TrustZone Enhanced Plausibly Deniable Encryption System for Mobile Devices
TrustZone Enhanced Plausibly Deniable Encryption System for Mobile Devices
复制标题
DOI:
10.1145/3453142.3493512
复制
发表时间:
2021-12
期刊:
影响因子:
--
通讯作者:
Jinghui Liao;Bo Chen;Weisong Shi
中科院分区:
文献类型:
--
作者:
Jinghui Liao;Bo Chen;Weisong Shi
Modern mobile devices are increasingly used to store and process sensitive data. In order to prevent the sensitive data from being leaked, one of the best ways of protecting them and their owner is to hide the data with plausible deniability. Plausibly Deniable Encryption (PDE) has been designed for such purpose. The existing PDE systems for mobile devices however, have suffered from significant drawbacks as they either ignore the deniability compromises present in the special underlying storage media of mobile devices or are vulnerable to various new attacks such as side-channel attacks. In this work, we propose a new PDE system design for mobile devices which takes advantage of the hardware features equipped in the mainstream mobile devices. Our preliminary design has two major component: First, we strictly isolate the hidden and the public data in the flash layer, so that a multi-snapshot adversary is not able to identify the existence of the hidden sensitive data when having access to the low layer storage medium of the device. Second, we incorporate software and operating system level deniability into ARM TrustZone. With this TrustZone-enhanced isolation, our PDE system is immune to side-channel attacks at the operating system layer.