From the course: IoT Product Security
Unlock this course with a free trial
Join today to access over 24,700 courses taught by industry experts.
Vulnerability management and patching: Part 1
From the course: IoT Product Security
Vulnerability management and patching: Part 1
Hi, I'm Matthew Clark. And this is Lesson 6.2: Vulnerability Management and Patching, Part 1. In this video, we will gain a perspective of vulnerabilities and patching by discussing vulnerability management. We'll also review CVEs and the patch process and conclude by reviewing some IoTSF recommended controls. So let's get started. So let's start with the perspective of vulnerabilities. How did we get here? Well, let's take a look at the law of supply and demand. Brian Krebs has a very interesting article published on October 15th of 2018 entitled "Supply Chain Security is the Whole Enchilada, But Who's Going to Pay for It?" In this article, he discusses how important supply chain security is. But if security is done correctly, the product would be more expensive. He said the following: "Consumers would almost certainly balk at buying these way more expensive devices. Years of experience has shown that consumers aren't interested in paying a huge premium for security when a comparable…
Contents
-
-
-
-
-
-
-
Manufacturing and provisioning9m 30s
-
(Locked)
Vulnerability management and patching: Part 19m 41s
-
(Locked)
Vulnerability management and patching: Part 211m 51s
-
(Locked)
Vulnerability Disclosure Program: Part 17m 26s
-
(Locked)
Vulnerability Disclosure Program: Part 27m 49s
-
(Locked)
Vulnerability Disclosure Program: Part 38m 26s
-
(Locked)
Device ownership8m 3s
-
(Locked)
IOTSF Secure Design Best Practice Guides7m 4s
-
-