A Secure OTA Update Client for Morello Board Based on Uptane
Project Abstract
Over-the-air (OTA) updates are a significant feature to analyze and propagate software updates remotely efficiently and cost-effectively. However, due to wireless communication between the server and the client, this feature opens a new attack vector in which an attacker might abuse or replace legitimate software updates with a malicious software update to get control over the system. Therefore, it is vital to ensure that OTA updates are implemented securely. Uptane is a popular, secure automotive software update framework to enable that. This project focuses on adapting Uptane to the client OTA updates for Morello Board. The Morello Board is a prototype software and hardware platform developed by ARM company, implementing Capability Hardware Enhanced RISC Instructions (CHERI). CHERI is a hardware-software protection model designed to protect software against memory-related attacks, such as buffer overflow at the hardware level. The result of this project will enrich the Operating System for the Morello Board and, hence, provide it another protection layer.
Keywords: OTA, Cyber Security, Over the Air
Conference Details
Session: Presentation Stream 2 at Presentation Slot 2
Location: GH043 at Tuesday 7th 13:30 – 17:00
Markers: Mukesh Tiwary, Muneeb Ahmad
Course: MSc Cyber Security, Masters PG
Future Plans: I’m looking for work