REWIRE - REWiring the ComposItional Security VeRification and AssurancE of Systems of Systems Lifecycle
REWIRE - REWiring the ComposItional Security VeRification and AssurancE of Systems of Systems Lifecycle
批准号:
10043730
负责人:
金额:
$36.26万
依托单位:
依托单位国家:
英国
项目类别:
EU-Funded
财政年份:
2022
资助国家:
英国
项目状态:
未结题
起止时间:
2022 至 --
中文摘要
REWIRE设想了一个整体框架,用于对物联网设备的开源和开放规范硬件和软件进行持续安全评估,并根据最近欧盟法规网络安全法案3的要求和指导方针开发网络安全认证。拟议的可扩展和多功能网络安全平台将通过持续的安全审计,信任计算和定理证明来确保物联网设备的整个生命周期的安全性,以定义基于硬件的微架构,以增强针对开放硬件/软件漏洞的保护。经过审计的软件和硬件组件的认证程序将提出新的软件安全指标,并利用区块链和智能合约在利益相关者之间建立信任层。REWIRE将扩展传统的网络保险模型,以考虑开源硬件和软件资产,通过整合安全审计结果来估计保费成本。REWIRE将利用从应用程序行为模式和操作中生成的元数据知识平面来确定适当的安全策略和属性,以强制执行开源硬件/软件,从而阻止潜在的有害指令。REWIRE投资了三个精心挑选的试点项目(汽车、智慧城市、智能卫星),这些项目可以实现该项目的宏伟目标。- 基于RISC-V - micro基准测试的可定制TEE,用于快速自动评估h/w漏洞基于上述描述,REWIRE旨在保护安全处理的整个工作流程;从基于软件的SoSes的部署和操作到运行时发现新漏洞时的补丁管理,通过提供新的信任管理机制,实现软件/硬件开源规范的可验证性和认证。
英文摘要
REWIRE envisions a holistic framework for continuous security assessment of open-source and open-specification hardware and software for IoT devices and the development of cybersecurity certification in accordance with the requirements and guidelines of recent EU regulation Cyber security Act3. The proposed scalable and multifunctional cybersecurity platform will ensure the security throughout the life of the IoT devices with continuous security auditing, trust computing and theorem proofs for defining an hw-based microarchitecture for enhanced protection targeting to open-hardware/software vulnerabilities. A certification procedure of the audited software and hardware components will propose new software security metrics and establish a layer of trust between stakeholders, utilizing Blockchain and smart contracts. REWIRE will expand traditional cyber insurance models to account for both open-source hardware and software assets, by ingesting security auditing results for estimating premium costs. REWIRE will exploit a Knowledge Plane of metadata generated from application behavioral patterns and operations to determine appropriate security policies and properties to enforce on open-source hw/sw to block potentially harmful instructions. REWIRE has invested in three carefully selected pilots (Automotive, Smart Cities, Smart Satellites), which can address the ambitious objectives of the project. - customizable TEE based on RISC-V - micro benchmarking for quick and automated assessment of h/w vulnerability Based on the above description, REWIRE aims to safeguard the entire workflow ofsecure processing; from the Deployment and Operation of SW-based SoSesto their patch management when new exploits have been identified during run-time, by providing new trust management mechanisms towards the auditability and certification of SW/HW open-source specifications.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
海外基金