DOE OSTI · 3363272
Braxton Marlatt Intern Poster
Abstract
The Internet of Things (IoT) encompasses a vast network of interconnected devices embedded with software, sensors, and network connectivity, enabling data collection and exchange. While IoT technology revolutionizes various industries, it also introduces significant security challenges. This research focuses on enhancing IoT security through the implementation of Zero Trust Architecture concepts, specifically targeting the Network and Device pillars of the Cybersecurity and Infrastructure Security Agency’s Zero Trust Maturity Model. By generating Codified Attack Surfaces (CAS) using custom Structured Threat Information eXpression bundles, this project aims to provide enhanced visibility into network communications, detect vulnerabilities in device firmware, and improve the overall security posture for IoT devices and networks. The methodology involves defining custom STIX schema and objects, collecting data from intra-IoT traffic, external network traffic, and firmware analysis, and automating the conversion and correlation of this data into STIX bundles. The automated generation of attack surfaces offers comprehensive insights into activity, vulnerabilities, and anomalies within an IoT environment, enabling proactive threat identification and mitigation.
Explore related subjects
Keep this discovery
Explore connections, maps & timelines
Marlatt, Braxton Mark [Idaho National Laboratory] (ORCID:000000016153547X), Foster, Rita A [Idaho National Laboratory]. 2025-08-18. Braxton Marlatt Intern Poster. https://www.osti.gov/biblio/3363272
Cite the original work for its findings. Save a collection to share your selection of sources.