Smart City Gnosys

Smart city article details

Title Do You Trust Your Device? Open Challenges In Iot Security Analysis
ID_Doc 20855
Authors Binosi L.; Mazzini P.; Sanna A.; Carminati M.; Giacinto G.; Lazzeretti R.; Zanero S.; Polino M.; Coppa E.; Maiorca D.
Year 2024
Published Proceedings of the International Conference on Security and Cryptography
DOI http://dx.doi.org/10.5220/0012856200003767
Abstract Several critical contexts, such as healthcare, smart cities, drones, transportation, and agriculture, nowadays rely on IoT, or more in general embedded, devices that require comprehensive security analysis to ensure their integrity before deployment. Security concerns are often related to vulnerabilities that result from inadequate coding or undocumented features that may create significant privacy issues for users and companies. Current analysis methods, albeit dependent on complex tools, may lead to superficial assessments due to compatibility issues, while authoritative entities struggle with specifying feasible firmware analysis requests for manufacturers within operational contexts. This paper urges the scientific community to collaborate with stakeholders—manufacturers, vendors, security analysts, and experts—to forge a cooperative model that clarifies manufacturer contributions and aligns analysis demands with operational constraints. Aiming at a modular approach, this paper highlights the crucial need to refine security analysis, ensuring more precise requirements, balanced expectations, and stronger partnerships between vendors and analysts. To achieve this, we propose a threat model based on the feasible interactions of actors involved in the security evaluation of a device, with a particular emphasis on the responsibilities and necessities of all entities involved. © 2024 by SCITEPRESS – Science and Technology Publications, Lda.
Author Keywords Firmware Analysis; IoT; Security Evaluation


Similar Articles


Id Similarity Authors Title Published
46683 View0.868Oser P.; Van Der Heijden R.W.; Lüders S.; Kargl F.Risk Prediction Of Iot Devices Based On Vulnerability AnalysisACM Transactions on Privacy and Security, 25, 2 (2022)
5283 View0.852Wei Z.; Wei Q.; Geng Y.; Yang Y.A Survey On Iot Security: Vulnerability Detection And ProtectionProceedings of 2024 International Conference on Artificial Intelligence of Things and Computing, AITC 2024 (2025)