REWIRE - REWiring the ComposItional Security VeRification and AssurancE of Systems of Systems Lifecycle
REWIRE - REWiring the ComposItional Security VeRification and AssurancE of Systems of Systems Lifecycle
批准号:
10043730
负责人:
金额:
$36.26万
依托单位:
依托单位国家:
英国
项目类别:
EU-Funded
财政年份:
2022
资助国家:
英国
项目状态:
未结题
起止时间:
2022 至 --
中文摘要
Rewire设想了一个整体框架,用于对物联网设备的开源和开放规范硬件和软件进行持续安全评估,并根据最近欧盟法规网络安全法案3的要求和指南开发网络安全认证。拟议的可扩展和多功能网络安全平台将通过持续的安全审计、信任计算和定理证明来确保物联网设备的整个生命周期的安全,以定义基于硬件的微体系结构,以针对开放硬件/软件漏洞进行增强保护。经审计的软件和硬件组件的认证程序将提出新的软件安全指标,并利用区块链和智能合同在利益相关者之间建立信任层。Rewire将通过吸收安全审计结果来估计保费成本,将传统的网络保险模式扩展到同时考虑开源硬件和软件资产。Rewire将利用从应用程序行为模式和操作生成的元数据的知识平面来确定要在开源硬件/软件上强制实施的适当安全策略和属性,以阻止潜在的有害指令。Rewire已经投资了三个精心挑选的试点项目(汽车、智能城市、智能卫星),这些项目可以实现该项目的雄心勃勃的目标。-基于RISC-V的可定制TEE用于快速和自动评估硬件漏洞基于上述描述,REWIRE旨在保护安全处理的整个工作流程;从基于软件的SoSest的部署和操作到在运行时发现新的漏洞时的补丁管理,通过提供针对软件/硬件开源规范的审计和认证的新信任管理机制。
英文摘要
REWIRE envisions a holistic framework for continuous security assessment of open-source and open-specification hardware and software for IoT devices and the development of cybersecurity certification in accordance with the requirements and guidelines of recent EU regulation Cyber security Act3. The proposed scalable and multifunctional cybersecurity platform will ensure the security throughout the life of the IoT devices with continuous security auditing, trust computing and theorem proofs for defining an hw-based microarchitecture for enhanced protection targeting to open-hardware/software vulnerabilities. A certification procedure of the audited software and hardware components will propose new software security metrics and establish a layer of trust between stakeholders, utilizing Blockchain and smart contracts. REWIRE will expand traditional cyber insurance models to account for both open-source hardware and software assets, by ingesting security auditing results for estimating premium costs. REWIRE will exploit a Knowledge Plane of metadata generated from application behavioral patterns and operations to determine appropriate security policies and properties to enforce on open-source hw/sw to block potentially harmful instructions. REWIRE has invested in three carefully selected pilots (Automotive, Smart Cities, Smart Satellites), which can address the ambitious objectives of the project. - customizable TEE based on RISC-V - micro benchmarking for quick and automated assessment of h/w vulnerability Based on the above description, REWIRE aims to safeguard the entire workflow ofsecure processing; from the Deployment and Operation of SW-based SoSesto their patch management when new exploits have been identified during run-time, by providing new trust management mechanisms towards the auditability and certification of SW/HW open-source specifications.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
海外基金