|
ABSTRACT
The design of ubiquitous and embedded computers focuses on cost factors such as area, power-consumption, and performance. Security and trust properties, on the other hand, are often an afterthought. Yet the purpose of ubiquitous electronics is to act and negotiate on their owner's behalf, and this makes trust a first-order concern. We outline a methodology for the design of secure and trusted electronic embedded systems, which builds on identifying the secure-sensitive part of a system (the root-of-trust) and iteratively partitioning and protecting that root-of-trust over all levels of design abstraction. This includes protocols, software, hardware, and circuits. We review active research in the area of secure design methodologies.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
R. Merritt, "Cellphone could crack RFID tags, says cryptographer," Electronic Engineering Times, 14/2/06.
|
| |
2
|
J. Schwartz, "Graduate Cryptographers Unlock Code of Thiefproof Car Key," New York Times, Section A, p. 14, 1/29/05.
|
| |
3
|
J. Markoff, "Study Says Chips in ID Tags Are Vulnerable to Viruses," New York Times, Section C, p. 3, 3/15/06.
|
| |
4
|
|
| |
5
|
|
| |
6
|
|
| |
7
|
3G Security: Security Architecture, Universal Mobile Telecomm. System (UMTS), tech. specification 3GPP TS 33.102, 1999.
|
| |
8
|
P. Tuyls, L. Batina, "RFID-Tags for Anti-counterfeiting," RSA 2006 Cryptographers' Track, LNCS 3680, p. 115--131.
|
| |
9
|
|
| |
10
|
Y. Zhou, D. Feng, "Side-Channel Attacks: Ten Years After Its Publication and the Impacts on Cryptographic Module Security Testing," Cryptology ePrint Archive, Report 2005/388.
|
| |
11
|
|
| |
12
|
|
| |
13
|
D. Osvik, A. Shamir, E. Tromer, "Cache Attacks and Countermeasures: the Case of AES," Proc CT-RSA, LNCS 3860, 1--20, Springer, 2006.
|
| |
14
|
O. Aciicmez, C. Koc, JP. Seifert, "On the Power of Simple Branch Prediction Analysis," Cryptology ePrint Archive, Report 2006/351.
|
| |
15
|
|
| |
16
|
S. P. Skorobogatov, "Semi-invasive attacks: a new approach to hardware security analysis," University of Cambridge, Technical Report UCAM-CL-TR-630, April 2005.
|
| |
17
|
D. J. Bernstein, "Cache-timing attacks on AES," preprint, 2005, online at http://cr.yp.to/papers.html
|
| |
18
|
|
| |
19
|
Aigner M., et al., "Side Channel Analysis Resistant Design Flow", Proc. ISCAS 2006, pp. 2909--2912, May 2006.
|
| |
20
|
D. Hwang et al., "AES-Based Security Coprocessor IC in 0.18-um CMOS with Resistance to Differential Power Analysis Side-Channel Attacks," IEEE JSSC 41(4), pp. 781--792, 2006.
|
| |
21
|
T. Popp, and S. Mangard, "Masked Dual-Rail Pre-Charge Logic: DPA-Resistance without Routing Constraints", Proc CHES 2005, LNCS, Springer Verlag, 2005.
|
 |
22
|
|
| |
23
|
|
| |
24
|
|
| |
25
|
T. Alves, D. Felton, "Trustzone: Integrated Hardware and Software Security," ARM white paper, July 2004.
|
| |
26
|
E. Gallery, "An overview of trusted computing technology," in Trusted Computing, eds. C. Mitchell, IEE press, 2005.
|
 |
27
|
|
| |
28
|
|
|