Device Driver and System Call Isolation in Embedded Devices

Maja Malenko, Marcel Baunach

Publikation: Beitrag in Buch/Bericht/KonferenzbandBeitrag in einem KonferenzbandBegutachtung

Abstract

The number of low-end embedded devices in today's Internet of Things and Cyber-Physical Systems is increasing along with their security concerns. Memory isolation mechanisms are often absent, programming flaws lead to malfunctioning applications, which in turn can crush the whole system. A common design approach in these devices is to have applications, operating system components, and device driver libraries reside in a single non-isolated address space, which represents one vast attack surface. Furthermore, with increasing network connectivity and frequent dynamic updates, new or modified applications and services are uploaded, opening space for even more attacks. Isolating the execution of applications in these systems is still a challenge. In this work we provide a holistic hardware/software co-designed approach for memoryisolation, which prevents corruption of the state of the operating system and applications from a buggy software, including device drivers, interrupt service routines, and misused system calls. We implemented low-cost architectural extensions in a RISC-V-based microcontroller which work together with kernel-based protection concepts. Our evaluation shows that applications as well as the kernel can enjoy the benefits of the proposed memory isolation with minimal impact on performance and an insignificant increase in the area of the MCU.

Originalspracheenglisch
TitelProceedings - Euromicro Conference on Digital System Design, DSD 2019
Redakteure/-innenNikos Konofaos, Paris Kitsos
Herausgeber (Verlag)Institute of Electrical and Electronics Engineers
Seiten283-290
Seitenumfang8
ISBN (elektronisch)9781728128610
DOIs
PublikationsstatusVeröffentlicht - 1 Aug. 2019
Veranstaltung22nd Euromicro Conference on Digital System Design, DSD 2019 - Kallithea, Chalkidiki, Griechenland
Dauer: 28 Aug. 201930 Aug. 2019

Publikationsreihe

NameProceedings - Euromicro Conference on Digital System Design, DSD 2019

Konferenz

Konferenz22nd Euromicro Conference on Digital System Design, DSD 2019
Land/GebietGriechenland
OrtKallithea, Chalkidiki
Zeitraum28/08/1930/08/19

ASJC Scopus subject areas

  • Hardware und Architektur
  • Information systems
  • Informationssysteme und -management

Fingerprint

Untersuchen Sie die Forschungsthemen von „Device Driver and System Call Isolation in Embedded Devices“. Zusammen bilden sie einen einzigartigen Fingerprint.

Dieses zitieren