
5/2/2017 · Junade Ali
What this post added
This post contributes to the website security and threat management feature thread by extending the discussion to the emerging security landscape of the Internet of Things (IoT). It identifies and explains four key security anti-patterns prevalent in IoT device development: insecure HTTP Pub/Sub leading to DDoS vulnerabilities, the risks of IoT devices acting as TLS servers with self-signed certificates, the critical vulnerability of unencrypted bootloaders, and the performance and security issues arising from using databases as inter-process communication (IPC). This expands the scope of threat management to encompass connected devices.