Code Decoupling Execution Isolating Based on TF Card Firmware Extension


연구 분야: Analysis



학회: 2021 IEEE Sixth International Conference on Data Science in Cyberspace (DSC)


초록

Currently, most of the research on code protection is focused on a single execution domain. The penetration and cracking means for this single execution environment pose great challenges to the secure execution of the code. For example, fuzzy testing and symbolic execution can effectively discover code vulnerabilities. Page execution attribute protection can be bypassed using the Return-oriented programming (ROP) attack or other ways. This paper proposes an asymmetric heterogeneous execution environment based on TF card firmware extension for the secure code. By modifying the TF card firmware to decouple the security-critical code to the host CPU and a TF card controller, the critical code runs separately in two or more execution environments. It can effectively fight against the penetration for a single execution environment, enhance the anti-analysis, anti-penetration and anti-cracking abilities, and provide reliable protection for the operation of core critical devices, including servers and embedded systems.


Author Profile
Zhiwei Shi

China Information Technology Security Evaluation Center Beijing China

China
Author Profile
Tian Chen

Beijing Institute of Technology Beijing China

China
Author Profile
Yuan Xue

Academy of Military Science Beijing China

China

📄 논문 정보

발행 연도 2021년
인용수 54
출판 국가 China
사이트 IEEE
좋아요 수 0

연관 논문 목록 (449건)