Containers are rapidly finding their way into enterprise data centers, but change is difficult. How do enterprises transform their architecture with technologies like containers without losing the reliable components of their current solutions? In his session at @DevOpsSummit at 21st Cloud Expo, Tony Campbell, Director, Educational Services at CoreOS, will explore the challenges organizations are facing today as they move to containers and go over how Kubernetes applications can deploy with lega...
Learn how to solve the problem of keeping files in sync between multiple Docker containers. In his session at 16th Cloud Expo, Aaron Brongersma, Senior Infrastructure Engineer at Modulus, discussed using rsync, GlusterFS, EBS and Bit Torrent Sync. He broke down the tools that are needed to help create a seamless user experience. In the end, can we have an environment where we can easily move Docker containers, servers, and volumes without impacting our applications? He shared his results so yo...
Enterprise architects are increasingly adopting multi-cloud strategies as they seek to utilize existing data center assets, leverage the advantages of cloud computing and avoid cloud vendor lock-in. This requires a globally aware traffic management strategy that can monitor infrastructure health across data centers and end-user experience globally, while responding to control changes and system specification at the speed of today’s DevOps teams. In his session at 20th Cloud Expo, Josh Gray, Chie...
Don’t go chasing waterfall … development, that is. According to a recent post by Madison Moore on Medium featuring insights from several software delivery industry leaders, waterfall is – while still popular – not the best way to win in the marketplace. With methodologies like Agile, DevOps and Continuous Delivery becoming ever more prominent over the past 15 years or so, waterfall is old news. Or, is it? Moore cites a recent study by Gartner: “According to Gartner’s IT Key Metrics Data report, ...
Kubernetes is a new and revolutionary open-sourced system for managing containers across multiple hosts in a cluster. Ansible is a simple IT automation tool for just about any requirement for reproducible environments. In his session at @DevOpsSummit at 18th Cloud Expo, Patrick Galbraith, a principal engineer at HPE, discussed how to build a fully functional Kubernetes cluster on a number of virtual machines or bare-metal hosts. Also included will be a brief demonstration of running a Galera MyS...
In his session at Cloud Expo, Alan Winters, U.S. Head of Business Development at MobiDev, presented a success story of an entrepreneur who has both suffered through and benefited from offshore development across multiple businesses: The smart choice, or how to select the right offshore development partner Warning signs, or how to minimize chances of making the wrong choice Collaboration, or how to establish the most effective work processes Budget control, or how to maximize project result...
In his keynote at 19th Cloud Expo, Sheng Liang, co-founder and CEO of Rancher Labs, discussed the technological advances and new business opportunities created by the rapid adoption of containers. With the success of Amazon Web Services (AWS) and various open source technologies used to build private clouds, cloud computing has become an essential component of IT strategy. However, users continue to face challenges in implementing clouds, as older technologies evolve and newer ones like Docker c...
In IT, we sometimes coin terms for things before we know exactly what they are and how they’ll be used. The resulting terms may capture a common set of aspirations and goals – as “cloud” did broadly for on-demand, self-service, and flexible computing. But such a term can also lump together diverse and even competing practices, technologies, and priorities to the point where important distinctions are glossed over and lost.
In his session at @DevOpsSummit at 20th Cloud Expo, Kelly Looney, director of DevOps consulting for Skytap, showed how an incremental approach to introducing containers into complex, distributed applications results in modernization with less risk and more reward. He also shared the story of how Skytap used Docker to get out of the business of managing infrastructure, and into the business of delivering innovation and business value. Attendees learned how up-front planning allows for a clean sep...
"I will be talking about ChatOps and ChatOps as a way to solve some problems in the DevOps space," explained Himanshu Chhetri, CTO of Addteq, in this SYS-CON.tv interview at @DevOpsSummit at 20th Cloud Expo, held June 6-8, 2017, at the Javits Center in New York City, NY.