Lisa Bock Securing The Iot: Introduction Course -
In her introductory course on Securing the IoT , security ambassador Lisa Bock explores the critical balance between the benefits of a connected world and the significant cybersecurity risks it introduces. The course serves as a foundational guide for IT professionals and users to understand why security must be a primary consideration when designing and deploying IoT devices. Core Objectives The course provides a roadmap for securely implementing and managing IoT devices by focusing on three main pillars: Discovering the IoT Landscape
| Layer | Components | Security Implications | | :--- | :--- | :--- | | | Sensors, actuators, cameras, microphones | Physical tampering, node capture, fake sensor data injection. | | Network | Wi-Fi, Bluetooth, LoRaWAN, Zigbee, 5G | Eavesdropping, man-in-the-middle (MitM), replay attacks. | | Middleware | Cloud platforms, data brokers, APIs | Insecure APIs, data leakage, improper authentication. | | Application | Dashboards, mobile apps, alert systems | Weak session management, cross-site scripting, privilege escalation. | lisa bock securing the iot: introduction course
Bock emphasizes that threat modeling is not an academic exercise but a necessity. The STRIDE model (Spoofing, Tampering, Repudiation, Information disclosure, Denial of Service, Elevation of privilege) is applied specifically to IoT. In her introductory course on Securing the IoT
To secure a system, one must first map its components. Bock breaks the IoT ecosystem into four distinct layers, each with unique vulnerabilities. | | Network | Wi-Fi, Bluetooth, LoRaWAN, Zigbee,