Research Article | Open Access | Download PDF
Volume 74 | Issue 9 | Year 2026 | Article Id. IJETT-V74I9P101 | DOI : https://doi.org/10.14445/22315381/IJETT-V74I9P101IoT Security Issues and Challenges: A Systematic Literature Review
Hassan Saad Al-Qahtani
| Received | Revised | Accepted | Published |
|---|---|---|---|
| 03 Nov 2025 | 17 Aug 2026 | 21 Aug 2026 | 30 Sep 2026 |
Citation :
Hassan Saad Al-Qahtani, "IoT Security Issues and Challenges: A Systematic Literature Review," International Journal of Engineering Trends and Technology (IJETT), vol. 74, no. 9, pp. 1-13, 2026. Crossref, https://doi.org/10.14445/22315381/IJETT-V74I9P101
Abstract
The rapid and continuous growth, popularity, and diversity of IoT applications are aligned with the increment in cyber-attacks that are targeting IoT applications. In order to establish the process of approach development that aims to solve, prevent, or avoid those kinds of issues, we have to have an overview of the identified security issues and challenges. For that, this study presents a systematic literature review of the IoT security issues and challenges, which will help categorize these issues and illustrate the implications as well. The investigated studies have been evaluated across nine criteria, and have been limited to five years only, which guarantees the quality of the studied works. The majority of the highlighted issues are associated with the nodes (Things), and this is caused by several reasons: for instance, the geographical distribution, lack of physical barriers, and resource limitations.
Keywords
Internet of Things, Cybersecurity, Security issues, Security challenges.
References
[1] Apostolos Gerodimos et al., “IoT: Communication Protocols
and Security Threats,” Internet of Things and Cyber-Physical Systems,
vol. 3, pp. 1-13, 2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[2] Gartner, Forecast: IoT Market Opportunity by Technology
Segment, 2022-2028, Gartner, 2024. [Online]. Available: https://www.gartner.com/en/documents/5499495
[3] Market Research, Markets and
Markets, 2026. [Online]. Available: https://www.marketresearch.com/MarketsandMarkets-v3719/
[4] Barbara Kitchenham, “Procedures for Performing Systematic
Reviews,” Keele University, Keele, vol. 33, pp. 1-26, 2004.
[Google Scholar]
[5] Barbara Kitchenham, and Pearl Brereton, “A Systematic
Review of Systematic Review Process Research in Software Engineering,” Information
and Software Technology, vol. 55, no. 12, pp. 2049-2075, 2013.
[CrossRef] [Google Scholar]
[Publisher Link]
[6] David Hanes et al., IoT Fundamentals: Networking
Technologies, Protocols, and use Cases for the Internet of Things, Cisco
Press, 2017.
[Google Scholar]
[Publisher Link]
[7] Neera Batra, and Sonali Goyal, IoT Fundamentals with a
Practical Approach, 1st ed., CRC Press, 2024.
[CrossRef] [Google Scholar]
[Publisher Link]
[8] Miao Wu et al., “Research on the Architecture of Internet
of Things,” 2010 3rd International Conference on Advanced
Computer Theory and Engineering (ICACTE), Chengdu, pp. V5-484-V5-487, 2010.
[CrossRef] [Google Scholar]
[Publisher Link]
[9] Rafiullah Khan et al., “Future Internet: The Internet of Things Architecture, Possible Applications and Key Challenges,” 2012 10th International Conference on Frontiers of Information Technology, Islamabad, Pakistan, pp. 257-260, 2012.
[CrossRef] [Google Scholar]
[Publisher Link]
[10] Madhusanka Liyanage et al., IoT Security: Advances in
Authentication, John Wiley and Sons, 2019.
[Google Scholar]
[Publisher Link]
[11] Farshad Firouzi, Krishnendu Chakrabarty, and Sani Nassif, Intelligent
Internet of Things: From Device to Fog and Cloud, 1st ed.,
Springer Cham, 2020.
[CrossRef] [Google Scholar]
[Publisher Link]
[12] Swastik Kumar Sahu, and Kaushik Mazumdar, “Exploring
Security Threats and Solutions Techniques for Internet of Things (IoT): From
Vulnerabilities to Vigilance,” Frontiers in Artificial Intelligence,
vol. 7, pp. 1-16, 2024.
