How Little is Enough? Implementation and Evaluation of a Lightweight Secure Firmware Update Process for the Internet of Things

Silvie Schmidt, Mathias Tausig, Manuel Koschuch, Matthias Hudler, Georg Simhandl, Patrick Puddu, Zoran Stojkovic

Abstract

With an ever growing number of devices connecting to each other and to the Internet (usually subsumed under the ”Internet-of-Things” moniker), new challenges arise in terms of keeping these devices safe, secure and usable. Against better judegment, a large number of such devices never gets updated after being deployed, be it from negligence, inconvenience or sheer technical challenges. And all that while a plethora of valid approaches already exists for secure wireless remote update processes for such devices. In this work, we present another approach to solve this problem, with a special focus on the ease of integration into existing systems: we try to provide the absolute bare minimum to enable a secure over-the-air update process, analyze the security of this approach, and evaluate the performance impact of the implementation. We show that our solution can deal with nearly 80% of the identified threats, with a negligible impact on practical performance in terms of processing power and energy consumption.

Download


Paper Citation


in Harvard Style

Schmidt S., Tausig M., Koschuch M., Hudler M., Simhandl G., Puddu P. and Stojkovic Z. (2018). How Little is Enough? Implementation and Evaluation of a Lightweight Secure Firmware Update Process for the Internet of Things.In Proceedings of the 3rd International Conference on Internet of Things, Big Data and Security - Volume 1: IoTBDS, ISBN 978-989-758-296-7, pages 63-72. DOI: 10.5220/0006670300630072


in Bibtex Style

@conference{iotbds18,
author={Silvie Schmidt and Mathias Tausig and Manuel Koschuch and Matthias Hudler and Georg Simhandl and Patrick Puddu and Zoran Stojkovic},
title={How Little is Enough? Implementation and Evaluation of a Lightweight Secure Firmware Update Process for the Internet of Things},
booktitle={Proceedings of the 3rd International Conference on Internet of Things, Big Data and Security - Volume 1: IoTBDS,},
year={2018},
pages={63-72},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0006670300630072},
isbn={978-989-758-296-7},
}


in EndNote Style

TY - CONF

JO - Proceedings of the 3rd International Conference on Internet of Things, Big Data and Security - Volume 1: IoTBDS,
TI - How Little is Enough? Implementation and Evaluation of a Lightweight Secure Firmware Update Process for the Internet of Things
SN - 978-989-758-296-7
AU - Schmidt S.
AU - Tausig M.
AU - Koschuch M.
AU - Hudler M.
AU - Simhandl G.
AU - Puddu P.
AU - Stojkovic Z.
PY - 2018
SP - 63
EP - 72
DO - 10.5220/0006670300630072