Cyver core supports the OWASP Internet of Things (IoT) TOP 10 Checklist, specifically including the 2018 version. This list addresses the unique and critical security risks associated with the rapid expansion of interconnected devices and their broader ecosystem.
General Information on the OWASP IoT TOP 10
The OWASP IoT Project aims to raise awareness and provide a standard baseline for security testing and development within the Internet of Things space. The 2018 list was crucial in defining the security scope for the entire IoT ecosystem, which extends beyond the physical device itself to include web interfaces, mobile applications, network services, and cloud components.
OWASP IoT TOP10 - 2018
- I1 Weak Guessable, or Hardcoded Passwords
- I2 Insecure Network Services
- I3 Insecure Ecosystem Interfaces
- I4 Lack of Secure Update Mechanism
- I5 Use of Insecure or Outdated Components
- I6 Insufficient Privacy Protection
- I7 Insecure Data Transfer and Storage
- I8 Lack of Device Management
- I9 Insecure Default Settings
- I10 Lack of Physical Hardening
Download
You can directly download the latest OWASP IoT TOP 10 Checklist from our GitHub repository: