In this paper, we propose a framework called Contego-TEE to secure Internet-of-Things (IoT) edge devices with timing requirements from control spoofing attacks where an adversary sends malicious control signals to the actuators. We use a trusted computing base available in commodity processors (such as ARM TrustZone) and propose an invariant checking mechanism to ensure the security and safety of the physical system. A working prototype of Contego-TEE was developed using embedded Linux kernel. We demonstrate the feasibility of our approach for a robotic vehicle running on an ARM-based platform.
@article{arxiv.1908.09444,
title = {Protecting Actuators in Safety-Critical IoT Systems from Control Spoofing Attacks},
author = {Monowar Hasan and Sibin Mohan},
journal= {arXiv preprint arXiv:1908.09444},
year = {2019}
}
Comments
2nd Workshop on the Internet of Things Security and Privacy - Iot S&P'19, November 15, 2019, London, United Kingdom. ACM ISBN: 978-1-4503-6838-4/19/11