Securing Over-the-Air Updates Against Nation State Actors
This talk describes a secure over-the-air update system called Uptane that gracefully degrades in security when attacked. Uptane provides much better security resilience when attacked by strong advers …
Talk Title | Securing Over-the-Air Updates Against Nation State Actors |
Speakers | Justin Cappos (Professor, NYU) |
Conference | Automotive Linux Summit & Open Source Summit Japan |
Conf Tag | |
Location | Tokyo, Japan |
Date | Jun 19-22, 2018 |
URL | Talk Page |
Slides | Talk Slides |
Video | |
This talk describes a secure over-the-air update system called Uptane that gracefully degrades in security when attacked. Uptane provides much better security resilience when attacked by strong adversaries including nation state actors. It does this while balancing practical deployment concerns that OEMs face related to ECU capabilities, infrastructure requirements, and operator usability. Uptane is designed to be easy to deploy and has had substantial practical adoption as a result. It is already integrated into Automotive Grade Linux (through aktualizr) and is being rolled out now by several major OEMs. Uptane is an open and free system, that has been audited by many experts in the security community. As a result of these factors, Uptane received several awards including Popular Science naming it one of the coolest new inventions of 2017.