Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

321 results about "Physical unclonable function" patented technology

A physical unclonable function (sometimes also called physically unclonable function), or PUF, is a physically-defined "digital fingerprint" that serves as a unique identifier for a semiconductor device such as a microprocessor. They are based on unique physical variations which occur naturally during semiconductor manufacturing. A PUF is a physical entity embodied in a physical structure. Today, PUFs are usually implemented in integrated circuits and are typically used in applications with high security requirements, more specifically cryptography.

Secure verification of physical unclonable function

The present disclosure describes apparatuses and methods for implementing secure verification of a physical unclonable function (PUF). In various aspects, a PUF verifier generates a PUF reagent value by obtaining a key from a PUF and a message value useful for PUF verification. The PUF verifier computes a digest value of the PUF key and the message value and selects a portion of the hash digest as a PUF reagent value. The PUF verifier writes the PUF reagent value to a non-volatile memory to enable subsequent verification of the PUF. The PUF verifier may also generate error-correction code information for the PUF reagent value and write this information to the non-volatile memory to enable error correction. Upon device hardware reset, the PUF verifier can securely verify PUF operation by generating a PUF key hash digest and comparing the hash digest with the PUF reagent value without exposing the PUF key.
Owner:MARVELL ASIA PTE LTD

IKE protocol security enhancement method based on PUF dynamic authentication and post quantum hybrid key

The invention provides an IKE (Internet Key Exchange) protocol security enhancement method based on PUF (Physical Unclonable Function) dynamic authentication and a post-quantum mixed key, which organically combines a PUF, a post-quantum cryptographic algorithm (PQC, especially Kyber KEM) and an improved Internet Key Exchange Protocol (IKE) to realize key exchange of post-quantum security and enhanced identity authentication. The method comprises the following steps: generating a dynamic pre-shared key (PSK) by utilizing the PUF; the method comprises the following steps: integrating a Kyber KEM to an IKE protocol, and replacing traditional Diffie-Hellman key exchange; the PUF-driven dynamic PSK is used as an identity authentication method of the IKE; meanwhile, Kyber KEM and ECDH are adopted for key exchange, and a final session key is generated through joint participation of a Kyber negotiation key, an ECDH negotiation key and PSK derived by PUF; and an IKE protocol process is optimized, and Kyber key exchange and PUF (Physical Unclonable Function) authentication are completed in an IKESAINIT stage and an IKEINTERMEDIATE stage. According to the method, key exchange is post-quantum secure, identity authentication is also post-quantum secure, and the final key integrates three key components of Kyber, ECDH and PUF, so that triple security assurance is provided.
Owner:MIXUAN TECHNOLOGY (HANGZHOU) CO LTD

PUF (Physical Unclonable Function) structure based on delay difference quantization and identity verification method

The invention discloses a PUF (Physical Unclonable Function) structure based on delay difference quantization, and the structure comprises a PUF circuit which comprises two time delay circuits which are connected in parallel; a plurality of layers of differential tapped circuits TDC, and decoders connected with each layer of differential tapped circuit TDC; the delay data quantization unit is connected with the multi-layer decoder, and the delay data quantization unit is connected with the LFSR confusion structure; the two delay circuits are connected with the multi-layer differential tap circuit TDC through the signal selection structure, the signal selection structure inputs delay signals which respond first and then respond in the two delay circuits into a start end and a stop end of each layer of differential tap circuit TDC, the decoder determines delay time of the two delay circuits under corresponding delay resolution, and the decoder outputs the delay time to the multi-layer differential tap circuit TDC. The delay data quantization unit is used for averaging the delay time under different time delay resolutions to serve as final delay data, and the final response R is output after the final delay data is confused by the LFSR confusion structure. Signals of the two symmetrical delay paths are respectively input into a framework of a multi-layer TDC quantization circuit, so that delay difference digital code quantization is realized.
Owner:ANHUI POLYTECHNIC UNIV +2

Dynamic PUF-NFC and multi-mode authentication quantum door lock method and system

The invention provides a dynamic PUF-NFC (Physical Unclonable Function-Near Field Communication) and multi-modal authentication quantum door lock method which comprises the following steps: generating a piezoelectric driving parameter by utilizing a chaos algorithm, adjusting the dynamic deformation of a nano structure, and generating a PUF key; obtaining multi-modal biological characteristics, performing characteristic extraction on the multi-modal biological characteristics, and performing fusion to obtain a biological characteristic vector; encrypting the PUF key by using a post quantum cryptographic algorithm, and performing key derivation in combination with the biological feature vector to generate a session key; and unlocking the quantum door lock by using the session key to complete the authentication of the quantum door lock. By means of the method, the quantum door lock has high safety under the double threats of quantum calculation and the high simulation technology.
Owner:HANGZHOU GUZI CULTURE TECHNOLOGY CO LTD

Physical unclonable function magnetic device and application method thereof

The invention provides a physical unclonable function magnetic device and an application method thereof, the magnetic device comprises a plurality of magnetic storage units arranged in an array and a control circuit, and each magnetic storage unit comprises a spin orbit moment layer and at least one magnetic tunnel junction arranged on the spin orbit moment layer; and the control circuit is used for applying a composite reconstruction signal with oscillation change to the magnetic memory units, and forming a superposed physical field with oscillation change at the magnetic memory units so as to enable the resistance state of the magnetic tunnel junction to generate oscillation change to realize PUF reconstruction of the plurality of magnetic memory units arranged in an array. In order to solve the problems of limited CRP generated by the PUF circuit and low resource utilization rate, the physical field with oscillation change is formed through the composite reconstruction signal, so that the PUF of the magnetic tunnel junction of the SOT-MRAM generates random oscillation change, the PUF of the magnetic device can be reconstructed, the reconstructed magnetic device can generate new CRP, and the resource utilization rate is improved.
Owner:BEIHANG UNIV

Security component having physically unclonable function (PUF) and method of operation

A security component (102, 202) for a device (200) is disclosed. The security component comprises a Physically Unclonable Function (PUF) (150) that is operable to accept a plurality of challenges and to generate a corresponding plurality of responses. The security component further comprises control logic (110) configured to generate a challenge for submission to the PUF on the basis of at least one of measurements of components booted on the device or a measurement of a hardware state of the device. The PUF comprises a plurality of sub functions (152), and the challenge determines how the sub functions are used by the PUF to generate a PUF response. Also disclosed is a method (300) for operating a security component.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)

Sweep point imaging encryption transmission method based on GaN heterojunction device

The invention discloses a scanning point imaging encryption transmission method based on a GaN heterojunction device, and belongs to the technical field of semiconductor photoelectronics. According to the method, the same device is switched between a high-speed'detection mode 'and a'synaptic mode' with a memory effect, encryption is realized by utilizing response difference of the device in two working modes, and an encryption key of the device is an analog and time-varying bias protocol instead of a simple digital sequence. The characteristics of the physical unclonable function endow the physical unclonable function with extremely high encryption strength, so that the physical unclonable function is difficult to crack by a conventional algorithm and has higher security.
Owner:JIANGNAN UNIV

Lightweight distributed anonymous bidirectional authentication method for unmanned aerial vehicle under assistance of block chain

The invention provides an unmanned aerial vehicle lightweight distributed anonymous bidirectional authentication method under the assistance of a block chain, and the method comprises the steps: firstly achieving the authority control through an intelligent contract disposed on the block chain, and guaranteeing that only an authorized entity can access secret information stored on the chain; then, a dynamic pseudonym mechanism is adopted, and the identity label and the session key of the unmanned aerial vehicle are updated in each session; besides, the physical unclonable function is combined with the fuzzy extractor, so that the inherent noise sensitivity problem of response of the physical unclonable function is effectively solved, and meanwhile, the security of the generated session key is kept. According to the invention, the problems of single-point fault and too high calculation / communication cost of a central ground station are solved, and the protocol does not have negative influence on the performance of the unmanned aerial vehicle because the unmanned aerial vehicle is equipment with limited calculation resources.
Owner:ARMY ENG UNIV OF PLA

Multi-mode challenge response identity authentication method and system based on PUF (Physical Unclonable Function)

The invention provides a PUF-based multi-mode challenge response identity authentication method and system, and the method comprises the steps: receiving an authentication instruction, and dynamically determining a dynamic input factor according to a target scene; according to the dynamic input factor and the static factor, using a dynamic weight distribution algorithm to generate a random challenge code fused with scene characteristics; sending the random challenge code to a target device, so that the target device generates a self-adaptive PUF response through a PUF chip, and binding the self-adaptive PUF response with a physical label to generate a composite anti-counterfeiting code; and according to the random challenge code and the composite anti-counterfeiting code, performing identity verification through verification logic. According to the invention, identity authentication based on the PUF in combination with a specific target scene is realized, the method is suitable for multi-scene identity authentication requirements, the calculation overhead is greatly reduced, and the randomness of challenge codes and the scene adaptability are improved.
Owner:HANGZHOU GUZI CULTURE TECHNOLOGY CO LTD

Method and equipment for realizing firmware trusted platform module on RISC-V platform

The invention provides a method and equipment for realizing a firmware trusted platform module on an RISC-V platform, the functions of the trusted platform module are realized without extra hardware extension through cooperation of software and firmware in combination with a PMP mechanism, a PUF and a hardware timer of the RISC-V platform, and the realization mode comprises an isolation execution process, a hardware execution process and a hardware execution process. An fTPM isolation memory area is configured in the starting stage through a PMP mechanism, and access to fTPM codes and data is limited; a static data protection process: generating a device key by using a PUF (Physical Unclonable Function), and carrying out encryption and integrity protection on fTPM persistent data in combination with a Flash locking mechanism; the trusted starting process comprises the steps of adopting a DME mechanism, ensuring and maintaining the integrity of a starting metric chain and supporting a PCR register function; the efficient communication process comprises the steps of dynamically adjusting the PMP permission of a shared memory area through a dynamic permission exchange page mechanism, and realizing zero-copy communication between the fTPM and an operating system or an application program; and the secure clock process comprises the step of constructing an independent trusted clock source based on a hardware timer of the RISC-V platform.
Owner:WUHAN UNIV

Unmanned aerial vehicle group mutual authentication and key agreement method based on PUF (Physical Unclonable Function)

The invention discloses an unmanned aerial vehicle group mutual authentication and key agreement method based on PUF, and relates to the technical field of unmanned aerial vehicle group communication security and network authentication, and the method comprises the steps: S1, obtaining change data through monitoring unmanned aerial vehicle node position coordinate tracking and connection signal intensity in real time, the method comprises the following steps: S1, carrying out state change detection on a node moving speed by adopting position deviation calculation and connection interruption records to obtain a position coordinate tracking sequence after data synchronization update, S2, carrying out data point clustering on the position coordinate tracking sequence by adopting a K-Means clustering algorithm, processing the connection interruption record groups through central point iteration and distance measurement calculation to obtain change vector groups under group number setting; the PUF-based unmanned aerial vehicle group mutual authentication and key agreement method not only effectively solves the problems of slow response, easy communication interruption, unstable key agreement and the like of a traditional unmanned aerial vehicle group authentication mechanism, but also realizes comprehensive improvement in the aspects of safety, robustness and intelligence.
Owner:GUANGZHOU YOUFEI INTELLIGENT EQUIP CO LTD

Optical fiber generating in use a physical unclonable function, object equipped therewith, and apparatus for manufacturing thereof

There is described an optical fiber comprising a core with non-fungible noise elements along a length thereof, wherein the non-fungible noise elements generate in use a Physical Unclonable Function (PUF). There is further described an object including the present optical fiber and uses of the present optical fiber in applications such as authentication, encryption and zero trust security. There is also described an apparatus for introducing non-fungible noise elements along a core of a bundled optical fiber, a method for extracting a digital signature of a Physical Unclonable Function (PUF) generated by introduced non-fungible noise elements in the present optical fiber and a network integrating the present optical fiber.
Owner:POLYVALOR LP

Cooperative authentication method and system of safety U disk

The invention discloses a collaborative authentication method of a safety U disk, which comprises the following steps of: when the safety U disk is inserted into a host for the first time, executing a set read-write sequence on a flash memory storage array of the safety U disk, and acquiring a PUF (Physical Unclonable Function) site of the safety U disk; reading a power-on initial state image of an SRAM (Static Random Access Memory) of an internal controller of the safe USB flash disk when the safe USB flash disk is powered on, and carrying out Hash abstract processing to generate a controller fingerprint abstract of the safe USB flash disk; when the security USB flash disk is authenticated, the host randomly generates a random number, maps the random number into a PUF bit address index and generates a PUF response of the security USB flash disk; combining the controller fingerprint abstract and the PUF response of the secure USB flash disk to obtain a session key; and realizing cooperative authentication of the secure USB flash disk according to the session key. The invention also discloses a system for realizing the collaborative authentication method of the safety USB flash disk. According to the invention, cooperative authentication of the safe USB flash disk is realized, and the reliability is higher and the safety is better.
Owner:STATE GRID HUNAN ELECTRIC POWER COMPANY LIMITED +2

Physical unclonable function (PUF) security key generation

Systems and methods of generating a security key for an integrated circuit device include generating a plurality of key bits with a physically unclonable function (PUF) generator. Unstable bits of the plurality of key bits are identified, and a security key is generated based on the plurality of key bits, wherein the security key excludes the identified unstable bits.
Owner:TAIWAN SEMICONDUCTOR MANUFACTURING CO LTD

Online upgrading method and system for embedded software of intelligent washing machine

The invention relates to the field of Internet of Things equipment security upgrading, and discloses an intelligent washing machine embedded software online upgrading method and system, and the method comprises the following steps: 1, a server side stores an encrypted upgrading program file and calculates a verification value, issues the verification value in a wireless manner at a set time, generates an equipment uniqueness voucher based on a physical unclonable function, and sends the equipment uniqueness voucher to the server side; establishing equipment identity binding; 2, dynamically calculating a network coding parameter based on the equipment uniqueness voucher according to a real-time channel quality parameter; and 3, based on the network coding parameters, carrying out dynamic block network coding transmission on the upgrade data, and generating an encrypted upgrade data packet by adopting chaotic encryption in the transmission process. According to the invention, an end-to-end security authentication system is realized by binding the unique voucher of the equipment and establishing an encrypted transmission channel. According to the scheme, the unauthorized access and firmware tampering are effectively prevented by utilizing the dual guarantee of hardware features and a cryptographic algorithm.
Owner:SHENZHEN KAILU INNOVATION TECH CO LTD

Solid state disk controller circuit and solid state disk

The invention relates to the technical field of electric digital data processing, and discloses a solid state disk controller circuit and a solid state disk. The controller circuit comprises a physical unclonable function unit based on an SRAM (Static Random Access Memory), which is used for dynamically generating a stable hardware trust root key during power-on; the secure boot and firmware decryption engine is used for deriving a firmware decryption authentication key and a data key packaging key by using the key, and carrying out decryption and integrity verification on the encrypted firmware; the runtime firmware execution monitoring unit is used for detecting illegal jump in real time and triggering safe shutdown through a hardware-level control flow diagram; and the dynamic data encryption key management unit recovers the plaintext data key and sends the plaintext data key to the encryption engine only during operation, and power failure disappears. By means of the scheme, end-to-end security protection of firmware and data is achieved, and the risks of static key leakage and firmware tampering are eradicated.
Owner:深圳市彦胜科技有限公司

Centralized control type virtual terminal detection method, device and equipment based on fusion perception

The invention discloses a centralized control type virtual terminal detection method, device and equipment based on fusion perception, and aims to solve the problems that an existing virtual terminal detection technology depends on a software level, is easy to counterfeit and is low in precision. The method comprises the following steps: a server issues an instruction to a terminal device to trigger a CPU and a vibration motor to work; the equipment synchronously captures a multi-mode physical signal generated by hardware through a built-in magnetic sensor, a vibration sensor and the like; extracting physical unclonable function characteristics capable of uniquely representing the identity of the equipment through modes such as spectral analysis; and inputting the fused features into a pre-trained deep learning model for discrimination. The model innovatively adopts a teacher-student framework to carry out lightweight training, and robustness is enhanced based on a twin neural network architecture. According to the method, the physical terminal and the virtual terminal can be effectively and accurately distinguished by utilizing physical characteristics of a hardware level, and the safety and the reliability of detection are remarkably improved.
Owner:HUNAN UNIV

Network security monitoring method and system based on Internet of Things

The invention discloses a network security monitoring method and system based on the Internet of Things, and relates to the technical field of Internet of Things security. Through dynamic challenge-response physical unclonable authentication, physical parameters and a real-time state are fused to generate a dynamic challenge value, and a physical unclonable function circuit is combined to generate a response value to realize identity verification; adaptive noise lattice-based homomorphic encryption is adopted, a ciphertext is generated based on a high-dimensional lattice-based password, and noise parameters are adjusted through channel quality to guarantee transmission security; multi-modal confrontation federated learning anomaly detection is utilized, flow, energy consumption and physical state characteristics are fused, and parameters are aggregated through a confrontation auto-encoder training model and based on federated learning; through dynamic threshold key negotiation, in combination with identity-based encryption and a block chain smart contract, distributed generation and dynamic adjustment of a key are realized; on the basis of a Merkle-salt value dynamic hash chain and block chain evidence storage, a log is generated in a trusted execution environment, a hash chain is constructed, and chain tail hash is synchronized to block chain evidence storage.
Owner:JIAYUGUAN JINNUOYI SUPPLY CHAIN CO LTD

Semiconductor device of physical unclonable function and manufacturing method thereof

A semiconductor device includes a first transistor cell. The first transistor cell generates a first current signal and a second current signal indicating a bit of a physical unclonable function. The first transistor cell includes a first transistor, a second transistor and a third transistor. The first transistor outputs the first current signal. The second transistor generates the first current signal from a first source / drain structure of the second transistor, and generates the second current signal from a second source / drain structure of the second transistor. The third transistor outputs the second current signal. The first transistor, the second transistor and the third transistor are stacked in order along a first direction. The first source / drain structure of the second transistor and the second source / drain structure of the second transistor are arranged along a second direction different from the first direction.
Owner:TAIWAN SEMICONDUCTOR MANUFACTURING CO LTD

Unmanned aerial vehicle mobile edge computing security authentication method and system based on identity-based encryption and physical unclonable function

The invention discloses an unmanned aerial vehicle mobile edge computing security authentication method and system based on identity-based encryption and a physical unclonable function, and belongs to the field of mobile edge computing and unmanned aerial vehicle communication security. A physical response is generated in combination with PUF hardware of the unmanned aerial vehicle node, the physical response and the ID are bound as a credible voucher, and meanwhile, a derived private key for IBE is generated for the unmanned aerial vehicle node based on the ID; after the unmanned aerial vehicle is networked, the KGC periodically initiates challenge response verification, the unmanned aerial vehicle generates a current response by using PUF hardware and returns the current response, the KGC performs comparison, and if an abnormality occurs, the KGC broadcasts to a full text to isolate an abnormal node; iBE is directly carried out on the basis of the ID of the receiver in communication between the unmanned aerial vehicles, and certificate exchange overhead is avoided. According to the method, lightweight identity authentication, physical attack resistance and efficient key management under dynamic topology are realized, and the method is suitable for unmanned aerial vehicle edge computing scenes with limited resources.
Owner:NO 30 INST OF CHINA ELECTRONIC TECH GRP CORP

