Users provision accounts by registering an email address ... Authenticated users can update their profiles, share their .... update the firmware on the wearables.
WearFit: Security Design Analysis of a Wearable Fitness Tracker

WearFit: Security Design Analysis of a Wearable Fitness Tracker Jacob West

Chief Architect, Security Products, NetSuite

Tadayoshi Kohno

Short-Dooley Professor, Computer Science & Engineering, University of Washington

David Lindsay

Security Researcher, Synopsis

Joe Sechman

Director, Applied Security Research, Hewlett Packard Enterprise


n 2014, the IEEE Computer Society—the leading association for computing professionals— launched a cybersecurity initiative by forming the Center for Secure Design. The mission of the Center is to expand the focus in security from merely finding bugs to identifying and avoiding common design flaws, with the hope that software architects can learn from others’ mistakes.

Soon after it was founded, the Center brought together experts from industry, government, and academia at a workshop where participants discussed the types of flaws they either identified in their own internal design reviews, or that were available from external data. The group arrived at a list of what they felt were the top security design flaws, consolidated guidance on 3

how to avoid them, and published the result as Avoiding the Top 10 Security Flaws (see http:// goo.gl/2Gujs6). In this document, we build on the Center’s previous work by describing a fictitious wearable fitness tracking system known as WearFit and discussing how the system’s design addresses each of the top 10 software security design flaws:

because wearable devices are driving significant changes in how society uses technology, with almost half the population predicted to adopt fitness-tracking devices by 2019 (see http://goo. gl/eS0IeM). We base our analysis as much on real-world systems as possible, and aim to provide a broad analysis of threats facing users of wearable fitness-tracking devices. The “System Overview” section describes the technical design of the WearFit product and outlines the fundamental categories of threats that the system takes into consideration. The “An