Life-cycle models and security threats to the microchip during its development and exploitation

DOI: 10.21293/1818-0442-2023-26-1-76-81

Download article in PDF format

JATS xml

Abstract: The growth of Internet of Things devices has shown the need to advance the information security and more specifically the development and operation of microchips, as modern information systems are built around the latter. This article presents the lifecycle of secure chips used as the Root of Trust of information systems. The main stages of the life cycle of protected chips are described, namely life cycle models during development and operation by the end user.

Keywords: security, secure element, lifecycle, protected microcontrollers

Funding: This article was written within the framework of the Laboratory Research Center "Trusted Sensor Systems" Program (Agreement No. 009/20 dated April 10, 2020) with financial support from the Ministry of Digital Development, Communications and Mass Media of the Russian Federation and JSC "RVC". The subsidy agreement identifier is 0000000007119P190002.

For citation:
Belyakov D. S., Kalinin E. O., Konev A. A., Shelupanov A. A., Mitsel A. A. Life-cycle models and security threats to the microchip during its development and exploitation. Doklady Tomskogo gosudarstvennogo universiteta sistem upravleniya i radioelektroniki, 2023, vol. 26, no. 1, pp. 76–81. DOI: 10.21293/1818-0442-2023-26-1-76-81

Authors and copyright holders:

  • Belyakov D. S. , Tomsk State University of Control Systems and Radioelectronics (Tomsk, Russia)
  • Kalinin E. O. , Tomsk State University of Control Systems and Radioelectronics (Tomsk, Russia)
  • Konev A. A. , Tomsk State University of Control Systems and Radioelectronics (Tomsk, Russia)
  • Shelupanov A. A. , Tomsk State University of Control Systems and Radioelectronics (Tomsk, Russia)
  • Mitsel A. A. , Tomsk State University of Control Systems and Radioelectronics (Tomsk, Russia)

  • 1. Bhaiyat H. and Sithungu S., The Emergence of IIoT and its Cyber Security Issues in Critical Information Infrastructure. European Conference on Cyber Warfare and Security, 2022, vol. 21, no. 1. Academic Conferences International Ltd, pp. 46–51.
  • 2. Noseda M., Zimmerli L., Schläpfer T., and Rüst A., Performance Analysis of Secure Elements for IoT. Internet of Things, 2021, vol. 3, no. 1. MDPI AG, pp. 1–28.
  • 3. Ebad S.A., Exploring How to Apply Secure Software Design Principles. IEEE Access, 2022, vol. 10. Institute of Electrical and Electronics Engineers (IEEE), pp. 128983–128993.
  • 4. Ooi S.E. et al., “Intent-Driven Secure System Design: Methodology and Implementation,” Computers & Security, 2022, vol. 124. Elsevier BV, p. 102955.
  • 5. Shelupanov A. Threat Model for IoT Systems on the Example of OpenUNB Protocol. International Journal of Emerging Trends in Engineering Research, 2019, pp. 283–290.
  • 6. Konev A.A., Mineeva T.E., Soloviev M.L., Shelupanov A.A., and Silich M.P. [Model of the life cycle of the information security system]. Bezopasnost informacionnyh tehnology, 2018, vol. 25, no. 4. National Research Nuclear University MEPhI (Moscow Engineering Physics Institute), pp. 34–42 (in Russ).
  • 7. Alenezi M. and Almuairfi S. Security Risks in the Software Development Lifecycle. International Journal of Recent Technology and Engineering (IJRTE), 2019, vol. 8, no. 3, pp. 7048–7055.
  • 8. Soloviev M.L. et al. [Model of security threats arising from the management of information security systems]. Proceedings of TUSUR University, 2019, vol. 22, no. 3, pp. 31–36 (in Russ).
  • 9. Novokhrestov A., Konev A., Shelupanov A., and Buymov A. Computer network threat modelling. Journal of Physics: Conference Series, 2020, vol. 1488, no. 1, p. 012002.
  • 10. Yousefnezhad N., Malhi A., and Främling K. Security in product lifecycle of IoT devices: A survey. Journal of Network and Computer Applications, 2020, vol. 171. p. 102779.
  • 11. GOST R 57193-2016. System lifecycle processes. Available at: https://docs.cntd.ru/document/1200141163 (Accessed: November 10, 2022) (in Russ).
  • 12. Chan C.-H. et al. Trending IC design directions in 2022. Journal of Semiconductors, 2022, vol. 43, no. 7. IOP Publishing, p. 071401.
  • 13. El Jaouhari S. and Bouvet E. Secure firmware Over-The-Air updates for IoT: Survey, challenges, and discussions. Internet of Things, 2022, vol. 18. Elsevier BV, p. 100508.
  • 14. Mathur S. and Arora A. Internet of Things (IoT) and PKI-Based Security Architecture. Industrial Internet of Things and Cyber-Physical Systems, 2020, IGI Global, pp. 25–46.
  • 15. GOST R 56939-2016. Threats to information security in software development. Available at: https://docs.cntd.ru/document/12001355258 (Accessed: November 10, 2022) (in Russ).
Editorial office address

Executive Secretary of the Editor’s Office

 Editor’s Office: 40 Lenina Prospect, Tomsk, 634050, Russia

  Phone / Fax: + 7 (3822) 701-582

  journal@tusur.ru

 

Executive Secretary of the Editor’s Office

 Editor’s Office: 40 Lenina Prospect, Tomsk, 634050, Russia

  Phone / Fax: + 7 (3822) 51-21-21 / 51-43-02

Subscription for updates