Software-Configured CPU Security via Data Bit Scrambling
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Industrial devices and systems face challenges in protecting their CPUs from manipulation and external attacks, particularly due to hardware weaknesses such as backdoors and trojans, which can lead to malfunction or destruction, and existing cryptographic methods may not adequately safeguard against unauthorized access and data integrity.
Innovation Solution
A software-configured processing unit with a security unit that alters data bit sequences and uses a data lock-keeper to create a secure, randomized data path, preventing external access to hardware units, and employing a software-defined CPU architecture that emulates a CPU on standard hardware, ensuring trustworthy execution and protecting against hardware weaknesses.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If cryptographic IT security mechanisms are used to protect devices from manipulation and reverse engineering, then security and data integrity are improved, but device complexity increases
Solution Approach 1:
The patent introduces a software-configured processing unit that acts as an intermediary layer between the hardware CPU and external threats. This virtualization layer isolates the hardware from direct access, allowing cryptographic security mechanisms to operate at the software level while protecting the underlying hardware from manipulation and reverse engineering attacks.
Solution Approach 2:
The system segments the processing functionality by separating the hardware CPU from the actual processing tasks. The hardware CPU runs a virtual machine monitor that manages multiple virtual processing units, allowing security functions to be isolated and managed independently from the main processing operations.
2Reliability
If a hardware CPU is used for control devices, then processing speed and reliability are improved, but hardware weaknesses such as backdoors and trojans become a risk
Solution Approach 1:
The patent creates virtual copies of the CPU functionality through software-configured processing units. Instead of directly using the hardware CPU for all processing, virtual representations are created that can be securely managed and isolated, preventing hardware weaknesses from directly affecting processing reliability.
Solution Approach 2:
A virtual machine monitor serves as an intermediary between the hardware CPU and processing tasks. This intermediary layer prevents direct access to hardware vulnerabilities while maintaining processing reliability through controlled and monitored execution environments.
3Adaptability or versatility
If external data interfaces are provided for network communication, then adaptability and functionality are improved, but vulnerability to external attacks and unauthorized access increases
Solution Approach 1:
The software-configured processing unit acts as an intermediary between external data interfaces and the hardware CPU. All external communications are processed through this virtualized layer, which can validate, filter, and control data flows, preventing unauthorized access and external attacks while maintaining communication capabilities.
Solution Approach 2:
Security validation and authentication are performed in advance by the virtual machine monitor before data reaches the hardware CPU. This preliminary action includes verifying data integrity, authenticating communication partners, and filtering malicious content, preventing external attacks before they can affect the system.
Data Source
AI summary
Provided is an apparatus (TFDC) for operating a software-configured processing unit (SDS) for a device, in particular a field device (TFD), wherein the apparatus, according to a prescribed and/or prescribable architecture, includes at least one processor (CPU) and a number of hardware units, having: a security unit (IOS; MS) configured to cause a change in the arrangement of the data bit sequence of at least one data stream provided and/or routed to the processing unit (SDS) to protect the hardware units from manipulation. The processing unit is trustworthy, i.e., is protected from manipulation and attack from the outside. The data stream arrives at the device. A “number” here and above denotes a number of one or more.