[CrossRef] [Google Scholar]
[Publisher Link]
[13] Aditya Kumar Pathak et al., “Anomaly Detection using
Machine Learning to Discover Sensor Tampering in IoT Systems,” ICC 2021-IEEE
International Conference on Communications, Montreal, QC, Canada, pp. 1-6,
2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[14] Jayasree Sengupta, Sushmita Ruj, and Sipra Das Bit, “A
Comprehensive Survey on Attacks, Security Issues and Blockchain Solutions for
IoT and IIoT,” Journal of Network and Computer Applications, vol. 149,
pp. 1-20, 2020.
[CrossRef] [Google Scholar]
[Publisher Link]
[15] Tinashe Magara, and Yousheng Zhou, “Internet of Things
(IoT) of Smart Homes: Privacy and Security,” Journal of Electrical and
Computer Engineering, vol. 2024, no. 1, pp. 1-17, 2024.
[CrossRef] [Google Scholar]
[Publisher Link]
[16] Stefan Balogh et al., “IoT Security Challenges: Cloud and
Blockchain, Postquantum Cryptography, and Evolutionary Techniques,” Electronics,
vol. 10, no. 21, pp. 1-22, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[17] Hamed HaddadPajouh et al., “A Survey on Internet of Things
Security: Requirements, Challenges, and Solutions,” Internet of Things,
vol. 14, pp. 1-19, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[18] Nivedita Mishra, and Sharnil Pandya, “Internet of Things
Applications, Security Challenges, Attacks, Intrusion Detection, and Future
Visions: A Systematic Review,” IEEE Access, vol. 9, pp. 59353-59377,
2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[19] Ashwin Karale, “The Challenges of IoT Addressing Security,
Ethics, Privacy, and Laws,” Internet of Things, vol. 15, pp. 1-20, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[20] Saurabh Singh et al., “Advanced Lightweight Encryption
Algorithms for IoT Devices: Survey, Challenges and Solutions,” Journal of
Ambient Intelligence and Humanized Computing, vol. 15, no. 2, pp.
1625-1642, 2017.
[CrossRef] [Google Scholar]
[Publisher Link]
[21] Umeshwer Singh, Manu Sood, and Robin Singh Bhadoria,
“Underpinning of Resource-Constrained IoT Networks: Analysis and
Countermeasures for Attacks and Vulnerabilities,” 2025 IEEE 14th
International Conference on Communication Systems and Network Technologies
(CSNT), Bhopal, India, pp. 467-473, 2025.
[CrossRef] [Google Scholar]
[Publisher Link]
[22] Phillip Williams et al., “A Survey on Security in Internet
of Things with a Focus on the Impact of Emerging Technologies,” Internet of
Things, vol. 19, pp. 1-24, 2020.
[CrossRef] [Google Scholar]
[Publisher Link]
[23] Barjinder Kaur et al., “Internet of Things (IoT) Security
Dataset Evolution: Challenges and Future Directions,” Internet of Things,
vol. 22, pp. 1-23, 2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[24] Payal Sharma, and B.R. Purushothama, “Securing Polynomial
based Group Key Management Scheme against Strong Active Adversary Model,” International
Journal of Information Technology, vol. 14, no. 5, pp. 2329-2334, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[25] Iqbal H. Sarker et al., “Internet of Things (IoT) Security
Intelligence: A Comprehensive Overview, Machine Learning Solutions and Research
Directions,” Mobile Networks and Applications, vol. 28, no. 1, pp.
296-312, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[26] Muhammad Nasir Mumtaz Bhutta et al., “A Survey on
Blockchain Technology: Evolution, Architecture and Security,” IEEE Access,
vol. 9, pp. 61048-61073, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[27] Dorsaf Swessi, and Hanen Idoudi, “A Survey on
Internet-of-Things Security: Threats and Emerging Countermeasures,” Wireless
Personal Communications, vol. 124, no. 2, pp. 1557-1592, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[28] Shidrokh Goudarzi et al., “An IoT-based Prediction
Technique for Efficient Energy Consumption in Buildings,” IEEE Transactions
on Green Communications and Networking, vol. 5, no. 4, pp. 2076-2088, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[29] Nathalie Tan Yhe Huan, and Zuriati Ahmad Zukarnain, “A
Survey on Addressing IoT Security Issues by Embedding Blockchain Technology
Solutions: Review, Attacks, Current Trends, and Applications,” IEEE Access,
vol. 12, pp. 69765-69782, 2024.
