YoVDO

How I Can Unlock Your Smart Door - Security Pitfalls in Cross-Vendor IoT Access Control

Offered By: Black Hat via YouTube

Tags

Black Hat Courses Cloud Computing Courses Access Control Courses Formal Verification Courses IoT security Courses

Course Description

Overview

Explore the security vulnerabilities in cross-vendor IoT access control systems through this 35-minute Black Hat conference talk. Delve into the complexities of cloud-mediated device management and the emerging capability of delegating device access across different clouds and users. Examine real-world examples involving popular IoT vendors like Philips Hue and August Lock, and their integration with cloud providers such as Google Home and Amazon Alexa. Learn about the potential risks associated with convoluted delegation chains and authorization operations. Discover the findings from formal verification and vulnerability discovery processes. Gain insights into specific vulnerabilities identified in cross-vendor IoT access control systems and their implications for smart home security.

Syllabus

Introduction
Background
Example
Formal Verification
Vulnerability Discovery
Presentation Overview
First Vulnerability
Second Vulnerability


Taught by

Black Hat

Related Courses

Automated Reasoning: Symbolic Model Checking
EIT Digital via Coursera
Verification and Synthesis of Autonomous Systems
University of Colorado Boulder via Coursera
SPARK 2014
AdaCore via Independent
Software Testing and Verification
University System of Maryland via edX
ARMOR: A Formally Verified Implementation of X.509 Certificate Chain Validation - 2024
IEEE via YouTube