Reconciling remote attestation and safety-critical operation on simple IoT devices
Reconciling remote attestation and safety-critical operation on simple IoT devices
复制标题
协调简单物联网设备上的远程认证和安全关键操作
DOI:
10.1145/3195970.3199853
复制
发表时间:
2018
期刊:
影响因子:
--
通讯作者:
Tsudik, Gene
中科院分区:
文献类型:
--
作者:
Carpent, Xavier;Eldefrawy, Karim;Rattanavipanon, Norrathep;Sadeghi, Ahmad-Reza;Tsudik, Gene
Remote attestation (RA) is a means of malware detection, typically realized as an interaction between a trusted verifier and a potentially compromised remote device (prover). RA is especially relevant for low-end embedded devices that are incapable of protecting themselves against malware infection. Most current RA techniques require on-demand and uninterruptible (atomic) operation. The former fails to detect transient malware that enters and leaves between successive RA instances; the latter involves performing potentially time-consuming computation over prover's memory and/or storage, which can be harmful to the device's safety-critical functionality and general availability. However, relaxing either on-demand or atomic RA operation is tricky and prone to vulnerabilities. This paper identifies some issues that arise in reconciling requirements of safety-critical operation with those of secure remote attestation, including detection of transient and self-relocating malware. It also investigates mitigation techniques, including periodic self-measurements as well as interruptible attestation modality that involves shuffled memory traversals and various memory locking mechanisms.