element14 Community
element14 Community
    Register Log In
  • Site
  • Search
  • Log In Register
  • Members
    Members
    • Benefits of Membership
    • Achievement Levels
    • Members Area
    • Personal Blogs
    • Feedback and Support
    • What's New on element14
  • Learn
    Learn
    • Learning Center
    • eBooks
    • STEM Academy
    • Webinars, Training and Events
    • More
  • Technologies
    Technologies
    • 3D Printing
    • FPGA
    • Industrial Automation
    • Internet of Things
    • Power & Energy
    • Sensors
    • More
  • Challenges & Projects
    Challenges & Projects
    • Design Challenges
    • element14 presents
    • Project14
    • Arduino Projects
    • Raspberry Pi Projects
    • More
  • Products
    Products
    • Arduino
    • Dev Tools
    • Manufacturers
    • Raspberry Pi
    • RoadTests & Reviews
    • Avnet Boards Community
    • More
  • Store
    Store
    • Visit Your Store
    • Choose Another Store
      • Europe
      •  Austria (German)
      •  Belgium (Dutch, French)
      •  Bulgaria (Bulgarian)
      •  Czech Republic (Czech)
      •  Denmark (Danish)
      •  Estonia (Estonian)
      •  Finland (Finnish)
      •  France (French)
      •  Germany (German)
      •  Hungary (Hungarian)
      •  Ireland
      •  Israel
      •  Italy (Italian)
      •  Latvia (Latvian)
      •  
      •  Lithuania (Lithuanian)
      •  Netherlands (Dutch)
      •  Norway (Norwegian)
      •  Poland (Polish)
      •  Portugal (Portuguese)
      •  Romania (Romanian)
      •  Russia (Russian)
      •  Slovakia (Slovak)
      •  Slovenia (Slovenian)
      •  Spain (Spanish)
      •  Sweden (Swedish)
      •  Switzerland(German, French)
      •  Turkey (Turkish)
      •  United Kingdom
      • Asia Pacific
      •  Australia
      •  China
      •  Hong Kong
      •  India
      •  Korea (Korean)
      •  Malaysia
      •  New Zealand
      •  Philippines
      •  Singapore
      •  Taiwan
      •  Thailand (Thai)
      • Americas
      •  Brazil (Portuguese)
      •  Canada
      •  Mexico (Spanish)
      •  United States
      Can't find the country/region you're looking for? Visit our export site or find a local distributor.
  • Translate
  • Profile
eBooks
  • Learn
  • Publications
  • eBooks
  • More
  • Cancel
eBooks
Documents Top Trends in IoT Security 2021 - eBook
  • Documents
  • Members
  • Mentions
  • Sub-Groups
  • Tags
  • More
  • Cancel
  • New
eBooks requires membership for participation - click to join
Actions
  • Share
  • More
  • Cancel
Engagement
  • Author Author: cstanton
  • Date Created: 4 Jun 2021 2:15 PM Date Created
  • Last Updated Last Updated: 9 Dec 2021 8:38 AM
  • Views 655 views
  • Likes 1 like
  • Comments 4 comments
Related
Recommended

Top Trends in IoT Security 2021 - eBook

 

 

Top Trends in IoT Security 2021 eBook

Internet of Things device security is sometimes, maybe often lacking! Allowing malicious actors to steal data and hijack systems. This eBook discusses recent security trends for 2021.

 

 

Download the eBook now!

Download eBook

  • iot security
  • security
  • internet of things
  • free
  • internet of things security
  • iot
  • ebook
  • information security
  • infosec
  • Share
  • History
  • More
  • Cancel
Anonymous

Top Comments

  • sferenci
    sferenci 11 months ago +2

    I read through the Security eBook and it did a very good job covering the technology available to secure an IoT device.  There were some gaps and approaches that I would take differently.

