(SEM V) THEORY EXAMINATION 2023-24 PRIVACY AND SECURITY IN IOT

B.Tech Engineering 0 downloads
₹29.00

Course: B.Tech (All Branches – Open Elective)

Semester: V                                                         Subject Code: KOT054

Subject Title: Privacy and Security in IoT           Maximum Marks: 100

Duration: 3 Hours


Exam Pattern:

Section A: Short conceptual questions — 20 marks

Section B: Descriptive questions — 30 marks

Section C: Analytical / Application-based questions — 50 marks


SECTION A – Short Answer Questions (10 × 2 = 20 Marks)

All ten questions are compulsory and focus on basic definitions and core security concepts.


Define Authentication and Authorization.

Authentication: Confirms user/device identity (e.g., password, token, biometric).

Authorization: Determines access level or permissions granted after authentication.


Functions of Secret Key Cryptography:

Uses a single key for encryption and decryption.

Ensures data confidentiality, integrity, and authenticity in communication.


Size of Hash Value:

Typically 128–512 bits (MD5 → 128 bits, SHA-256 → 256 bits).


Random Number Generators:

Most are pseudo-random, generated using algorithms and seeds, not truly random.


Publish–Subscribe Model in IoT:

Enables asynchronous communication between devices via brokers (e.g., MQTT).

Preferred for scalability and low network load.


Technology Used in Access Control:

Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and biometric systems.


Concerns of Data Dissemination:

Unauthorized sharing, data leakage, lack of user consent, and privacy breaches.


Common Privacy Risk During Personal Data Collection:

Unauthorized data profiling and identity theft.


Cloud vs Traditional Data Centers:

Cloud offers on-demand scalability, virtualization, and pay-as-you-go flexibility.

Traditional centers are static and hardware-bound.


Security Benefits of Cloud Computing:

Centralized control, redundancy, automated backups, encryption, and continuous monitoring.


SECTION B – Descriptive Questions (3 × 10 = 30 Marks)

Attempt any three out of five.


(a) IoT Security Architecture and Attacks:

IoT security architecture includes perception, network, and application layers.

Common attacks:                                     Eavesdropping

Man-in-the-middle (MITM)                     Denial of Service (DoS)

Firmware tampering                                Device spoofing


(b) MQTT Protocol in IoT:

Lightweight publish–subscribe protocol for low-bandwidth, high-latency environments.

Ensures reliable message delivery using QoS (Quality of Service) levels 0, 1, and 2.


(c) Strong Authentication Methods for IoT Devices:


Multi-factor authentication (MFA)                         Digital certificates (PKI-based)

Token-based authentication (OAuth, JWT)            Hardware security modules (HSMs)


(d) Unauthorized Access Prevention:

Role-based access, encryption, firewalls, and intrusion detection systems (IDS).

Secure boot and firmware integrity checks.


(e) IoT Platform Monitoring and Control:

Real-time dashboards track device health, firmware updates, and network traffic.

Uses protocols like MQTT, CoAP, and HTTP REST APIs.


SECTION C – Analytical / Application-Based Questions (5 × 10 = 50 Marks)

Attempt one part from each question (Q3–Q7).


Q3. Authentication Token Security

(a) Secure transmission of authentication tokens between client and server uses:

SSL/TLS encryption                                     Token expiration policies

Session-based validation                            Refresh tokens for reauthorization


(b) Design considerations for avoiding improper authorization:

Enforce least-privilege principle                 Validate user roles

Secure APIs with role-based access


Q4. Cryptography and Data Integrity

(a) Cryptographic controls in IoT messaging:        End-to-end encryption

Secure hashing (SHA, HMAC)                                 TLS over MQTT/CoAP

Digital signatures for non-repudiation


(b) IoT Node Authentication:

Devices verify authenticity via certificates, TPM (Trusted Platform Module), or blockchain.

Ensures data integrity through hash verification.


Q5. Access Management & Security Testing

(a) Access Management Solutions for IoT:     Centralized IAM systems, OAuth 2.0, X.509 certificates.

Employ Zero Trust Architecture.


(b) IoT Device Attacks and Testing Activities:

Attacks: DDoS, firmware tampering, buffer overflow, replay, data sniffing.

Testing: Penetration testing, fuzzing, and vulnerability scanning.


Q6. Trust and Privacy

(a) Trust in IoT:                        Based on identity, reliability, and behavior of devices.

Components:                            Trust establishment

Trust evaluation                        Trust management


(b) Lightweight and Robust IoT Privacy Schemes:

Homomorphic encryption, differential privacy, and lightweight key management protocols like ECC (Elliptic Curve Cryptography).


Q7. Data Analytics & Cloud Integration

(a)

Types of IoT Data Analytics:

Descriptive (what happened), Predictive (what will happen), Prescriptive (what should be done).

Cloud Communication:

IoT devices use MQTT/HTTP over secure TLS to send data to cloud platforms like AWS IoT, Azure IoT Hub.

(b) Architectural Considerations in Cloud:

Multi-layered security, redundancy, encryption, isolation, and compliance (GDPR, ISO 27001).


