User-controlled hardware security anchors: evaluation and designs
User-controlled hardware security anchors: evaluation and designs
批准号:
EP/R012598/1
负责人:
Mark Ryan
金额:
$61.94万
依托单位:
依托单位国家:
英国
项目类别:
Research Grant
财政年份:
2018
资助国家:
英国
项目状态:
未结题
起止时间:
2018 至 --
中文摘要
点击翻译按钮获取中文摘要
英文摘要
Many modern processors are equipped with hardware extensions that enable some kind of Trusted Execution Environment (TEE). This allows programs to run securely - protected from other programs or operating system software running on the processor. By establishing a secure interface between the user and the hardware-anchor, we can make user platforms and devices more resilient to malware and other types of cyber attacks.One of the main goals of this project is to promote and facilitate the adoption of TEE as the main trust anchor for our security architectures. As such, the security of the TEEs themselves is of paramount importance. We will perform a thorough evaluation of the security features of different TEE implementations to determine their suitability as trust anchors. This includes assessing cryptographic protocols, side-channel vulnerabilities, and implementation weaknesses.Hardware supported TEEs aim to ensure that code can execute securely. However, user interface devices (for example, a keyboard, display or touch screen) are usually not connected directly to the secure hardware, which means that the user cannot interact securely with the TEE. We will address the limitations of users interacting directly with TEEs through analysing use cases and developing secure interfaces using auxiliary devices and dedicated features.Authentication today is largely based on user supplied information like passwords or biometrics. These approaches often use information that is easy to steal or brute force. The industry has been moving towards multi-factor authentication as a means of spreading risk, but these approaches impose usability challenges while still relying on weak factors. We will investigate opportunities to leverage strong hardware-based security mechanisms to improve both the strength and usability of authentication. We will also build an architecture for designing protocols and user experiences that leverage these hardware security primitives to enhance the security, manageability, and usability of user authentication over existing approaches.The analysis and applications of our research findings will be demonstrated and implemented on suitable platforms including secure hardware, smart devices and integration with authentication tokens.
期刊论文(10)
专著(0)
科研奖励(0)
会议论文
登录
查看更多内容
DOI:
--
发表时间:
2021
期刊:
影响因子:
--
作者:
[Zitai Chen;G. Vasilakis;Kit Murdock;Edward Dean;David F. Oswald;Flavio D. Garcia]
通讯作者:
Zitai Chen;G. Vasilakis;Kit Murdock;Edward Dean;David F. Oswald;Flavio D. Garcia
DOI:
10.1145/3427228.3427270
发表时间:
2020-12
期刊:
Proceedings of the 36th Annual Computer Security Applications Conference
影响因子:
--
作者:
[F. Alder;Jo Van Bulck;David F. Oswald;Frank Piessens]
通讯作者:
F. Alder;Jo Van Bulck;David F. Oswald;Frank Piessens
Computer Security - ESORICS 2022 - 27th European Symposium on Research in Computer Security, Copenhagen, Denmark, September 26-30, 2022, Proceedings, Part II
计算机安全 - ESORICS 2022 - 第 27 届欧洲计算机安全研究研讨会,丹麦哥本哈根,2022 年 9 月 26-30 日,会议记录,第二部分
DOI:
10.1007/978-3-031-17146-8_12
发表时间:
2022
期刊:
影响因子:
--
作者:
[Aldoseri A]
通讯作者:
Aldoseri A
DOI:
10.48550/arxiv.2301.05538
发表时间:
2023-01
期刊:
ArXiv
影响因子:
--
作者:
[Zitai Chen;David F. Oswald]
通讯作者:
Zitai Chen;David F. Oswald
DOI:
10.1145/3491264
发表时间:
2021-10
期刊:
Digital Threats: Research and Practice (DTRAP)
影响因子:
--
作者:
[F. Alder;Jo Van Bulck;Jesse Spielman;David F. Oswald;Frank Piessens]
通讯作者:
F. Alder;Jo Van Bulck;Jesse Spielman;David F. Oswald;Frank Piessens
共 7 条
Academic Centre of Excellence in Cyber Security Research - University of Birmingham
-
批准号:EP/R007128/1
-
项目类别:Research Grant
-
资助金额:$10.34万
-
财政年份:2017
-
负责人:Mark Ryan
-
依托单位:
Academic Centre of Excellence in Cyber Security Research - University of Birmingham
-
批准号:EP/L001802/1
-
项目类别:Research Grant
-
资助金额:$5.1万
-
财政年份:2013
-
负责人:Mark Ryan
-
依托单位:
Trust Domains - A framework for modelling and designing e-service infrastructures for controlled sharing of information
-
批准号:TS/I002529/1
-
项目类别:Research Grant
-
资助金额:$27.26万
-
财政年份:2011
-
负责人:Mark Ryan
-
依托单位:
Analysing Security and Privacy Properties
-
批准号:EP/H005501/1
-
项目类别:Fellowship
-
资助金额:$126.32万
-
财政年份:2010
-
负责人:Mark Ryan
-
依托单位:
Trustworthy Voting Systems
-
批准号:EP/G02684X/1
-
项目类别:Research Grant
-
资助金额:$56.61万
-
财政年份:2009
-
负责人:Mark Ryan
-
依托单位:
10th International Conference on Information and Communications Security
-
批准号:EP/G005613/1
-
项目类别:Research Grant
-
资助金额:$1.2万
-
财政年份:2008
-
负责人:Mark Ryan
-
依托单位:
Verifying Interoperability Requirements in Pervasive Systems
-
批准号:EP/F033540/1
-
项目类别:Research Grant
-
资助金额:$53.3万
-
财政年份:2008
-
负责人:Mark Ryan
-
依托单位:
Verifying anonymity and privacy properties of security protocols
-
批准号:EP/E040829/1
-
项目类别:Research Grant
-
资助金额:$17.17万
-
财政年份:2007
-
负责人:Mark Ryan
-
依托单位:
Verifying Properties in Electronic Voting Protocols
-
批准号:EP/E029833/1
-
项目类别:Research Grant
-
资助金额:$3.5万
-
财政年份:2006
-
负责人:Mark Ryan
-
依托单位:
国内基金
海外基金
登录
查看更多内容
槲皮素控释系统调控Mettl3/Per1修复氧化应激损伤促牙周炎骨再生及机制研究
-
批准号:82370921
-
项目类别:面上项目
-
资助金额:48.00万元
-
批准年份:2023
-
负责人:徐袁瑾
-
依托单位:
肿瘤翻译调控蛋白调控大肠癌细胞转移能力的信号机制研究
-
批准号:81000952
-
项目类别:青年科学基金项目
-
资助金额:20.0万元
-
批准年份:2010
-
负责人:马强
-
依托单位:
多肽树状物为载体的抗癌前体药物的合成和研究
-
批准号:81072530
-
项目类别:面上项目
-
资助金额:36.0万元
-
批准年份:2010
-
负责人:刘河
-
依托单位:
植物病毒壳体"智能"纳米载体靶向肿瘤细胞的研究
-
批准号:30973685
-
项目类别:面上项目
-
资助金额:35.0万元
-
批准年份:2009
-
负责人:曾庆冰
-
依托单位:
高臭氧浓度下水稻颖花和粒重形成受阻及其成因-FACE研究
-
批准号:30871486
-
项目类别:面上项目
-
资助金额:29.0万元
-
批准年份:2008
-
负责人:杨连新
-
依托单位: