SIPP - Secure IoT Processor Platform with Remote Attestation
SIPP - 具有远程认证的安全物联网处理器平台
基本信息
- 批准号:EP/S030867/1
- 负责人:
- 金额:$ 164.99万
- 依托单位:
- 依托单位国家:英国
- 项目类别:Research Grant
- 财政年份:2019
- 资助国家:英国
- 起止时间:2019 至 无数据
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
As the world becomes ever more connected, the vast number of Internet of things (IoT) devices necessitates the use of smart, autonomous machine-to-machine communications; however, this poses serious security and privacy issues as we will no longer have direct control over with what or whom our devices communicate. Counterfeit, hacked, or cloned devices acting on a network can have significant consequences: for individuals through the leakage of confidential and personal information, in terms of monetary costs (for e.g. the loss of access to web services - Mirai attack on Dyn took down Twitter, Spotify, Reddit); or for critical national infrastructure, through the loss of control of safety-critical industrial and cyber-physical IoT systems. In addition, IoT devices are often low-cost, low power devices that are restricted in both memory and computing power. A major challenge is how to address the need for security in such resource-constrained devices. As companies race to get IoT devices to market, many do not consider security or, all too often, security is an afterthought. As such, a common theme in all realms of IoT is the need for dependability and security. The SIPP project aims to rethink how security is built into IoT processor platforms. Firstly, the architectural fundamentals of a processor design need to be re-engineered to assure the security of individual on-chip components. This has become increasingly evident with the recent Spectre and Meltdown attacks. On the upper layer of systems-on-chip (SoCs), hardware authentication of chip sub-systems and the entire chip is crucial to detect malicious hardware modification. Then, at the systems layer (i.e., multiple chips on a common printed circuit board), innovative approaches for remote attestation will be investigated to determine the integrity at board level. Finally, the security achieved at all hierarchical layers will be assessed by investigating physical-level vulnerabilities to ensure there is no physical leakage of the secrets on which each layer relies. The proposed project brings together the core partners of the NCSC/EPSRC-funded Research Institute in Secure Hardware and Embedded Systems (RISE), that is, Queen's University Belfast and the Universities of Cambridge, Bristol and Birmingham, with the leading academics in the field of hardware security and security architecture design from the National University of Singapore and Nanyang Technological University, to develop a novel secure IoT processor platform with remote attestation implemented on the RISC-V architecture.
随着世界变得越来越紧密,大量的物联网(IoT)设备需要使用智能,自主的机器对机器通信;然而,这带来了严重的安全和隐私问题,因为我们将不再直接控制我们的设备与什么或谁通信。在网络上运行的假冒、黑客攻击或克隆设备可能会产生严重后果:对于个人而言,会导致机密和个人信息的泄露(例如,无法访问Web服务--米拉伊对Dyn的攻击导致Twitter、Spotify、Reddit瘫痪);对于关键的国家基础设施而言,会导致对安全关键的工业和网络物理物联网系统的控制权丧失。此外,物联网设备通常是低成本、低功耗的设备,在存储器和计算能力方面都受到限制。一个主要的挑战是如何解决这种资源受限设备的安全需求。随着公司竞相将物联网设备推向市场,许多公司并不考虑安全性,或者通常安全性是事后的想法。因此,物联网所有领域的一个共同主题是对可靠性和安全性的需求。SIPP项目旨在重新思考如何将安全性构建到物联网处理器平台中。首先,处理器设计的架构基础需要重新设计,以确保单个片上组件的安全性。这在最近的Spectre和Meltdown攻击中变得越来越明显。在片上系统(SoC)的上层,芯片子系统和整个芯片的硬件认证是检测恶意硬件修改的关键。然后,在系统层(即,多个芯片在一个共同的印刷电路板),创新的远程认证方法将进行研究,以确定在板级的完整性。最后,将通过调查物理级别的漏洞来评估在所有层次上实现的安全性,以确保每一层所依赖的秘密没有物理泄漏。拟议的项目汇集了NCSC/EPSRC资助的安全硬件和嵌入式系统研究所的核心合作伙伴,即贝尔法斯特女王大学和剑桥大学、布里斯托大学和伯明翰大学,以及新加坡国立大学和南洋理工大学在硬件安全和安全架构设计领域的领先学者,开发一种新型的安全物联网处理器平台,并在RISC-V架构上实现远程认证。
项目成果
期刊论文数量(10)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Faulty Point Unit: ABI Poisoning Attacks on Trusted Execution Environments
- DOI:10.1145/3491264
- 发表时间:2021-10
- 期刊:
- 影响因子:0
- 作者:F. Alder;Jo Van Bulck;Jesse Spielman;David F. Oswald;Frank Piessens
