YASEEN AL-BEGALI (2202884) YASEEN AL-BEGALI

A Secure OTA Update Client for Morello Board Based on Uptane

Project Abstract

Over-the-air (OTA) updates are a significant feature to analyze and propagate software updates remotely efficiently and cost-effectively. However, due to wireless communication between the server and the client, this feature opens a new attack vector in which an attacker might abuse or replace legitimate software updates with a malicious software update to get control over the system. Therefore, it is vital to ensure that OTA updates are implemented securely. Uptane is a popular, secure automotive software update framework to enable that. This project focuses on adapting Uptane to the client OTA updates for Morello Board. The Morello Board is a prototype software and hardware platform developed by ARM company, implementing Capability Hardware Enhanced RISC Instructions (CHERI). CHERI is a hardware-software protection model designed to protect software against memory-related attacks, such as buffer overflow at the hardware level. The result of this project will enrich the Operating System for the Morello Board and, hence, provide it another protection layer.

Keywords: OTA, Cyber Security, Over the Air

 

 Conference Details

 

Session: Presentation Stream 2 at Presentation Slot 2

Location: GH043 at Tuesday 7th 13:30 – 17:00

Markers: Mukesh Tiwary, Muneeb Ahmad

Course: MSc Cyber Security, Masters PG

Future Plans: I’m looking for work