 Key Topics Covered

IoT security architecture & layers                         Authentication, encryption, and access control

MQTT and data confidentiality                            Privacy risks and data protection techniques

Cloud integration and analytics in IoT                 Trust management and lightweight cryptography

File Size
135.92 KB
Uploader
SuGanta International
⭐ Elite Educators Network

Meet Our Exceptional Teachers

Discover passionate educators who inspire, motivate, and transform learning experiences with their expertise and dedication

KISHAN KUMAR DUBEY

KISHAN KUMAR DUBEY

Sant Ravidas Nagar Bhadohi, Uttar Pradesh , Babusarai Market , 221314
5 Years
Years
₹10000+
Monthly
₹201-300
Per Hour

This is Kishan Kumar Dubey. I have done my schooling from CBSE, graduation from CSJMU, post graduati...

Swethavyas bakka

Swethavyas bakka

Hyderabad, Telangana , 500044
10 Years
Years
₹10000+
Monthly
₹501-600
Per Hour

I have 10+ years of experience in teaching maths physics and chemistry for 10th 11th 12th and interm...

Vijaya Lakshmi

Vijaya Lakshmi

Hyderabad, Telangana , New Nallakunta , 500044
30+ Years
Years
₹9001-10000
Monthly
₹501-600
Per Hour

I am an experienced teacher ,worked with many reputed institutions Mount Carmel Convent , Chandrapu...

Shifna sherin F

Shifna sherin F

Gudalur, Tamilnadu , Gudalur , 643212
5 Years
Years
₹6001-7000
Monthly
₹401-500
Per Hour

Hi, I’m Shifna Sherin! I believe that every student has the potential to excel in Math with the righ...

Divyank Gautam

Divyank Gautam

Pune, Maharashtra , Kothrud , 411052
3 Years
Years
Not Specified
Monthly
Not Specified
Per Hour

An IIT graduate having 8 years of experience teaching Maths. Passionate to understand student proble...

Explore Tutors In Your Location

Discover expert tutors in popular areas across India

Zumba Classes Near Sector 131 Greater Noida – Enjoy Dance Fitness and Stay Healthy Noida
No Office Rent Business Setup Near By Uttam Nagar Start & Grow Your Business Without Paying High Office Rent in 2026 Uttam Nagar, Delhi
Spoken English Classes Near By Vasant Vihar Improve Fluency, Build Confidence & Achieve Career Success in 2026 Vasant Vihar, Delhi
Photography Basics Classes Near Sector 82 Gurugram – Learn, Click & Create H Block Sector 82, Gurugram
Yoga Classes Near Saket – Transform Your Mind, Body & Lifestyle Saket, Delhi
Spoken English Classes Near By Moti Nagar Improve Fluency, Build Confidence & Unlock Better Career Opportunities in 2026 Motinagar, Delhi
Tailoring & Stitching Classes Near By Dwarka Mor – Learn Professional Sewing Skills Dwarka Mor, Delhi
Singing & Guitar Classes Near By Tilak Nagar Professional Music Training for Beginners & Advanced Learners Tilak Nagar, Delhi
Tally / Accounting Software Classes Near By Kirti Nagar – Become a Skilled Accounts Professional Kirti Nagar, Delhi
Spoken English Classes Near By CR Park Improve Fluency, Boost Confidence & Unlock Better Opportunities in 2026 Chittaranjan Park, Delhi
French Language Classes Near By Uttam Nagar – Learn French with Confidence Uttam Nagar, Delhi
Piano Classes Near Tilak Nagar – Learn, Play & Master Music with Confidenc Tilak Nagar, Delhi
Public Speaking Training Near Sector 55 Gurugram – Build Confidence, Communication & Leadership Skills Sector 55, Gurugram
Spoken English Classes Near By Tilak Nagar Improve Fluency, Build Confidence & Unlock Career Opportunities in 2026 Tilak Nagar, Delhi
Science Classes Near Sector 88A Gurugram – Build Strong Concepts for a Bright Future Sector 88A, Gurugram
Voice-over Training Near Sushant Lok Phase 1 – Learn Professional Voice Acting Phase I Sushant Lok, Gurugram
History Classes Near Sector 91 Gurugram – Build Strong Understanding of the Past for a Better Future Gurugram
No Office Rent Business Setup Near Kirti Nagar Start & Grow Your Business Without Paying High Office Rent Kirti Nagar, Delhi
Guitar Classes Near Jangpura – Professional Guitar Training in South Delhi Jangpura, Delhi
Baking Classes Near By Dwarka Mor – Learn Professional Baking Skills Dwarka Mor, Delhi
⭐ Premium Institute Network

Discover Elite Educational Institutes

Connect with top-tier educational institutions offering world-class learning experiences, expert faculty, and innovative teaching methodologies

Réussi Academy of languages

sugandha mishra

Réussi Academy of languages
Madhya pradesh, Indore, G...

Details

Coaching Center
Private
Est. 2021-Present

Sugandha Mishra is the Founder Director of Réussi Academy of Languages, a premie...

IGS Institute

Pranav Shivhare

IGS Institute
Uttar Pradesh, Noida, Sec...

Details

Coaching Center
Private
Est. 2011-2020

Institute For Government Services

Krishna home tutor

Krishna Home tutor

Krishna home tutor
New Delhi, New Delhi, 110...

Details

School
Private
Est. 2001-2010

Krishna home tutor provide tutors for all subjects & classes since 2001

Edustunt Tuition Centre

Lakhwinder Singh

Edustunt Tuition Centre
Punjab, Hoshiarpur, 14453...

Details

Coaching Center
Private
Est. 2021-Present
Great success tuition & tutor

Ginni Sahdev

Great success tuition & tutor
Delhi, Delhi, Raja park,...

Details

Coaching Center
Private
Est. 2011-2020