[CrossRef] [Google Scholar]
[Publisher Link]
[30] Yasmine Harbi et al., “Recent Security Trends in Internet
of Things: A Comprehensive Survey,” IEEE Access, vol. 9, pp.
113292-113314, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[31]Yahya Al-Hadhrami, and Farookh Khadeer Hussain, “DDoS
Attacks in IoT Networks: A Comprehensive Systematic Literature Review,” World
Wide Web, vol. 24, no. 3, pp. 971-1001, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[32] Sonam Lata, Shabana Mehfuz, and Shabana Urooj, “Secure and
Reliable WSN for Internet of Things: Challenges and Enabling Technologies,” IEEE
Access, vol. 9, pp. 161103-161128, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[33] Abbas Shah Syed et al., “IoT in Smart Cities: A Survey of
Technologies, Practices and Challenges,” Smart Cities, vol. 4,
no. 2, pp. 429-475, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[34] Wei Hu et al., “An Overview of Hardware Security and
Trust: Threats, Countermeasures, and Design Tools,” IEEE Transactions on
Computer-Aided Design of Integrated Circuits and Systems, vol. 40, no. 6,
pp. 1010-1038, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[35] Bhabendu Kumar Mohanta et al., “Survey on IoT Security:
Challenges and Solution using Machine Learning, Artificial Intelligence and
Blockchain Technology,” Internet of Things, vol. 11, pp. 1-17, 2020.
[CrossRef] [Google Scholar]
[Publisher Link]
[36] Sri Harsha Mekala et al., “Cybersecurity for Industrial
IoT (IIoT): Threats, Countermeasures, Challenges and Future Directions,” Computer
Communications, vol. 208, pp. 294-320, 2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[37] Nivedita Singh, Rajkumar Buyya, and Hyoungshick Kim,
“Securing Cloud-based Internet of Things: Challenges and Mitigations,” Sensors, vol. 25, no. 1, pp. 1-45, 2025.
[CrossRef] [Google Scholar]
[Publisher Link]
[38] Hannelore Sebestyen, Daniela Elena Popescu, and Rodica
Doina Zmaranda, “A Literature Review on Security in the Internet of Things:
Identifying and Analysing Critical Categories,” Computers, vol. 14, no.
2, pp. 1-45, 2025.
[CrossRef] [Google Scholar]
[Publisher Link]
[39] Ahmed Fawzi Otoom, Wafa’ Eleisah, and Emad E. Abdallah,
“Deep Learning for Accurate Detection of Brute Force Attacks on IoT Networks,” Procedia
Computer Science, vol. 220, pp. 291-298, 2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[40] H.M.K.K.M.B. Herath, and Mamta Mittal, “Adoption of
Artificial Intelligence in Smart Cities: A Comprehensive Review,” International
Journal of Information Management Data Insights, vol. 2, no. 1, pp. 1-21,
2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[41] Leonardo Babun et al., “A Survey on IoT Platforms:
Communication, Security, and Privacy Perspectives,” Computer Networks,
vol. 192, pp. 1-26, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[42] N. Sivasankari, and S. Kamalakkannan, “Detection and
Prevention of Man-in-the-Middle Attack in IoT Network using Regression
Modeling,” Advances in Engineering Software, vol. 169, pp. 1-7, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[43] Badis Hammi et al., “Survey on Smart Homes:
Vulnerabilities, Risks, and Countermeasures,” Computers and Security,
vol. 117, pp. 1-25, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[44] Naba M. Allifah, and Imran A. Zualkernan, “Ranking
Security of IoT-based Smart Home Consumer Devices,” IEEE Access, vol.
10, pp. 18352-18369, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[45] Muhammad Aqeel et al., “A Review of Security and Privacy
Concerns in the Internet of Things (IoT),” Journal of Sensors, vol.
