IDEAS home Printed from https://ideas.repec.org/a/jbh/ijsrcs/v10y2024i2id1498.html

The API Integrity and Access Control Framework (AIACF): A Zero-Trust Security Model for U.S.-Connected Consumer Platforms

Author

Listed:
  • Lamin Saidy
  • Abraham Ayodeji Abayomi
  • Abel Chukwuemeke Uzoka
  • Bolaji Iyanu Adekunle

Abstract

The rapid proliferation of consumer Internet of Things (IoT) devices has exponentially increased the attack surface for cyber adversaries, with Application Programming Interfaces (APIs) serving as critical yet vulnerable integration points within smart ecosystems. This paper introduces the API Integrity and Access Control Framework (AIACF), a comprehensive zero-trust security model designed to fortify API governance for U.S.-connected consumer platforms. AIACF integrates multi-layer authentication, real-time anomaly detection, and role-based access controls to establish continuous, context-aware validation and dynamic threat mitigation. Grounded in zero-trust principles and aligned with national cybersecurity priorities articulated by the National Security Agency (NSA) and Department of Homeland Security (DHS), the framework addresses critical vulnerabilities contributing to API abuse and data breaches. We detail AIACF’s modular architecture, practical deployment strategies, and evaluation metrics, supported by a case study demonstrating its efficacy in reducing unauthorized access and mitigating API-based attacks. The framework’s adaptability and scalability position it as a strategic tool for enhancing the security posture of consumer IoT environments, advancing national efforts to safeguard critical technological infrastructure. Future research directions emphasize the incorporation of advanced machine learning for anomaly detection, scalability optimization, and broader applicability across diverse IoT domains.

Suggested Citation

  • Lamin Saidy & Abraham Ayodeji Abayomi & Abel Chukwuemeke Uzoka & Bolaji Iyanu Adekunle, 2024. "The API Integrity and Access Control Framework (AIACF): A Zero-Trust Security Model for U.S.-Connected Consumer Platforms," International Journal of Scientific Research in Computer Science, Engineering and Information Technology, International Journal of Scientific Research in Computer Science, Engineering and Information Technology, vol. 10(2), pages 897-904, April.
  • Handle: RePEc:jbh:ijsrcs:v10:y2024:i2:id:1498
    DOI: 10.32628/CSEIT24102140
    Note: Article URL: https://ijsrcseit.com/home/article/view/CSEIT24102140
    as

    Download full text from publisher

    File URL: https://ijsrcseit.com/home/article/view/CSEIT24102140
    File Function: Article URL
    Download Restriction: no

    File URL: https://ijsrcseit.com/home/article/download/CSEIT24102140/CSEIT24102140
    File Function: Full text
    Download Restriction: no

    File URL: https://libkey.io/10.32628/CSEIT24102140?utm_source=ideas
    LibKey link: if access is restricted and if your library uses this service, LibKey will redirect you to where you can use your library subscription to access this item
    ---><---

    More about this item

    Keywords

    ;
    ;
    ;
    ;
    ;
    ;

    Statistics

    Access and download statistics

    Corrections

    All material on this site has been provided by the respective publishers and authors. You can help correct errors and omissions. When requesting a correction, please mention this item's handle: RePEc:jbh:ijsrcs:v10:y2024:i2:id:1498. See general information about how to correct material in RePEc.

    If you have authored this item and are not yet registered with RePEc, we encourage you to do it here. This allows to link your profile to this item. It also allows you to accept potential citations to this item that we are uncertain about.

    We have no bibliographic references for this item. You can help adding them by using this form .

    If you know of missing items citing this one, you can help us creating those links by adding the relevant references in the same way as above, for each refering item. If you are a registered author of this item, you may also want to check the "citations" tab in your RePEc Author Service profile, as there may be some citations waiting for confirmation.

    For technical questions regarding this item, or to correct its authors, title, abstract, bibliographic or download information, contact: Pankaj Sharma (USA) (email available below). General contact details of provider: https://ijsrcseit.com/home .

    Please note that corrections may take a couple of weeks to filter through the various RePEc services.

    IDEAS is a RePEc service. RePEc uses bibliographic data supplied by the respective publishers.