On cybersecurity of the Internet of Things systems

Dmitry Namiot, Vladimir Sukhomlin


This article discusses the issues of cybersecurity of the Internet of Things (IoT) systems. Such systems are always an integration of many different technologies. This, naturally, increases the opportunities for attackers to influence both software and hardware subsystems of projects. The multitude of different vendors with their solutions and software update cycles greatly increases the possibility of supply chain attacks. Historically, IoT systems have used and continue to use a wide variety of communication solutions, which complicates data protection in this area. End devices (sensors, actuators) also differ greatly in their capabilities and characteristics, which excludes any unified solutions in this area. Perhaps the only “standard” element of IoT systems is cloud storage, the cybersecurity of which must also be dealt with outside of IoT projects. The IoT cybersecurity work is further complicated by the fact that the term IoT hides a whole family of approaches (architectures) - the industrial Internet of Things, the Internet of nano-things, etc. Possible attacks on IOT systems include confidential data theft, identity theft, infrastructure damage, data corruption, unauthorized surveillance, illegal data modification, and unauthorized use of device capabilities.

