To Fill Security gaps in the IoT joint efforts are done

To Fill Security gaps in the IoT joint efforts are done

Efforts by several internet industry groups are focusing on new measures to fix inherent security weaknesses with the rapidly expanded use of internet of things (IoT) devices for enterprises and consumers.

 

Supply chain security company Finite State on April 27 announced a partnership with application security solutions Veracode to offer comprehensive coverage of connected devices and embedded systems. The security solution covers the pathway from the device firmware through to the web applications, infrastructure, and cloud services with which they interact.

This new partnership presents the most complete picture of product security for manufacturers and users of connected products at a time when the IoT device market is undergoing exponential growth, according to Matt Wyckhouse, founder and CEO of Finite State.

In a related development, the FIDO Alliance (Fast Identity Online) on April 20 announced a new, open IoT standard called FIDO Device Onboard (FDO) protocol that enables devices to simply and securely onboard to cloud and on-premises management platforms.

That announcement makes good on the company’s previous commitment announced two years ago to establish efforts that help fix what is wrong with the IoT’s missing security.

“We are seeing an increase in publicly reported security events targeting software supply chains. These continue to showcase the damage these incidents can inflict on even the most sophisticated organizations which is leading to mounting pressure on businesses to ensure that devices are securely developed and continuously reviewed for vulnerabilities and supply chain risks as part of their security program,” Wyckhouse said.

 

FIDO Support
In 2019, the FIDO Alliance announced a working group dedicated to addressing IoT security standards in typical processes such as shipping devices with default password credentials. Relying on manual onboarding can leave devices and the networks on which they operate vulnerable. That working group comprises members of Amazon, Google, Intel, Microsoft, Qualcomm, and others. This new standard addresses challenges of security, cost, and complexity tied to IoT device deployment at scale.

FIDO Device Onboard furthers the fundamental vision of the Alliance, which has brought together more than 250 of the most influential and innovative companies and government agencies from around the world to address cybersecurity in order to eliminate data breaches and enable secure online experiences. The FIDO Alliance, a non-profit organization, is an open industry association that seeks to standardize authentication at the client and protocol layers. FIDO specifications support multi-factor authentication (MFA) and public-key cryptography.

“The FIDO Device Onboard standard builds on the Alliance’s ongoing efforts to help close the security gaps that currently exist on the web by expanding this work into IoT applications,” said Andrew Shikiar, executive director and CMO of the FIDO Alliance. “Businesses recognize the huge potential of the IoT and the enormous benefits it can bring to manufacturing, retail, healthcare, transportation, logistics, and more,” he continued. “The paradigm needs to shift immediately so we can move IoT technologies ahead with safer, stronger, and more secure means of authentication for these important uses in industrial and commercial environments.”

What FDO Does
FIDO’s FDO specifications for IoT was collaboratively developed as a follow-up measure to its FIDO authentication standards to help address the global data breach problem. The specifications have reached the proposed standard status and is open and free to implement. Initially, the new specifications target industrial and commercial applications. Developers can view and download the specifications here.

FDO leverages asymmetric public-key cryptography to provide the industrial IoT industry with a fast and secure way to onboard any device to any device management system. The business benefits from the FIDO Device Onboard standard include: Simplicity — Businesses no longer have to pay more for the lengthy and highly technical installation process than they do for the devices themselves. People of any experience level can apply the highly automated FDO process quickly and efficiently.
Flexibility — Businesses can decide which cloud platforms they prefer for onboarding devices at the point of installation (as opposed to manufacture). A single device SKU can be onboarded to any platform, thereby greatly simplifying the device supply chain.
Security — FDO leverages an “untrusted installer” approach, which means the installer no longer needs — nor is such access available to — any sensitive infrastructure/access control information to add a device to a network.
“This is a major milestone that aims to solve one of today’s critical challenges with deploying IoT systems. The new FDO standard will help reduce cost, save time, and improve security, all helping the IoT industry to expand rapidly,” said Christine Boles, vice president for the Internet of Things Group and general manager for the Industrial Solutions Division at Intel.

The News Highlights

  • To Fill Security gaps in the IoT joint efforts are done
  • Check the latest update on Security news
  • .

Disclaimer: If you need to edit or update this news from compsmag then kindly contact us Learn more

For Latest News Follow us on Google News


Latest Headlines
  • Show all
  • Trending News
  • Popular By week
The West Side School District Uses an Unusual Method to Fund a New Addition – Cache Valley Daily

The West Side School District Uses an Unusual Method to Fund a New Addition – Cache Valley Daily

“We are growing at five to six percent or 50 students a year and this year we have 785 students district-wide, that includes the high school,” Barzee said. ...
New York State continues to reduce public health guidelines while Cornell rules remain virtually unchanged

New York State continues to reduce public health guidelines while Cornell rules remain virtually unchanged

As of June 1, over a month after the CDC decided that mask wearing outdoors was no longer required, the University announced that all faculty and staff members ...
William Sullivan, CPA, MBA joins Cytovia Therapeutics as Chief Financial Officer

William Sullivan, CPA, MBA joins Cytovia Therapeutics as Chief Financial Officer

For further information, please contact: About Cytovia TherapeuticsCytovia Therapeutics aims to accelerate patient access to transformational cell therapies ...
What were the highlights of E3 2021’s Xbox and Bethesda Games Showcase?

What were the highlights of E3 2021’s Xbox and Bethesda Games Showcase?

Forza Horizon 5 During a decidedly light E3 2021, Xbox and Bethesda came through swinging, bringing their best E3 presentation for years. The show included ...
DHS arrests 12 for smuggling people and money laundering charges on Sells

DHS arrests 12 for smuggling people and money laundering charges on Sells

The U.S. Attorney’s Office for the District of Arizona is prosecuting the case. Nine individuals connected to the human smuggling organization are still “at ...
Governor Baker visits White Lion Brewing in Springfield to announce small business turnaround funding

Governor Baker visits White Lion Brewing in Springfield to announce small business turnaround funding

3:15PM: Caring Health Center located at 473 Summer Ave in Springfield Governor Charlie Baker and Lt. Governor Karyn Polito will join Secretary of Public Safety ...
Tennessee Health Commissioner Refuses Questions About Delta Variant Cases

Tennessee Health Commissioner Refuses Questions About Delta Variant Cases

“When you talk about these variants like the Delta variant, which can spread more easily and is even more dangerous, we know that we’ve gotta act quickly to ...
Nintendo is launching a Zelda-themed Game & Watch handheld

Nintendo is launching a Zelda-themed Game & Watch handheld

The handheld will release on November 12th for $49.99. The previous Game & Watch console released for Mario’s 35th anniversary ...
Ballad Health, Nonprofit Working to Reduce Nearly $278 Million in Medical Debt |  News

Ballad Health, Nonprofit Working to Reduce Nearly $278 Million in Medical Debt | News

Source Those with outstanding accounts who believe they may be eligible for charity care can call Ballad at 423-408-7400. “Everyone who will receive their ...
Intel Ready to Deliver Its 11th-generation H-series mobile processors

The Intel M.2 Modem Driver “IOSM” Is Queued Before Linux 5.14

This new Intel M.2 Modem driver is called IOSM which in this case stands for IPC over Shared Memory. The driver is summed up as, “The IOSM (IPC over Shared ...
Show next
Compsmag - Latest News from tech, business and health
Logo