arrow
Return

Firmware Secure Updates Meet Formal Verification

delete2026-01-01
delete0
PRE
AI
A
Alberto Tacchella *
E
Emanuele Beozzo
B
Bruno Crispo
M
Marco Roveri
DOI:10.1145/3754455delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Industrial Internet of Things (IIoT) systems require robust mechanisms for secure firmware updates. Existing approaches are often inadequate due to vendor fragmentation, network limitations, and the safety-critical nature of many IIoT applications. In this article, we address these challenges by extending the IETF SUIT (Software Updates for Internet of Things) framework to enhance the security and assurance of firmware updates. Our contributions include the integration of Software Bill of Materials (SBOM) mechanisms and a Behavioral Certification Manifest into the SUIT architecture to increase transparency and provide formal guarantees about the content of the update. The approach is validated by a prototype implementation that demonstrates its feasibility and scalability using real-world benchmarks.
Keywords:
Secure Update
IIoT
Systems Security
Firmware Distribution
Formal Methods
SBOM

Journal

ACM Transactions on Cyber-Physical Systems cover
ACM Transactions on Cyber-Physical Systems
IF:
2.9
Papers:
30
Citations:
687

Organization

U
university of trento
Scholars:
1.7K
Papers: 911
Citations: 0