Certified Secure Updates for IoT Devices


연구 분야: Analysis



학회: IFIP International Conference on ICT Systems Security and Privacy Protection


초록

Current firmware update workflows are geared towards ensuring integrity and confidentiality in the face of untrusted servers mediating the communication process. However, they cannot ensure that the update’s content preserves deployment-specific security properties, potentially allowing vulnerabilities or malicious code if third-party components compromise or alter the firmware. There is also no guarantee that the new firmware retains the old one’s security properties, a crucial requirement in safety-critical environments. We propose an enhancement of the SUIT standard which ensures that software updates preserve a formally-specified set of behavioral properties in the affected components. We demonstrate the feasibility of the proposed workflow in some realistic use cases.


Author Profile
Alberto Tacchella

Università degli studi di Trento Trento Italy

Italy
Author Profile
Emanuele Beozzo

Università degli studi di Trento Trento Italy

Italy
Author Profile
Bruno Crispo

Università degli studi di Trento Trento Italy

Italy

📄 논문 정보

발행 연도 2025년
인용수 0
출판 국가 Italy
사이트 Springer
좋아요 수 0

연관 논문 목록 (395건)