Smart homes are increasingly targeted by cyberattacks, yet residents often lack guidance when incidents occur. Since affected residents are likely to seek help from trustworthy sources, this paper asks: What actionable cybersecurity guidance do governments provide to smart home users whose systems have been compromised? To answer this question, we conduct an exploratory, user-centered review of governmental cybersecurity guidance for smart homes across eleven countries to identify and characterize the types of guidance governments provide and to systematize their content. Using a standardized search and screening process, we derive three emergent clusters: incident reporting, general security recommendations, and incident response. Our findings show that governments provide abundant general security advice and accessible reporting channels, but structured incident response guidance tailored to smart homes is rare. Only two sources offer step-by-step recovery guidance for non-expert users, highlighting a gap between preventive advice and post-incident support.
翻译:智能家居日益成为网络攻击的目标,然而居民在事件发生时往往缺乏指导。由于受影响的居民可能寻求可信来源的帮助,本文提出以下问题:政府为系统已遭入侵的智能家居用户提供了哪些切实可行的网络安全指南?为解答此问题,我们以用户为中心,对十一国政府针对智能家居的网络安全指南进行了探索性审查,以识别并描述政府提供指南的类型,并系统化其内容。通过标准化的检索与筛选流程,我们归纳出三个新兴类别:事件报告、通用安全建议及事件响应。研究结果表明,各国政府提供了大量通用安全建议和便捷的举报渠道,但针对智能家居的结构化事件响应指南却十分罕见。仅有两种来源为非专业用户提供分步式恢复指南,这凸显了预防性建议与事件后支持之间的差距。