standards

Security Firm Warns on Flaw in Insulin Pump with No Easy Fix

In brief: A flaw in a wearable insulin pump sold by Johnson & Johnson has the potential to allow a malicious actor to force the device to administer doses of insulin to a patient without their knowledge.

Industrial Internet Consortium Publishes Security Framework

In-brief: The Industrial Internet Consortium has released a security framework for addressing security issues in industrial Internet of Things systems. The goal: avoid the mistakes of the consumer IoT space. 

Point of Sale Terminal

PCI Updates Security Guidance with Focus on Firmware

In-brief: The Payment Card Industry Security Standards Council (PCI Council) is raising the bar for the security of point of sale systems, with a big focus on the software (or “firmware”) that runs those systems. 

Verizon, Qualcomm Back LTE for Secure Internet of Things

File this one under “Darwinian battle for wireless survival.” Verizon and Qualcomm used the CTIA Super Mobility show in Las Vegas today to unveil plans to use Verizon’s ThingSpace IoT platform as a service with Qualcomm’s LTE modems, with greater security for IoT deployments as a major selling point. According to an announcement by the companies, Verizon will pre-integrate its ThingSpace within Qualcomm’s MDM9206 Category M (Cat M1) LTE modem. Verizon’s 4G LTE network will become the intended backbone for “building, deploying and managing IoT applications customized for a wide-range of use cases,” according to the statement. 4G networks have widely been perceived as too expensive and overpowered for many IoT deployments, such as low power sensors and single-function or intermittently connected endpoints. The new arrangement is intended to grab some of that low power business back from competing short-range technologies like Wi-Fi, Bluetooth, Zwave and Zigbee, or from low power […]

Privacy Forum Pushes Guidance for Wearables, Health Apps

In-brief: new guidance from the Future of Privacy Forum urges connected health device makers to address security and privacy issues to prevent sensitive data from falling into the wrong hands.