The presentation discusses the creation of a certification and testing regime for IoT connected mobile apps and VPNs using the 20 years of history and documentation of OWASP.
- Mobile apps dominate usage in the market and have security vulnerabilities.
- The OAuth Mobile Project was created to address mobile app security issues.
- The prevalence of insecure data storage and network connections in mobile apps is similar to cross-site scripting in web apps.
- The IOXT organization created a standard for certifying the security of IoT devices and expanded to include mobile connected apps.
- The 20 years of history and documentation of OWASP were used to create a certification and testing regime for IoT connected mobile apps and VPNs.
- The speaker's company is a financial sponsor of the OAuth Mobile Project and participates in creating tools and standards for mobile app security.