Authors: Damien Couroussé 1 ; Bruno Robisson 2 ; Jean-Louis Lanet 3 ; Thierno Barry 1 ; Hassan Noura 1 ; Philippe Jaillon 4 and Philippe Lalevée 4

Affiliations: 1 Univ. Grenoble Alpes, CEA and LIST, France ; 2 Commissariat à l’Énergie Atomique et aux Énergies Alternatives (CEA), France ; 3 University of Limoges, France ; 4 École Nationale Suprieure des Mines de Saint-Etienne (ENSM.SE), France

ISBN: 978-989-758-045-1

Keyword(s): Code Polymorphism, Runtime Code Generation, Physical Attacks, Embedded Devices.

Related Ontology Subjects/Areas/Topics: Data and Application Security and Privacy ; Information and Systems Security ; Insider Threats and Countermeasures ; Secure Software Development Methodologies ; Security and Privacy in Pervasive/Ubiquitous Computing ; Security Engineering ; Security in Information Systems ; Software Security

Abstract: In this paper, we advocate the use of code polymorphism as an efficient means to improve security at several levels in electronic devices. We analyse the threats that polymorphism could help thwart, and present the solution that we plan to demonstrate in the scope of a collaborative research project called COGITO. We expect our solution to be effective to improve security, to comply with the computing and memory constraints of embedded devices, and to be easily generalisable to a large set of embedded computing platforms.

Couroussé D., Robisson B., Lanet J., Barry T., Noura H., Jaillon P. and Lalevée P. (2014). COGITO: Code Polymorphism to Secure Devices.In Proceedings of the 11th International Conference on Security and Cryptography - Volume 1: SECRYPT, (ICETE 2014) ISBN 978-989-758-045-1, pages 451-456. DOI: 10.5220/0005113704510456

