From the course: IoT Product Security

Unlock this course with a free trial

Join today to access over 24,700 courses taught by industry experts.

Vulnerability management and patching: Part 1

Vulnerability management and patching: Part 1

From the course: IoT Product Security

Vulnerability management and patching: Part 1

Hi, I'm Matthew Clark. And this is Lesson 6.2: Vulnerability Management and Patching, Part 1. In this video, we will gain a perspective of vulnerabilities and patching by discussing vulnerability management. We'll also review CVEs and the patch process and conclude by reviewing some IoTSF recommended controls. So let's get started. So let's start with the perspective of vulnerabilities. How did we get here? Well, let's take a look at the law of supply and demand. Brian Krebs has a very interesting article published on October 15th of 2018 entitled "Supply Chain Security is the Whole Enchilada, But Who's Going to Pay for It?" In this article, he discusses how important supply chain security is. But if security is done correctly, the product would be more expensive. He said the following: "Consumers would almost certainly balk at buying these way more expensive devices. Years of experience has shown that consumers aren't interested in paying a huge premium for security when a comparable…

Contents