Cryptographic Enhancing of Data Security in IoT Devices
Cryptographic Enhancing of Data Security in IoT Devices
批准号:
RGPIN-2019-06150
负责人:
Mashatan, Atefeh(Atty)
金额:
$2.04万
依托单位:
依托单位国家:
加拿大
项目类别:
Discovery Grants Program - Individual
财政年份:
2022
资助国家:
加拿大
项目状态:
已结题
起止时间:
2022-01-01 至 2023-12-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
Internet-of-Things, where everyday objects are all connected and autonomously communicate with one another, is revolutionizing our lives. The data handled by the IoT devices can be privacy-sensitive, e.g., in the case of smart healthcare, and safety-critical, e.g., in the case of smart manufacturing, giving rise to serious information security concerns. The overarching goal of this research program is to design, analyze and implement end-to-end IoT security and privacy solutions, with an emphasis on (a) longevity of data protection in the IoT systems and (b) varying sensitivity levels of the IoT data among different IoT devices. As a result of this research program, we will produce robust and practical implementations of provably secure systems and, in turn, enhance the contextual privacy and security of users of IoT systems. We will achieve this goal by identifying the challenges with respect to integrity and confidentiality of data in IoT scenarios and addressing them by designing new schemes. Then, we complement our findings with a proof-of-concept implementation and further develop it to an end-to-end package which is ready for standardization and deployment in the industry. IoT devices are getting smarter and contain more safety-critical and privacy-sensitive information about us while becoming smaller - making them a very appealing target for attackers. While providing a great opportunity for ubiquitous computing, the miniaturization of smart devices brings many security and privacy concerns as the traditional mechanisms for safeguarding digital information are no longer adequate. As a result, IoT cannot afford complex algorithms and demands for lightweight alternatives. We will investigate new techniques and approaches for developing security protocols that are lightweight enough to be used in a small sensor in IoT while at the same time provide adequate and contextual security and privacy guarantees. Another challenge is longevity of the confidentiality requirement. Many IoT devices are deployed with life expectancy of more than a decade or are storing information that are meant to remain confidential for decades. This brings them in the scope of the quantum computing threat where currently standardized public-key schemes are no longer secure. While quantum-resistant solutions currently exist, they are not yet standardized and definitely not lightweight enough for many IoT scenarios. We will investigate new approaches in designing scalable quantum-resistant solutions for IoT devices and design and implement them in a flexible manner providing crypto-agility. One other IoT pain point is efficient and scalable message and device authentication which are typically achieved by secure management of cryptographic keys and credentials. These techniques are highly relying on public-key cryptography which are expensive and not scalable for many IoT settings. We will propose alternative techniques to address message and device authentication.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Quality of Security (QoSec) Framework for Internet-of-Things (IoT)
-
批准号:CRC-2020-00017
-
项目类别:Canada Research Chairs
-
资助金额:$8.74万
-
财政年份:2022
-
负责人:Mashatan, Atefeh(Atty)
-
依托单位:
Cryptographic Enhancing of Data Security in IoT Devices
-
批准号:RGPIN-2019-06150
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$2.04万
-
财政年份:2021
-
负责人:Mashatan, Atefeh(Atty)
-
依托单位:
Quality Of Security (Qosec) Framework For Internet-Of-Things (Iot)
-
批准号:CRC-2020-00017
-
项目类别:Canada Research Chairs
-
资助金额:$6.92万
-
财政年份:2021
-
负责人:Mashatan, Atefeh(Atty)
-
依托单位:
海外基金