Some smart electricity meters are stupid about privacy
Computerworld - Researchers at the University of South Carolina have discovered that some types of electricity meters broadcast unencrypted information that eavesdroppers with the right software could use to determine whether you're at home or not.
The automatic meter reading devices are installed in about one-third of U.S. homes and businesses. They make it possible for utility employees to get accurate meter readings by simply walking by a building with a handheld device, instead of physically accessing the premises and recording readings manually.
But at least one type of meter sends out a signal every 30 seconds regardless of whether a meter reader requested it, and that creates privacy risks.
Wenyuan Xu, an assistant professor at the University of South Carolina, said her team was able to capture data from electricity meters at a distance of up to 300 meters (about 984 feet). The data was in plain text and included the meter ID number; the name and address of the building's owner were not included, but it was possible to figure out that information.
Xu said she was able to pull data from target meters once every two to 10 minutes. With such frequent readings, it's possible to calculate the rate of power consumption in a house and determine whether someone's at home or not.
A new generation of meters is supposed to include encryption. But it's unclear whether the meters already installed will be replaced and, if so, when that might happen.
This version of this story was originally published in Computerworld's print edition. It was adapted from an article that appeared earlier on Computerworld.com.
Read more about Mobile/Wireless in Computerworld's Mobile/Wireless Topic Center.
- 10 Hot Big Data Startups to Watch
- 11 Unique Uses for Google Glass, Demonstrated by Celebs
- How to Export Your Google Reader Account
- How to Better Engage Millennials (and Why They Aren't Really so Different)
- Telltale signs of ATM skimming
- 20 security and privacy apps for Androids and iPhones
- Big screen con artists: 7 great movies about social engineering
- IT Certification Study Tips
- Register for this Computerworld Insider Study Tip guide and gain access to hundreds of premium content articles, cheat sheets, product reviews and more.
- An Interactive eGuide: DDoS Attacks In today's world, Distributed Denial of Service (DDoS) attacks on organizations are becoming more prevalent. The number of attacks are increasingly annually with...
- What does it take to deliver Security, Privacy and Trust at Mimecast? This whitepaper explains the process and controls that Mimecast put in place to deliver a secure, private and trusted SaaS platform for your...
- Cloud Impacts and Outcomes for Business Leaders Learn More
- Wanted: A Trusted Provider for Public Cloud Services Learn how Dell's cloud strategy, built on the highest level of VMware integration and security, is enabling enterprises to get out of the...
- HIPAA Hiccup Solved Data protection priorities rapidly changed after a patient data leak that caused one healthcare provider unexpected expenses, potential reputational risk and possible HIPAA...
- Dell Software This overview of Dell SonicWALL next-generation firewalls showcases how you can increase network security by scanning every packet without any compromises in network... All Security White Papers | Webcasts