Secure Updates for Embedded Systems
Your smartphone (and some brands of car) appear to be able to update their operating system and applications securely, remotely and wirelessly. Can the same capability be brought to deeply embedded, critical systems? The benefits are numerous, most notably bringing the potential to upgrade the capability of systems 'in the field' without need for a physical recall to the factory or a maintenance facility.
This talk will outline the technologies behind the scenes of such a 'code signing' infrastructure, including the cryptographic primitives and protocols needed to assure the confidentiality, integrity and authentication of such updates. An implementation sets some serious challenges, including the need to run on small 'bare metal' target machines, atomicity of the update process, and the need to meet cryptographic and technical standards set by GCHQ. We will also consider the need for key generation and distribution, and provision of a certificate authority to support such a scheme


