• DocumentCode
    3018499
  • Title

    SWATT: softWare-based attestation for embedded devices

  • Author

    Seshadri, Arvind ; Perrig, Adrian ; Van Doorn, Leendert ; Khosla, Pradeep

  • Author_Institution
    CyLab, Carnegie Mellon Univ., Pittsburgh, PA, USA
  • fYear
    2004
  • fDate
    9-12 May 2004
  • Firstpage
    272
  • Lastpage
    282
  • Abstract
    We expect a future where we are surrounded by embedded devices, ranging from Java-enabled cell phones to sensor networks and smart appliances. An adversary can compromise our privacy and safety by maliciously modifying the memory contents of these embedded devices. In this paper, we propose a softWare-based attestation technique (SWATT) to verify the memory contents of embedded devices and establish the absence of malicious changes to the memory contents. SWATT does not need physical access to the device´s memory, yet provides memory content attestation similar to TCG or NGSCB without requiring secure hardware. SWATT can detect any change in memory contents with high probability, thus detecting viruses, unexpected configuration settings, and Trojan Horses. To circumvent SWATT, we expect that an attacker needs to change the hardware to hide memory content changes. We present an implementation of SWATT in off-the-shelf sensor network devices, which enables us to verify the contents of the program memory even while the sensor node is running.
  • Keywords
    authorisation; computer viruses; embedded systems; formal verification; storage management; SWATT; Trojan Horses; embedded devices; memory content attestation; off-the-shelf sensor network devices; program memory; sensor node; softWare-based ATTestation; unexpected configuration settings; virus detection; Cellular phones; Computer security; Costs; Embedded computing; Hardware; Home appliances; Java; Printers; Privacy; Safety devices;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Security and Privacy, 2004. Proceedings. 2004 IEEE Symposium on
  • ISSN
    1081-6011
  • Print_ISBN
    0-7695-2136-3
  • Type

    conf

  • DOI
    10.1109/SECPRI.2004.1301329
  • Filename
    1301329