首页> 外文会议>European Symposium on Research in Computer Security >Secure Code Updates for Mesh Networked Commodity Low-End Embedded Devices
【24h】

Secure Code Updates for Mesh Networked Commodity Low-End Embedded Devices

机译:CESH网络商品低端嵌入式设备的安全代码更新

获取原文

摘要

Mesh networked low-end embedded devices are increasingly used in various scenarios, including industrial control, wireless sensing, robot swarm communication, or building automation. Recently, more and more software vulnerabilities in embedded systems are disclosed, as they become appealing targets for cyber attacks. In order to patch these systems, an efficient and secure code update mechanism is required. However, existing solutions are unable to provide verifiable code updates for networked commodity low-end embedded devices. This work presents a novel code update scheme which verifies and enforces the correct installation of code updates on all devices in the network. After update distribution and installation, devices mutually attest and verify each others' software state. Devices being in an untrustworthy state are excluded from the network. In this way, the scheme enforces software integrity as well as software up-to-dateness on all devices in the network. Issuing a secure code update, the network operator is able to learn the identity of all trustworthy and all untrustworthy devices. We demonstrate that the proposed scheme is applicable to a wide range of existing commodity low-end embedded systems. Furthermore, we show that the scheme is practically usable in networks with tens of thousands of devices.
机译:网格网络的低端嵌入式设备越来越多地用于各种场景,包括工业控制,无线传感,机器人群通信或建筑自动化。最近,揭示了嵌入式系统中的越来越多的软件漏洞,因为它们成为网络攻击的吸引人目标。为了修补这些系统,需要一种有效和安全的代码更新机制。但是,现有解决方案无法为网络商品低端嵌入式设备提供可验证的代码更新。这项工作介绍了一种新的代码更新方案,它验证并强制执行网络中所有设备上的代码更新的正确安装。在更新分发和安装后,设备相互证明并验证彼此的软件状态。从网络中排除处于不可信任状态的设备。通过这种方式,该方案强制执行软件完整性以及网络中所有设备上的软件上限。发出安全代码更新,网络运营商能够了解所有值得信赖性和所有不值得信赖的设备的身份。我们证明,该方案适用于各种现有的商品低端嵌入式系统。此外,我们表明该方案实际上可以在具有数万个设备的网络中使用。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号