Generation of physically unclonable function using one-time-programmable memory devices with back-end-of-line transistors

A memory device includes an anti-fuse memory cell that randomly presents either a first logic state or a second logic state. The memory cell is formed on a frontside of a substrate and at least includes a first programming transistor that is formed in a first one of a plurality of metallization layers disposed over the frontside and gated by a first programming word line, and a first reading transistor that is formed in a second one of the plurality of metallization layers disposed over the frontside or along a major surface on the frontside, coupled to the first programming transistor and a first bit line in series, and gated by a first reading word line.
Owner:TAIWAN SEMICONDUCTOR MANUFACTURING CO LTD

Robot health consensus system and method based on ontology trust

The invention relates to the technical field of robots and network security, discloses a robot health consensus system and method based on ontology trust, and aims to solve the problems that an existing robot health declaration is easy in identity counterfeiting, one-sided in state evaluation, and easy in privacy leakage and replay attack in a certification process. The method comprises the following steps: generating an identity label strongly bound with robot hardware based on a physical unclonable function (PUF); fusing multi-source sensor data in a recursive updating mode to generate a state topology vector capable of reflecting a historical evolution trend; and obtaining a comprehensive health value in combination with the internal health value calculated by the vector and a network consensus factor. Through physical layer identity anchoring, dynamic and continuous state evaluation and an encryption certification mechanism, the authenticity and fraud resistance of the health declaration of the robot are remarkably improved, comprehensive evaluation of the health state of the robot is achieved, state privacy of the robot is effectively protected in interaction, and replay attacks are prevented.
Owner:CHENGDU PATZHILIHU DIGITAL TECHNOLOGY CO LTD

Physical unclonable function generator and true random number generator

The embodiment of the invention provides a physical unclonable function generator and a true random number generator. The physical unclonable function generator comprises a storage array and a control unit, a storage unit in the storage array comprises a magnetic storage device, and the magnetic storage device comprises a magnetic tunnel junction; the control unit is used for controlling the application of a magnetic field along a target direction to the storage array, and reading the resistance state of the storage unit to generate a physical unclonable function after the application of the magnetic field is stopped; wherein the target direction is perpendicular to or approximately perpendicular to the magnetic moment direction of the free layer in the magnetic tunnel junction in the in-plane direction, and the randomness and uniformity of the physical unclonable function are improved.
Owner:TRUTH MEMORY CORP

Semantic communication security enhancement system based on SIM (Subscriber Identity Module) card quantum key presetting

The invention relates to the technical field of mobile communication, and particularly provides a semantic communication security enhancement system based on SIM card quantum key presetting, comprising an SIM card security base module configured to generate physical unclonable function characteristics and preset quantum security keys by using SIM card hardware characteristics; the lightweight authentication protocol module is in communication connection with the SIM card security base module and is configured to realize dynamic identity authentication based on physical unclonable function characteristics and a quantum security key; the semantic security enhancement module is configured to perform privacy protection processing on the semantic communication data; the trusted execution environment optimization module is in communication connection with the SIM card safety base module and the lightweight authentication protocol module and is configured to construct a hardware-software collaborative trusted execution environment; the quantum security enhancement module is integrated on the SIM card security base module and is configured to provide quantum attack resistance and dynamic key management; according to the invention, the real-time performance and anti-quantum computing capability of key distribution are significantly improved.
Owner:CHINA MOBILE INTERNET CO LTD +1

