Smart and Secure: Preserving Privacy in Untrusted Home Routers

Seung-seob Lee,Hang Shi,Kun Tan,Yunxin Liu,SuKyoung Lee,Yong Cui
DOI: https://doi.org/10.1145/2967360.2967380
2016-01-01
Abstract:Recently, wireless home routers increasingly become smart. While these smart routers provide rich functionalities to users, they also raise security concerns. Since a smart home router may process and store personal data for users, once compromised, these sensitive information will be exposed. Unfortunately, current operating systems on home routers are far from secure. As a consequence, users are facing a difficult tradeoff between functionality and privacy risks. This paper attacks this dilemma with a novel SEAL architecture for home routers. SEAL leverages the ARM TrustZone technology to divide a conventional router OS (i.e., Linux) in a non-secure/normal world. All sensitive user data are shielded from the normal world using encryption. Modules (called applets) that process the sensitive data are located in a secure world and confined in secure sandboxes provided by a tiny secure OS. We report the system design of SEAL and our preliminary implementation and evaluation results.
What problem does this paper attempt to address?