Chapter 3

Security and Vulnerability in the Internet of Things

Shancang Li

Abstract

This chapter addresses the differences between secrecy and secret-key generation in web applications versus the Internet of Things (IoT). Authentication using OAuth and OpenID is discussed, as well as encryption using secure sockets layer, transport layer security, and HTTPS. The chapter outlines the basic structure of the IoT cloud structure, the machine-to-machine gateway by which systems of smart devices are connected. The vulnerabilities of protecting the IoT using software are discussed, as well as the benefits of implementing a software/firmware update. Types of attacks at the physical layer are discussed, including side channel attack, timing attack, IoT ...

Get Securing the Internet of Things now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.