论文标题

嵌入式安全研究的巨大挑战

Grand Challenges for Embedded Security Research in a Connected World

论文作者

Burleson, Wayne, Fu, Kevin, Anthony, Denise, Guajardo, Jorge, Gunter, Carl, Ingols, Kyle, Jeannin, Jean-Baptiste, Koushanafar, Farinaz, Landwehr, Carl, Squires, Susan

论文摘要

由于硬件,软件,网络和应用程序的许多新兴趋势,保护嵌入式安全性正在成为嵌入式系统越来越具有挑战性的研究问题。没有基本进展,并且对嵌入式安全性的了解,将来的工程师将很难在广泛的应用程序中为物联网(IoT)和运营技术(OT)提供保证,从家庭自动化和自动运输到医疗设备和工厂地板。这种应用的共同点是由于缺乏嵌入式安全性而产生的网络物理风险和后果。计算社区联盟(CCC)举行了为期一天的远见研讨会,以探索这些问题。该研讨会着重于嵌入式系统的五个主要应用领域,即(1)医疗/可穿戴设备,(2)自主系统(无人机,车辆,机器人),(3)智能家居,(4)工业和供应链,以及(5)关键基础架构。该报告综合了该研讨会的结果,并在未来5 - 10年内制定了研究和教育的战略目标列表。 连接设备中的嵌入式安全性提出了挑战,需要广泛查看整个系统设计,包括人和社会维度以及技术。与嵌入式安全性相关的特定问题是应用领域总体安全性的子集,这些问题还必须平衡其他设计标准,例如成本,功率,可靠性,可用性和功能。最近的趋势正在融合,使嵌入式系统的安全性成为越来越重要且困难的目标,需要在5 - 10年的地平线上解决新的跨学科方法来解决问题。

Protecting embedded security is becoming an increasingly challenging research problem for embedded systems due to a number of emerging trends in hardware, software, networks, and applications. Without fundamental advances in, and an understanding of embedded security it will be difficult for future engineers to provide assurance for the Internet of Things (IoT) and Operational Technology (OT) in wide ranging applications, from home automation and autonomous transportation to medical devices and factory floors. Common to such applications are cyberphysical risks and consequences stemming from a lack of embedded security. The Computing Community Consortium (CCC) held a one-day visioning workshop to explore these issues. The workshop focused on five major application areas of embedded systems, namely (1) medical/wearable devices, (2) autonomous systems (drones, vehicles, robots), (3) smart homes, (4) industry and supply chain, and (5) critical infrastructure. This report synthesizes the results of that workshop and develops a list of strategic goals for research and education over the next 5-10 years. Embedded security in connected devices presents challenges that require a broad look at the overall systems design, including human and societal dimensions as well as technical. Particular issues related to embedded security are a subset of the overall security of the application areas, which must also balance other design criteria such as cost, power, reliability, usability and function. Recent trends are converging to make the security of embedded systems an increasingly important and difficult objective, requiring new trans-disciplinary approaches to solve problems on a 5-10 year horizon.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源