A Stealth Security Hardening Method Based on SSD Firmware Function Extension

Xiao Yu, Zhao Li, Xu Qiao, Yuan Tan, Yuanzhang Li, Li Zhang*

*此作品的通讯作者

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

In recent years, issues related to information security have received increasing attention. Expanding the security-related functionality of SSD firmware can provide an additional method for implementing security features in the host system while taking advantage of the excellent performance of the SSD controller. This paper proposes a stealth security hardening method based on SSD Firmware Function Extension. By reverse engineering the firmware program and inserting jump instructions at specific locations, the firmware program can jump to and execute the extension program inserted into the original unused space of the firmware. This can be done without affecting the normal use of the SSD, realizing the functional expansion of the firmware, which mainly includes executing remote code sent by the host, invoking timers, direct read and write flash memory, and self-destruction under specific circumstances. The availability of extended functions and the change in read and write performance after the expansion were experimentally tested.

源语言英语
主期刊名Neural Information Processing - 30th International Conference, ICONIP 2023, Proceedings
编辑Biao Luo, Long Cheng, Zheng-Guang Wu, Hongyi Li, Chaojie Li
出版商Springer Science and Business Media Deutschland GmbH
362-375
页数14
ISBN(印刷版)9789819981373
DOI
出版状态已出版 - 2024
活动30th International Conference on Neural Information Processing, ICONIP 2023 - Changsha, 中国
期限: 20 11月 202323 11月 2023

出版系列

姓名Communications in Computer and Information Science
1963 CCIS
ISSN(印刷版)1865-0929
ISSN(电子版)1865-0937

会议

会议30th International Conference on Neural Information Processing, ICONIP 2023
国家/地区中国
Changsha
时期20/11/2323/11/23

指纹

探究 'A Stealth Security Hardening Method Based on SSD Firmware Function Extension' 的科研主题。它们共同构成独一无二的指纹。

引用此