2022, no. 1, pp. 1-20, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[46] Ankur O. Bang et al., “Assessment of Routing Attacks and
Mitigation Techniques with RPL Control Messages: A Survey,” ACM Computing
Surveys, vol. 55, no. 2, pp. 1-36, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[47] S.V.N. Santhosh Kumar, M. Selvi, and A. Kannan, “A
Comprehensive Survey on Machine Learning-based Intrusion Detection Systems for
Secure Communication in Internet of Things,” Computational Intelligence and
Neuroscience, vol. 2023, no. 1, pp. 1-24, 2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[48] Safwan Mawlood Hussein, Juan Antonio López Ramos, and
Abubakar Muhammad Ashir, “A Secure and Efficient Method to Protect
Communications and Energy Consumption in IoT Wireless Sensor Networks,” Electronics,
vol. 11, no. 17, pp. 1-21, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[49] Hafiz Abid Mahmood Malik et al., “Resolving Security
Issues in the IoT using Blockchain,” Electronics, vol. 11, no. 23, pp.
1-14, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[50] Muhammad Zulkifl Hasan, and Zurina Mohd Hanapi, “Efficient
and Secured Mechanisms for Data Link in IoT WSNs: A Literature Review,” Electronics,
vol. 12, no. 2, pp. 1-23, 2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[51] Zhibo Wang et al., “A Survey on IoT-Enabled Home
Automation Systems: Attacks and Defenses,” IEEE Communications Surveys and
Tutorials, vol. 24, no. 4, pp. 2292-2328, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[52] Wenbing Liang, and Nan Ji, “Privacy Challenges of
IoT-based Blockchain: A Systematic Review,” Cluster Computing, vol. 25,
no. 3, pp. 2203-2221, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[53] Peng Cheng, and Utz Roedig, “Personal Voice Assistant
Security and Privacy - A Survey,” Proceedings of the IEEE, vol. 110, no.
4, pp. 476-507, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[54] Chen Yan et al., “A Survey on Voice Assistant Security:
Attacks and Countermeasures,” ACM Computing Surveys, vol. 55, no. 4, pp.
1-36, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[55] Abid Khan et al., “Authorization Schemes for Internet of
Things: Requirements, Weaknesses, Future Challenges and Trends,” Complex and
Intelligent Systems, vol. 8, no. 5, pp. 3919-3941, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[56] Mays Alshaikhli et al., “Evolution of Internet of Things
from Blockchain to IOTA: A Survey,” IEEE Access, vol. 10, pp. 844-866,
2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[57] Aleksandr Ometov et al., “A Survey of Security in Cloud,
Edge, and Fog Computing,” Sensors, vol. 22, no. 3, pp. 1-27, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[58] Yunusa Simpa Abdulsalam, and Mustapha Hedabou, “Security
and Privacy in Cloud Computing: Technical Review,” Future Internet, vol.
14, no. 1, pp. 1-27, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[59] Yuba Raj Siwakoti et al., “Advances in IoT Security:
Vulnerabilities, Enabled Criminal Services, Attacks, and Countermeasures,” IEEE
Internet of Things Journal, vol. 10, no. 13, pp. 11224-11239, 2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[60] Abiodun Esther Omolara et al., “The Internet of Things
Security: A Survey Encompassing Unexplored Areas and New Insights,” Computers
and Security, vol. 112, pp. 1-31, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[61] Fursan Thabit et al., “Cryptography Algorithms for
Enhancing IoT Security,” Internet of Things, vol. 22, pp. 1-29, 2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[62] Yousef-Awwad Daraghmi et al., “Edge-Fog-Cloud Computing
Hierarchy for Improving Performance and Security of NB-IoT-based Health
Monitoring Systems,” Sensors, vol. 22, no. 22, pp. 1-17, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[63] Waqas Ahmad et al., “Cyber Security in IoT-based Cloud
Computing: A Comprehensive Survey,” Electronics, vol. 11, no. 1, pp.
1-34, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[64] Nadeen Ahmed et al., “Detecting Replay Attack on
Voice-Controlled Systems using Small Neural Networks,” 2022 IEEE 7th
Forum on Research and Technologies for Society and Industry Innovation,
Paris, France, pp. 50-54, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[65] George Vardakis et al., “Review of Smart-Home Security
using the Internet of Things,” Electronics, vol. 13, no. 16, pp. 1-35,
2024.
