RanCompute: Computational Security in Embedded Devices via Random Input and Output Encodings

Kevin Hutto, Santiago Grijalva, Vincent John Mooney III · 2022 11th Mediterranean Conference on Embedded Computing (MECO) · 2022

An embedded device in an insecure environment is subject to additional security risk through capture and reverse-engineering by a capable adversary. If this device contains a microchip performing sensitive computations, capture of the chip may leak functionality to an adversary. In this paper we propose a novel method in which we randomly encode the input operands and the outputs of a computation, thus not revealing the arithmetic operations being performed. The operations are sequenced in a graph representing the overall application. Once the initialization values are overwritten and lost, the results of these computations are indecipherable by the device performing the calculations as well as by any adversary. The result is transmitted back to a secure server which has stored the initialization values and so can decode the results which appear random to the adversary.

Read the paper · More papers on PaperTik