December 2023 Newsletter
IoT Security Foundation
Make it safe to connect Build Secure, Buy Secure, Be Secure
???????? ?????????????? ??????????????.
In this edition:
The 2023 TechWorks Awards & Gala Dinner
Device Authority scooped the IoT Champion category at last week's TechWorks Awards & Gala Dinner.? IoT security is a global challenge, and the spirit of the Champion award is to celebrate those organisations which demonstrate a commitment to raising the bar on cybersecurity beyond their own commercial interests. The 2023 winner has done the long, hard yards over many years.
They continue to work with a number of institutional and standards initiatives – including the IoTSF – as well as developing their own award-winning solutions, helping to bring cohesion at an inter-continental level. For a small company, they are making a quiet, yet important and influential impact globally.?
We’d like to recognise those extra efforts and celebrate Device Authority as our worthy winner. Many thanks to this year's IoT Champion Award sponsor, Keysight Technologies . Commiserations to Codasip and IASME .
IoTSF Houston webinar
The United States regulates information privacy in the private sector through a complicated patchwork of legislation, regulations, and self-regulation.?
At a high level, IoTSF Houston will cover:
- The Federal Trade Commission Act
- FTC Privacy Enforcement Actions
- FTC Security Enforcement Actions
- Future of federal enforcement (IoT, AI, Big data, unregulated data)
The 2023 IoTSF Annual Conference Highlights
If you were there, watch the 3m 39s video above - maybe you are in it! If you were unable to attend, here's what you missed!
2023 publications
The State of Vulnerability Disclosure Policy (VDP) Usage in Global Consumer IoT Report 2023 was launched at the IoTSF Annual Conference in London last month. It follows other 2023 publications such as 'IoT Cybersecurity for Facilities Professionals in the Smart Built Environment' and 'Software Bills of Materials for IoT and OT Devices'. ?
Free pass: ManuSec Europe
IoTSF invites you to claim a free VIP pass for the 7th annual ManuSec Europe Summit in Munich this February. Passes will be allocated on a first come first served basis, (individuals working for consultancies and/or vendor companies don't qualify).?Use the code 'IOTSEC' to gain 2-day access to all presentations, case studies, panel discussions and roundtable talks hosted by 50+ expert speakers. ?
There is still a speaking slot about 'How to Implement A 5G Network Securely in Our Factories' available (speakers must be end-users - individuals working for consultancies and/or vendor companies don't qualify). If you think you'd be interested interested in speaking, please email?with your LinkedIn profile.
Walkthrough of discovering command injections in firmware binaries
IoTSF member Bugprove presents a case study on how their proprietary PRIS?engine can help you find serious bugs lurking in the hidden depths of IoT devices.? With this article, they give insight into the bug-hunting process, using an OS command injection vulnerability of Zavio IP cameras as an example.
IoT Legislation: A guide for Businesses
The IoTSF's John Moor travelled to Secarma's premises in Manchester this past October to take part in a live IASME webinar entitled 'IoT Legislation: A guide for Businesses'. If you didn't catch it at the time, here's the recording for you to enjoy.
Chameleon appoint Sarb Sembhi
IoTSF member Chameleon are excited to announce the appointment of Sarb Sembhi as a Non-Executive Director. His comprehensive background encompasses standards, guidance, codes of practice, best practices, and regulations, particularly in the realms of IoT and Connected Places.
PSTI Legislation & Enforcement webinar
The full recording of last month's webinar is available via our members-only platform. Go to the Plenary message board where you can also enjoy the entire back catalogue of 2023 recordings. Non-members can watch a shortened version of the November webinar above.
We'll confirm the topic(s) and speakers for our January 2024 broadcast soon, but you can click HERE to register for it now.
Siemens podcast ?
Hosted by Lee Harrison, the Security by Design podcast series featured IoTSF's John Moor last month. John shares his background in embedded systems and discusses the IoT Security Foundation’s mission to improve security in the rapidly growing IoT market.?
Hidden weaknesses in your security
IoTSF member RESLAM has published a new white paper entitled 'Hidden weaknesses in your security'. "We shine a spotlight on where you may be exposed through blind spots, hidden gaps and misplaced confidence."
Professional Security Magazine
The IoTSF's 2023 annual conference has been featured in the December edition of Professional Security Magazine.
10% discount on any Doulos embedded security course
Staff of IoTSF member companies are eligible for a 10% discount on any Doulos embedded security course. Please enquire by December 31st 2023 to qualify.
Not a member? Why not join?
Join IoTSF today!
Thanks very much again to Mark Rowe for the feature in the Professional Security Magazine on CISOs and mental stress at the IoTSF Annual Conference, included here, ??