Projekt per år
Sammanfattning
Internet of Things (IoT) firmware upgrade has turned out to be a challenging task with respect to security. While Over-The-Air (OTA) software upgrade possibility is an essential feature to achieve security, it is also most sensitive to attacks and lots of different firmware upgrade attacks have been presented in the literature. Several security solutions exist to tackle these problems. We observe though that most prior art solutions are public key-based, they are not flexible with respect to firmware image distribution principles and it is challenging to make a design with good Denial-Of-Service (DoS) attacks resistance. Apart from often being rather resource demanding, a limitation with current public key-based solutions is that they are not quantum computer resistant. Hence, in this paper, we take a new look into the firmware upgrade problem and propose RoSym, a secure, firmware distribution principle agnostic, and DoS protected upgrade mechanism purely based on symmetric cryptography. We present an experimental evaluation on a real testbed environment for the scheme. The results show that the scheme is efficient in comparison to other state of the art solutions. We also make a formal security verification of RoSym showing that it is robust against different attacks.
Originalspråk | engelska |
---|---|
Titel på värdpublikation | Proceedings of the 4th Workshop on CPS and IoT Security and Privacy |
Undertitel på värdpublikation | CPSIoTSec 2022 |
Förlag | Association for Computing Machinery (ACM) |
Sidor | 35-46 |
ISBN (tryckt) | 978-1-4503-9876-3 |
DOI | |
Status | Published - 2022 nov. 7 |
Evenemang | 4th Workshop on CPS and IoT Security and Privacy, CPSIoTSec 2022 - Los Angeles, USA Varaktighet: 2022 nov. 7 → 2022 nov. 11 |
Workshop
Workshop | 4th Workshop on CPS and IoT Security and Privacy, CPSIoTSec 2022 |
---|---|
Land/Territorium | USA |
Ort | Los Angeles |
Period | 2022/11/07 → 2022/11/11 |
Ämnesklassifikation (UKÄ)
- Datavetenskap (datalogi)
- Datorsystem
Fingeravtryck
Utforska forskningsämnen för ”RoSym: Robust Symmetric Key Based IoT Software Upgrade Over-the-Air”. Tillsammans bildar de ett unikt fingeravtryck.Projekt
- 1 Avslutade
-
Sec4Factory: Cybersäkerhet för nästa generations fabrik (SEC4FACTORY)
Gehrmann, C. (PI), Kihl, M. (CoPI), Hell, M. (CoI), Fitzgerald, E. (Forskare), Toorani, M. (Forskare), Fitzgerald, E. (Forskare), Tärneberg, W. (Forskare) & Akbarian, F. (Forskare)
Stiftelsen för Strategisk Forskning, SSF
2018/04/01 → 2024/12/31
Projekt: Forskning