Published July 22, 2020 | Version v1

Hardware-Enabled Secure Firmware Updates in Embedded Systems

  • 1. Department of Electrical and Computer Engineering, KIOS Research and Innovation Centre of Excellence, University of Cyprus, Nicosia, Cyprus
  • 2. FAMU-FSU College of Engineering, Center for Advanced Power Systems, Florida State University, Tallahassee, USA

Description

Firmware updates on embedded systems are essential for patching vulnerabilities and improving the functionality of devices. Despite the importance of firmware updates, manufacturers and firmware developers often consider firmware security as a secondary task. As a result, firmware often turns into an alluring target for adversaries to inject malicious code into embedded devices. In this work, we present a framework that supports secure and fast firmware update delivery with minimal downtime on embedded devices. The proposed framework makes use of cryptographic primitives implemented on hardware in addition to the device’s intrinsic physical characteristics acting as digital authentication fingerprints. Our implementation ensures firmware authenticity, confidentiality, and integrity. A proof-of-concept design is emulated on FPGA demonstrating high performance, strong security guarantees, and minimal hardware overhead.

Files

Hardware_enabled_Secure_Firmware_Updates_in_Embedded_Systems.pdf

Files (5.5 MB)

Additional details

Funding

European Commission
KIOS CoE - KIOS Research and Innovation Centre of Excellence 739551