학술논문

Security Verification of the OpenTitan Hardware Root of Trust
Document Type
Periodical
Source
IEEE Security & Privacy IEEE Secur. Privacy Security & Privacy, IEEE. 21(3):27-36 Jun, 2023
Subject
Computing and Processing
Aerospace
Bioengineering
Components, Circuits, Devices and Systems
Engineered Materials, Dielectrics and Plasmas
Engineering Profession
Fields, Waves and Electromagnetics
General Topics for Engineers
Nuclear Engineering
Robotics and Control Systems
Signal Processing and Analysis
Transportation
Communication, Networking and Broadcast Technologies
Photonics and Electrooptics
Power, Energy and Industry Applications
Security
Ciphers
Behavioral sciences
Threat modeling
Random access memory
Registers
Codes
Language
ISSN
1540-7993
1558-4046
Abstract
We describe the security verification of OpenTitan. We illustrate how information flow tracking turns human knowledge of assets and security requirements into formal security properties verified using Cycuity’s Radix. The verification uncovered weaknesses and helped produce hardware fixes to eliminate vulnerabilities.