Hardware Trust Indicator for Software Integrity Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for indicating software integrity on computing devices are vulnerable to imitation attacks, as on-screen messages can be falsified by malicious code, making it difficult for users to trust the trustworthiness of executing software.

Innovation Solution

A hardware trust evaluation device, such as a Trusted Platform Module (TPM), is integrated with a trust indicator like an LED, which provides a physical and resilient indication of software trustworthiness, separate from the main display, to minimize imitation risks and ensure user trust.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If on-screen messages are used to indicate software integrity, then users can receive validation results, but the indication can be imitated and falsified by malicious code

Engineering Contradiction:
Improvetrustworthiness of integrity indicationVSAvoidimitation attacks by malicious code
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The system separates the integrity indication function from the main display by using a dedicated trust indicator (such as an LED) that is physically distinct from the screen. This segmentation ensures that the trust indicator cannot be controlled or falsified by malicious software running on the device, as it operates independently from the software-controlled display.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A hardware trust indicator serves as an intermediary between the software integrity verification system and the user. This physical indicator (LED, display, speaker, or buzzer) translates the abstract integrity verification results into a tangible signal that users can perceive, while being immune to software-based imitation attacks.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If a hardware trust indicator is used, then resistance to imitation attacks is improved, but device complexity increases

Engineering Contradiction:
Improveresistance to imitation attacksVSAvoidhardware integration requirements
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The trust indicator is designed to work with various types of hardware trust evaluation devices (such as TPMs) and can utilize different output mechanisms (LEDs, displays, speakers, buzzers). This multi-functionality allows the same trust indicator architecture to serve multiple purposes across different device types without requiring complex custom implementations for each scenario.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9942257B1Trustworthy indication of software integrity
Publication Date: 2018.04.10 AMAZON TECH INC
  • US9942257B1 patent drawing
  • US9942257B1 patent drawing
  • US9942257B1 patent drawing

AI summary

Computing devices are disclosed that include functionality for providing a trustworthy indication of software integrity. The computing devices include a hardware trust evaluation device capable of determining the trustworthiness of computer programs executing on the device. At least one trust indicator is also connected to the hardware trust evaluation device for providing an external indication of the trustworthiness of a computer program. If the hardware trust evaluation device determines that a program is trustworthy, the trust evaluation device causes the trust indicator to provide a positive indication of the trustworthiness of the computer program to a user of the computing device. If the hardware trust evaluation device determines that a program is not trustworthy, the trust evaluation device causes the trust indicator to provide a negative indication of the trustworthiness of the computer program. Certain functionality might also be restricted in response to determining that a program is not trustworthy.