     

    The eBook did not…

  • colporteur
    colporteur 11 months ago in reply to sferenci +1

    It would be ideal, if security was given the same relevance as safety in product development. Consumers are ignorant, naive and trusting. Product developers are driven by profit. Without a security standard…

  • colporteur
    colporteur 11 months ago in reply to sferenci +1

    My experience jades me. I did IT Security Audits in my career path. The promise of future delivery was rarely accepted. A minimum level of security must be implement before release. Releasing products…

  • colporteur
    colporteur 11 months ago in reply to sferenci

    My experience jades me. I did IT Security Audits in my career path. The promise of future delivery was rarely accepted. A minimum level of security must be implement before release. Releasing products that don't meet minimums waters down the security requirement.

     

    Bluetooth has four security levels. Security level 1 supports communication without security at all. The product is being released under security level 1 with the future promise of security level 4. What happens to the 100K units that are sold under security level 1?

     

    There is post by NW that is a perfect example LittleBits Droid of the consumer being left holding the bag after a product is no longer viable. It is a slippery slope to work on the premise of a promise made is a promise kept. Security minimum are important before, on and after the product is released, no compromise.

    • Cancel
    • Up +1 Down
    • Reply
    • More
    • Cancel
  • sferenci
    sferenci 11 months ago in reply to colporteur

    I agree with you, that it would be ideal to have security have the same relevance as safety during product development.  I think I could live with lower levels of security during the pilot or exploratory phase of product development, so long as there was consent by the end users.  For example, Here is our product with the following security limitations which we intend to address in an upcoming release.  If the manufacturer is still piloting the product, this makes sense from a time to market approach and getting the feedback needed to eventually produce a mass market product.

     

    During this pilot phase the developers could get a better understanding on how end users are actually deploying or using the product.  Getting a better understanding of the use cases would help with developing the appropriate security solutions and prioritizing development appropriately.

    • Cancel
    • Up 0 Down
    • Reply
    • More
    • Cancel
  • colporteur
    colporteur 11 months ago in reply to sferenci

    It would be ideal, if security was given the same relevance as safety in product development. Consumers are ignorant, naive and trusting. Product developers are driven by profit. Without a security standard both developers and consumers are left to fend for themselves.

    • Cancel
    • Up +1 Down
    • Reply
    • More
    • Cancel
  • sferenci
    sferenci 11 months ago

    I read through the Security eBook and it did a very good job covering the technology available to secure an IoT device.  There were some gaps and approaches that I would take differently.

     

    The eBook did not cover the topic of secure boot and firmware authentication.  This is a pretty advanced manufacturing/engineering topic where admittedly the workflow and business processes are probably more complex than the technology to implement.  Private keys are burned into the controllers or other chips on the main PCBA and later used to validate that the firmware being installed is authentic and comes from the manufacturer.

     

    I also think some time should be spent to discuss why IoT devices are often not secure.  This is often because small start-ups are more concerned with validating the market place for a new application than the security.  After all, if there is no demand for a given product/service why spend any time securing it.  Once a concept has been validated, and the company is starting to get some traction, then the investment in security must be made before the product volumes begin to get too large.  I think that this is entering the realm of marketing but nonetheless it would help to explain the state of IoT security in the market today. 

     

    Security needs to be evaluated along a matrix of level of risk and the associated impact of a breach, where the bulk of the effort is spent on reducing high impact events.

     

    Great effort by the Element 14 team.

    • Cancel
    • Up +2 Down
    • Reply
    • More
    • Cancel
Element14

element14 is the first online community specifically for engineers. Connect with your peers and get expert answers to your questions.

  • Members
  • Learn
  • Technologies
  • Challenges & Projects
  • Products
  • Store
  • About Us
  • Feedback & Support
  • FAQs
  • Terms of Use
  • Privacy Policy
  • Legal and Copyright Notices
  • Sitemap
  • Cookies

An Avnet Company © 2022 Premier Farnell Limited. All Rights Reserved.

Premier Farnell Ltd, registered in England and Wales (no 00876412), registered office: Farnell House, Forge Lane, Leeds LS12 2NE.

ICP 备案号 10220084.

Follow element14

  • Facebook
  • Twitter
  • linkedin
  • YouTube