SRACARE: Secure Remote Attestation with Code Authentication and Resilience Engine
Avani Dave, Nilanjan Banerjee, Chintan Patel

TL;DR
SRACARE is a framework that enhances security for IoT devices by combining remote attestation, secure boot, and onboard recovery, with minimal performance overhead, using lightweight protocols on a low-power RISC-V processor.
Contribution
It introduces a novel integrated framework with secure communication, code authentication, and resilience recovery for embedded devices, addressing gaps in existing attack detection and recovery methods.
Findings
Achieves 8% performance overhead
Demonstrates resilience against various attacks
Small hardware-software footprint increase
Abstract
Recent technological advancements have enabled proliferated use of small embedded and IoT devices for collecting, processing, and transferring the security-critical information and user data. This exponential use has acted as a catalyst in the recent growth of sophisticated attacks such as the replay, man-in-the-middle, and malicious code modification to slink, leak, tweak or exploit the security-critical information in malevolent activities. Therefore, secure communication and software state assurance (at run-time and boot-time) of the device has emerged as open security problems. Furthermore, these devices need to have an appropriate recovery mechanism to bring them back to the known-good operational state. Previous researchers have demonstrated independent methods for attack detection and safeguard. However, the majority of them lack in providing onboard system recovery and secure…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
