Risk Assessment of Utilizing Low-Cost Hardware in a Home Office Environment
This thesis explores the security risks associated with the increasing use of low-cost peripherals in home offices. As remote work grows, the demand for affordable devices rises, raising concerns about vulnerabilities in budget-friendly options from platforms like AliExpress.
Angelo Ramos, 2024
Art der Arbeit Bachelor Thesis
Auftraggebende University of Applied Sciences and Arts Northwestern Switzerland
Betreuende Dozierende Moriggl, Pascal
Keywords Risk Assessment, Low-cost, Home Office, Peripherals, IT-Security, Experiment, Surveillance
Views: 7
With the rise of remote work, there has been a surge in demand for affordable IT peripherals such as keyboards, mice, and webcams, particularly from platforms like AliExpress. However, these low-cost devices often come with significant security risks, including vulnerabilities in encryption and potential for supply chain attacks. Understanding these risks is critical for ensuring the safety of home office setups.
The research involved practical experiments and expert interviews to assess the security risks of low-cost hardware. Network traffic was monitored using tools like Wireshark, and hardware disassemblies were conducted to inspect for embedded malware. Additionally, cybersecurity experts were interviewed to provide insights into the broader implications of these risks.
The experiments revealed that while no direct malware was detected, many low-cost devices had vulnerabilities, particularly in encryption and data security. These devices often used outdated protocols, making them susceptible to interception. Disassembly also showed inconsistent build quality, increasing the risk of tampering during manufacturing. Experts highlighted the dangers of poor manufacturing oversight and supply chain attacks, emphasizing the need for consumer awareness and better security standards. Recommendations include educating consumers, implementing industry-wide security certifications, and conducting regular security audits, especially in remote work environments. A hybrid approach, balancing low-cost and high-end hardware, is also suggested to manage costs without compromising security. This thesis concludes that while low-cost peripherals offer financial benefits, they require heightened vigilance and stricter standards to mitigate their security challenges.
Studiengang: Wirtschaftsinformatik (Bachelor)
Vertraulichkeit: öffentlich