Risk Analysis and Software Integrity Protection for 4G Network Elements in ASMONIA

Author(s):  
Manfred Schäfer
2020 ◽  
Vol 2020 ◽  
pp. 1-14
Author(s):  
Yu Qin ◽  
Jingbin Liu ◽  
Shijun Zhao ◽  
Dengguo Feng ◽  
Wei Feng

Software attacks like worm, botnet, and DDoS are the increasingly serious problems in IoT, which had caused large-scale cyber attack and even breakdown of important information infrastructure. Software measurement and attestation are general methods to detect software integrity and their executing states in IoT. However, they cannot resist TOCTOU attack due to their static features and seldom verify correctness of control flow integrity. In this paper, we propose a novel and practical scheme for software trusted execution based on lightweight trust. Our scheme RIPTE combines dynamic measurement and control flow integrity with PUF device binding key. Through encrypting return address of program function by PUF key, RIPTE can protect software integrity at runtime on IoT device, enabling to prevent the code reuse attacks. The results of our prototype’s experiment show that it only increases a small size TCB and has a tiny overhead in IoT devices under the constraint on function calling. In sum, RIPTE is secure and efficient in IoT device protection at runtime.


2019 ◽  
pp. 413-486 ◽  
Author(s):  
Mohsen Ahmadvand ◽  
Alexander Pretschner ◽  
Florian Kelbert

2010 ◽  
Vol 58 (S 01) ◽  
Author(s):  
J Schönebeck ◽  
B Reiter ◽  
O Haye ◽  
D Böhm ◽  
M Ismail ◽  
...  

2019 ◽  
Vol 16 (6) ◽  
pp. 60-77
Author(s):  
E. V. Vasilieva ◽  
T. V. Gaibova

This paper describes the method of project risk analysis based on design thinking and explores the possibility of its application for industrial investment projects. Traditional and suggested approaches to project risk management have been compared. Several risk analysis artifacts have been added to the standard list of artifacts. An iterative procedure for the formation of risk analysis artifacts has been developed, with the purpose of integrating the risk management process into strategic and prompt decision-making during project management. A list of tools at each stage of design thinking for risk management within the framework of real investment projects has been proposed. The suggested technology helps to determine project objectives and content and adapt them in regards to possible; as well as to implement measures aimed at reducing these risks, to increase productivity of the existing risk assessment and risk management tools, to organize effective cooperation between project team members, and to promote accumulation of knowledge about the project during its development and implementation.The authors declare no conflict of interest.


Sign in / Sign up

Export Citation Format

Share Document