RESCURE: A security solution for IoT life cycle

Georgios Selimis, Rui Wang, Roel Maes, Geert Jan Schrijen, Mario Münzer, Stefan Ilić, Frans M.J. Willems, Lieneke Kusters

Onderzoeksoutput: Hoofdstuk in Boek/Rapport/CongresprocedureConferentiebijdrageAcademicpeer review

1 Citaat (Scopus)

Samenvatting

We present RESCURE, a security solution built on software, which retrofits Internet of Things (IoT) devices to secure ones. RESCURE exploits the entropy originating from the random variations of silicon (transistors) during manufacturing and generates a unique unforgeable root key and an identity per device. In this way, root key and identity are inseparable from the IoT hardware. To achieve lifetime reliability (reproducibility) and security (randomness) for root key and identity, we apply error correcting and randomness amplification algorithms to the signals derived from silicon. RESCURE supports certificates which are able to prove the device identity and authenticity. RESCURE supports multiple keys derivation (private keys or private/public key pairs) and End-to-End security. In this way an IoT device is able to communicate securely and independently with multiple actors (e.g., Service Providers). It supports secure storage so it is able to encrypt sensitive data such as application keys, sensitive data or software Intellectual Properties (IP). Finally, the entire device software is protected by secure boot and secure software update mechanisms allowing for malware-free software execution and renewable security and features. RESCURE has been prototyped on an ST32L4 device and its performance is presented across real use case scenarios covering the entire life cycle of the device. It is a low-cost solution for all the devices manufacturers that want to achieve high standard security without redesigning the hardware of their IoT product.

Originele taal-2Engels
TitelProceedings of the 15th International Conference on Availability, Reliability and Security, ARES 2020
UitgeverijAssociation for Computing Machinery, Inc
Pagina's1-10
Aantal pagina's10
ISBN van elektronische versie9781450388337
DOI's
StatusGepubliceerd - 25 aug. 2020
Evenement15th International Conference on Availability, Reliability and Security, ARES 2020 - Virtual, Online, Ierland
Duur: 25 aug. 202028 aug. 2020

Congres

Congres15th International Conference on Availability, Reliability and Security, ARES 2020
Land/RegioIerland
StadVirtual, Online
Periode25/08/2028/08/20

Vingerafdruk

Duik in de onderzoeksthema's van 'RESCURE: A security solution for IoT life cycle'. Samen vormen ze een unieke vingerafdruk.

Citeer dit