• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. SobTra - A software-based trust anchor for ARM cortex application processors
 
  • Details
  • Full
Options
2014
Conference Paper
Title

SobTra - A software-based trust anchor for ARM cortex application processors

Abstract
In this paper, we present SobTrA, a Software-based Trust Anchor for ARM Cortex-A processors to protect systems against software-based attacks. SobTrA enables the implementation of a software-based secure boot controlled by a third party independent from the manufacturer. Compared to hardware-based trust anchors, our concept provides some other advantages like being updateable and also usable on legacy hardware. The presented software-based trust anchor involves a trusted third party device, the verifier, locally connected to the untrusted device, e.g., via the microSD card slot of a smartphone. The verifier is verifying the integrity of the untrusted device by making sure that a piece of code is executed untampered on it using a timing-based approach. This code can then act as an anchor for a chain of trust similar to a hardware-based secure boot. Tests on our prototype showed that tampered and untampered execution of SobTrA can be clearly and reliably distinguished.
Author(s)
Horsch, Julian  
Fraunhofer-Institut für Angewandte und Integrierte Sicherheit AISEC  
Wessel, Sascha  
Fraunhofer-Institut für Angewandte und Integrierte Sicherheit AISEC  
Stumpf, Frederic
Fraunhofer-Institut für Angewandte und Integrierte Sicherheit AISEC  
Eckert, Claudia  
Fraunhofer-Institut für Angewandte und Integrierte Sicherheit AISEC  
Mainwork
CODASPY 2014, 4th ACM Conference on Data and Application Security and Privacy. Proceedings  
Project(s)
HIVE
Funder
Bundesministerium für Bildung und Forschung  
Conference
Conference on Data and Application Security and Privacy (CODASPY) 2014  
Open Access
File(s)
Download (744.04 KB)
Rights
Use according to copyright law
DOI
10.1145/2557547.2557569
10.24406/publica-r-384923
Additional link
Full text
Language
English
Fraunhofer-Institut für Angewandte und Integrierte Sicherheit AISEC  
Keyword(s)
  • Software-based Trust Anchor

  • self-checksumming code

  • Smartphone

  • mobile security

  • ARM architecture

  • secure boot

  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024