- 通讯作者:F. Alder;Jo Van Bulck;Jesse Spielman;David F. Oswald;Frank Piessens
An Efficient Ring Oscillator PUF Using Programmable Delay Units on FPGA
- DOI:10.1145/3593807
- 发表时间:2023-05
- 期刊:
- 影响因子:1.4
- 作者:Yijun Cui;Jiang Li;Yunpeng Chen;Chenghua Wang;Chongyan Gu;Máire O’Neill;Weiqiang Liu
- 通讯作者:Yijun Cui;Jiang Li;Yunpeng Chen;Chenghua Wang;Chongyan Gu;Máire O’Neill;Weiqiang Liu
Faulty Point Unit: ABI Poisoning Attacks on Intel SGX
- DOI:10.1145/3427228.3427270
- 发表时间:2020-12
- 期刊:
- 影响因子:0
- 作者:F. Alder;Jo Van Bulck;David F. Oswald;Frank Piessens
- 通讯作者:F. Alder;Jo Van Bulck;David F. Oswald;Frank Piessens
RISC-V Instruction Set Extensions for Lightweight Symmetric Cryptography
用于轻量级对称密码学的 RISC-V 指令集扩展
- DOI:10.46586/tches.v2023.i1.193-237
- 发表时间:2022
- 期刊:
- 影响因子:0
- 作者:Cheng H
- 通讯作者:Cheng H
Thunderclap: Exploring Vulnerabilities in Operating System IOMMU Protection via DMA from Untrustworthy Peripherals
Thunderclap:通过来自不可信外设的 DMA 探索操作系统 IOMMU 保护中的漏洞
- DOI:10.14722/ndss.2019.23194
- 发表时间:2019
- 期刊:
- 影响因子:0
- 作者:Markettos A
- 通讯作者:Markettos A
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Máire O'Neill其他文献
Máire O'Neill的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Máire O'Neill', 18)}}的其他基金
TruDetect: Trustworthy Deep-Learning based Hardware Trojan Detection
TruDetect:值得信赖的基于深度学习的硬件木马检测
- 批准号:
EP/X036960/1 - 财政年份:2023
- 资助金额:
$ 164.99万 - 项目类别:
Research Grant
Centre for Secure Information Technologies (CSIT) - Phase 3
安全信息技术中心 (CSIT) - 第 3 阶段
- 批准号:
EP/X022323/1 - 财政年份:2022
- 资助金额:
$ 164.99万 - 项目类别:
Research Grant
DeepSecurity - Applying Deep Learning to Hardware Security
DeepSecurity - 将深度学习应用于硬件安全
- 批准号:
EP/R011494/1 - 财政年份:2017
- 资助金额:
$ 164.99万 - 项目类别:
Research Grant
Next-Generation Data Security Architectures
下一代数据安全架构
- 批准号:
EP/G007586/1 - 财政年份:2008
- 资助金额:
$ 164.99万 - 项目类别:
Fellowship
相似海外基金
QRYPTON - Quantum secuRe crYptograPhy to secure IoT devices in deep submicrOn Nodes
QRYPTON - 量子安全密码学,可保护深亚微米节点中的物联网设备
- 批准号:
10093112 - 财政年份:2024
- 资助金额:
$ 164.99万 - 项目类别:
EU-Funded
CRII: CNS: Secure Decentralized AI in Heterogeneous IoT Networks: Foundation and Application
CRII:CNS:异构物联网网络中的安全去中心化人工智能:基础与应用
- 批准号:
2245933 - 财政年份:2023
- 资助金额:
$ 164.99万 - 项目类别:
Standard Grant
IoT Armor: An IoT Secure-by-Default Educational Toolkit
IoT Armor:物联网默认安全教育工具包
- 批准号:
10078019 - 财政年份:2023
- 资助金额:
$ 164.99万 - 项目类别:
Collaborative R&D
IoT-Armor: An IoT Secure-by-Default Educational Toolkit
IoT-Armor:物联网默认安全教育工具包
- 批准号:
10100465 - 财政年份:2023
- 资助金额:
$ 164.99万 - 项目类别:
Collaborative R&D
Resilient, Secure, and Programmable Next-Generation Internet of Things (IoT)
弹性、安全且可编程的下一代物联网 (IoT)
- 批准号:
DGDND-2020-04644 - 财政年份:2022
- 资助金额:
$ 164.99万 - 项目类别:
DND/NSERC Discovery Grant Supplement
CAREER: Towards Secure and Usable IoT Authentication Under Constraints
职业:在约束下实现安全可用的物联网身份验证
- 批准号:
2144669 - 财政年份:2022
- 资助金额:
$ 164.99万 - 项目类别:
Continuing Grant
CAREER: Towards Secure and Usable IoT Authentication Under Constraints
职业:在约束下实现安全可用的物联网身份验证
- 批准号:
2309550 - 财政年份:2022
- 资助金额:
$ 164.99万 - 项目类别:
Continuing Grant
Design and Operation of Safe and Secure IoT Devices Through EMC Designing and Security Monitoring
通过 EMC 设计和安全监控设计和运行安全可靠的物联网设备
- 批准号:
22H01472 - 财政年份:2022
- 资助金额:
$ 164.99万 - 项目类别:
Grant-in-Aid for Scientific Research (B)
Towards Smart Cities: Scalable and Robust Design and Dimensioning of Secure Fog-Computing Infrastructure to Support Latency Sensitive and Dynamic IoT Applications
迈向智慧城市:安全雾计算基础设施的可扩展且稳健的设计和尺寸设计,以支持延迟敏感和动态物联网应用
- 批准号:
558695-2021 - 财政年份:2022
- 资助金额:
$ 164.99万 - 项目类别:
Postgraduate Scholarships - Doctoral
CISE-MSI: RCBP-ED: CNS: MBARKA: A Multi-tier Basic Architecture for fault-toleRant and K-secure IoT-based Autonomous campus monitoring systems
CISE-MSI:RCBP-ED:CNS:MBARKA:用于容错和 K-secure 基于物联网的自主校园监控系统的多层基本架构
- 批准号:
2219785 - 财政年份:2022
- 资助金额:
$ 164.99万 - 项目类别:
Standard Grant