Electronic Science and Technology ›› 2023, Vol. 36 ›› Issue (8): 14-18.doi: 10.16180/j.cnki.issn1007-7820.2023.08.003

Previous Articles     Next Articles

A Firmware Security Update Scheme for Embedded Devices

ZENG Xiangyi,LIU Wei,XIAO Hao   

  1. School of Microelectronics,Hefei University of Technology,Hefei 230009,China
  • Received:2022-03-21 Online:2023-08-15 Published:2023-08-14
  • Supported by:
    National Natural Science Foundation of China(61974039);Aero Science Foundation of China(2018ZCP4003)

Abstract:

In view of the security problem of embedded device firmware update, this study proposes a multi-check firmware security update scheme based on hash, symmetric and asymmetric encryption algorithms. In this study, the master key pairs, temporary key pairs, shared key and hash chain are designed to protect firmware update from identity authentication, data encryption, integrity check and other aspects, which can effectively prevent illegal users, firmware tampering, firmware data leakage, replay attack, firmware rollback and other attacks. In this study, the concrete implementation of the security update scheme is carried out. The experiment results show that compared with the ISP(In System Programming) and IAP(In Application Pragramming) technologies without any security protection, the scheme achieves the security protection of the whole process of firmware update at the time cost of about 7% and 11%, it provides a safe and reliable update method for embedded device firmware update.

Key words: firmware update, firmware security, embedded system, identity authentication, digital signature, Hash chain, integrity checking, symmetric encryption

CLC Number: 

  • TN918.4