[CrossRef] [Google Scholar]
[Publisher Link]
[66] Yanyan Li, Sara Kim, and Eric Sy, “A Survey on Amazon
Alexa Attack Surfaces,” 2021 IEEE 18th Annual Consumer
Communications and Networking Conference, Las Vegas, NV, USA, pp. 1-7,
2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[67] Omer Ali et al., “A Comprehensive Review of Internet of
Things: Technology Stack, Middlewares, and Fog/Edge Computing Interface,” Sensors,
vol. 22, no. 3, pp. 1-43, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[68] Razan Alajlan, Norah Alhumam, and Mounir Frikha,
“Cybersecurity for Blockchain-based IoT Systems: A Review,” Applied Sciences,
vol. 13, no. 13, pp. 1-26, 2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[69] Xiaoqi Li et al., “A Survey on the Security of Blockchain
Systems,” Future Generation Computer Systems, vol. 107, pp. 841-853,
2020.
[CrossRef] [Google Scholar]
[Publisher Link]
[70] Nazish Khalid et al., “Privacy-Preserving Artificial
Intelligence in Healthcare: Techniques and Applications,” Computers in
Biology and Medicine, vol. 158, pp. 1-21, 2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[71] Taher M. Ghazal et al., “IoT for Smart Cities: Machine
Learning Approaches in Smart Healthcare-A Review,” Future Internet, vol.
13, no. 8, pp. 1-18, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[72] Abdul Rehman Javed et al., “A Survey of Explainable
Artificial Intelligence for Smart Cities,” Electronics, vol. 12, no. 4,
pp. 1-40, 2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[73] Moez Krichen et al., “Blockchain for Modern Applications:
A Survey,” Sensors, vol. 22, no. 14, pp. 1-27, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]
[74] Md Rafiqul Islam et al., “A Review on Blockchain Security
Issues and Challenges,” 2021 IEEE 12th Control and System
Graduate Research Colloquium, Shah Alam, Malaysia, pp. 227-232, 2021.
[CrossRef] [Google Scholar]
[Publisher Link]
[75] Sidhant Narula et al., “Exploring Research and Tools in AI
Security: A Systematic Mapping Study,” IEEE Access, vol. 13, pp.
84057-84080, 2025.
[CrossRef] [Google Scholar]
[Publisher Link]
[76] Erik Derner et al., “A Security Risk Taxonomy for
Prompt-based Interaction with Large Language Models,” IEEE Access, vol.
12, pp. 126176-126187, 2024.
[CrossRef] [Google Scholar]
[Publisher Link]
[77] Umar Iqbal, Tadayoshi Kohno, and Franziska Roesner, “LLM
Platform Security: Applying a Systematic Evaluation Framework to OpenAI’s
ChatGPT Plugins,” Proceedings of the AAAI/ACM Conference on AI, Ethics, and
Society, vol. 7, no. 1, pp. 611-623, 2024.
[CrossRef] [Google Scholar]
[Publisher Link]
[78] Haoran Li et al., “Privacy in Large Language Models:
Attacks, Defenses and Future Directions,” arXiv preprint, pp. 1-42,
2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[79] Mohammad Tahaei et al., “A Systematic Literature Review of
Human-Centered, Ethical, and Responsible AI,” arXiv preprint, pp. 1-39,
2023.
[CrossRef] [Google Scholar]
[Publisher Link]
[80] Heiko Kreutz, and Hamid Jahankhani, Impact of Artificial
Intelligence on Enterprise Information Security Management in the Context of
ISO 27001 and 27002: A Tertiary Systematic Review and Comparative Analysis,
Cybersecurity and Artificial Intelligence, Springer,
pp. 1-34, 2024.
[CrossRef] [Google Scholar]
[Publisher Link]
[81] Anna Sidorova, and Kashif Saeed, “Incorporating
Stakeholder enfranchisement, Risks, Gains, and AI decisions in AI Governance
Framework,” Proceedings of the 55th Hawaii International
Conference on System Sciences, pp. 5943-5952, 2022.
[CrossRef] [Google Scholar]
[Publisher Link]