SIMPLE: A Remote Attestation Approach for Resource-constrained IoT devices


연구 분야: Verification



학회: 2020 ACM/IEEE 11th International Conference on Cyber-Physical Systems (ICCPS)


초록

Remote Attestation (RA) is a security service that detects malware presence on remote IoT devices by verifying their software integrity by a trusted party (verifier). There are three main types of RA: software (SW)-, hardware (HW)-, and hybrid (SW/HW)-based. Hybrid techniques obtain secure RA with minimal hardware requirements imposed on the architectures of existing microcontrollers units (MCUs). In recent years, considerable attention has been devoted to hybrid techniques since prior software-based ones lack concrete security guarantees in a remote setting, while hardware-based approaches are too costly for low-end MCUs. However, one key problem is that many already deployed IoT devices neither satisfy minimal hardware requirements nor support hardware modifications, needed for hybrid RA. This paper bridges the gap between software-based and hybrid RA by proposing a novel RA scheme based on software virtualization. In particular, it proposes a new scheme, called SIMPLE, which meets the minimal hardware requirements needed for secure RA via reliable software. SIMPLE depends on a formally-verified software-based memory isolation technique, called Security MicroVisor (Sμ V). Its reliability is achieved by extending the formally-verified safety and correctness properties to cover the entire software architecture of SIMPLE. Furthermore, SIMPLE is used to construct SIMPLE+, an efficient swarm attestation scheme for static and dynamic heterogeneous IoT networks. We implement and evaluate SIMPLE and SIMPLE+ on Atmel AVR architecture, a common MCU platform.


Author Profile
Mahmoud Ammar

imec-DistriNet KU Leuven

정보 없음
Author Profile
Bruno Crispo

University of Trento Italy

Italy
Author Profile
Gene Tsudik

University of California Irvine

정보 없음

📄 논문 정보

발행 연도 2020년
인용수 37
출판 국가 Italy
사이트 IEEE
좋아요 수 0

연관 논문 목록 (414건)