RIPTE: Runtime Integrity Protection Based on Trusted Execution for IoT Device

Joint Authors

Zhao, Shijun
Feng, Wei
Qin, Yu
Liu, Jingbin
Feng, Dengguo

Source

Security and Communication Networks

Issue

Vol. 2020, Issue 2020 (31 Dec. 2020), pp.1-14, 14 p.

Publisher

Hindawi Publishing Corporation

Publication Date

2020-09-23

Country of Publication

Egypt

No. of Pages

14

Main Subjects

Information Technology and Computer Science

Abstract EN

Software attacks like worm, botnet, and DDoS are the increasingly serious problems in IoT, which had caused large-scale cyber attack and even breakdown of important information infrastructure.

Software measurement and attestation are general methods to detect software integrity and their executing states in IoT.

However, they cannot resist TOCTOU attack due to their static features and seldom verify correctness of control flow integrity.

In this paper, we propose a novel and practical scheme for software trusted execution based on lightweight trust.

Our scheme RIPTE combines dynamic measurement and control flow integrity with PUF device binding key.

Through encrypting return address of program function by PUF key, RIPTE can protect software integrity at runtime on IoT device, enabling to prevent the code reuse attacks.

The results of our prototype’s experiment show that it only increases a small size TCB and has a tiny overhead in IoT devices under the constraint on function calling.

In sum, RIPTE is secure and efficient in IoT device protection at runtime.

American Psychological Association (APA)

Qin, Yu& Liu, Jingbin& Zhao, Shijun& Feng, Dengguo& Feng, Wei. 2020. RIPTE: Runtime Integrity Protection Based on Trusted Execution for IoT Device. Security and Communication Networks،Vol. 2020, no. 2020, pp.1-14.
https://search.emarefa.net/detail/BIM-1208910

Modern Language Association (MLA)

Qin, Yu…[et al.]. RIPTE: Runtime Integrity Protection Based on Trusted Execution for IoT Device. Security and Communication Networks No. 2020 (2020), pp.1-14.
https://search.emarefa.net/detail/BIM-1208910

American Medical Association (AMA)

Qin, Yu& Liu, Jingbin& Zhao, Shijun& Feng, Dengguo& Feng, Wei. RIPTE: Runtime Integrity Protection Based on Trusted Execution for IoT Device. Security and Communication Networks. 2020. Vol. 2020, no. 2020, pp.1-14.
https://search.emarefa.net/detail/BIM-1208910

Data Type

Journal Articles

Language

English

Notes

Includes bibliographical references

Record ID

BIM-1208910