Identity authentication method based on secure computer

The invention discloses an identity authentication method based on a secure computer, which relates to the technical field of computer security, and comprises the following steps: deploying an authentication module, and pre-burning an excitation-response pair library of a physical unclonable function; chaotic mapping parameters are randomly initialized, and a chaotic sequence is generated through improved Logistic mapping; sending random excitation to the PUF to obtain an original response, segmenting the original response, and mixing the segmented original response with the chaos sequence; the confusion response is recombined into a three-dimensional matrix, nonlinear diffusion is achieved through a rotation transformation formula, and then the confusion response is flattened into a final registration response; after the user submits a user name, the system generates a random challenge and a current timestamp; calculating a first authentication factor based on the registration response and the timestamp, and recursively generating a factor chain; and the server repeatedly generates a factor chain for matching, updates a registration response if the matching is successful, and triggers a locking mechanism if the matching is failed. According to the chained dynamic authentication method based on PUF response chaos confusion, the dynamic unpredictability of each authentication session can be realized.
Owner:FIFTH AFFILIATED HOSPITAL OF ZHENGZHOU UNIV

Card binding security enhancement system and method fusing radio frequency fingerprint and PUF (Physical Unclonable Function)

The invention provides a radio frequency fingerprint and PUF fused machine card binding security enhancement system and method, the system comprises a terminal side device and a network side device deployed at a 5G mobile communication system air interface, the terminal side device is provided with an SIM card and an interaction processing module, and the SIM card comprises a PUF processing module and a password and data processing and forwarding module; after the terminal side device obtains the special identity identification code of the terminal, the identification code is used for generating a private key through a physical unclonable function (PUF) of the SIM card; the network side device is provided with a base station and a core network, a radio frequency fingerprint processing module, a password and data processing and forwarding module and a functional module are added inside or outside the core network, and secondary identity authentication, encryption and forwarding of the terminal are realized based on radio frequency fingerprint identity feature information; the special identity identification code of the terminal does not need to be stored for a long time, and the private key does not need to be locally stored, is easy to pad at a time, is regenerated by the PUF every time and is deleted after being used, so that an attacker cannot obtain the key, and the overall security is improved.
Owner:MILITARY SECRECY QUALIFICATION EXAMINATION & CERTIFICATION CENT +1

Physically unclonable function (PUF) authority for identification trust in communications with internet of things (IOT) devices

Physically unclonable function (PUF) enabling secure communications with a PUF enrolled device includes directing a PUF unit to acquire a PUF response to a on optical stimulus upon a physical random medium of the PUF unit for the enrollment, identification and secure communication with a device. The method additionally includes retrieving the PUF response from the PUF unit and generating a secure hash identifier (SHI) from the PUF response, from which a digital certificate may be created with the SHI. Finally, the method includes storing the SHI, digital certificate and PUF response in a record of a registry in connection with the device for use in a subsequent authentication of the device by a communicating client in order to establish a secure tunnel between the communicating client and the device.
Owner:EULAMBIA ADVANCED TECH LTD

PUF-rake: a PUF-based robust and lightweight authentication and key establishment protocol

Low-resource overhead computer-implemented methods for enrolling, authenticating and establishing encryption keys for one or more queried devices, each of the queried devices including an electrical circuit configured to output electrical signals indica-five of a physically unclonable function (PUF) of the queried device. Authentication and encryption are implemented in low-resource queried device computational architectures, with embodiments of the present invention utilizing pseudo-random number generators configured based on unique primitive polynomials, masking and unmasking functions, and error correction protocols executed in a querying device.
Owner:KANSAS STATE UNIV RES FOUND

Storage device utilizing physically unclonable function (PUF) based secret sharing scheme for data encryption / decryption

Systems and methods are disclosed herein for protecting data in a storage device by encrypting or decrypting the data with a Data Encryption Key (DEK). The storage device is communicatively coupled to a host and is locked with the host by secret sharing. In one example, the storage device comprises a Physically Unclonable Function (PUF) configured to, during a key generation phase of operation, generate a set of DEK responses based on a set of DEK challenges (chalDEK) and an assembler configured to obtain a set of SED DEK secret shares (SSSED) based on the first set of DEK responses, receive additional data, and assemble at least the set of SED DEK secret shares (SSSED) and the additional data to create a DEK master secret. The storage device also comprises a crypto module configured to receive a DEK based on the master secret and perform encryption and / or decryption of data using the DEK.
Owner:TELEFONAKTIEBOLAGET LM ERICSSON (PUBL)