-
1.
公开(公告)号:US10511488B2
公开(公告)日:2019-12-17
申请号:US15226294
申请日:2016-08-02
Inventor: Yong Hyuk Moon , Dae Won Kim , Young Sae Kim , Seung Yong Yoon , Jin Hee Han , Jae Deok Lim , Jeong Nyeo Kim , Yong Sung Jeon
Abstract: A system for performing an integrity verification based on a distributed delegator and verifying an integrity of a plurality of individual devices based on a network includes: a first individual device which is an integrity verification target of the plurality of individual devices; a second individual device configured to vicariously verify the verification target device of the plurality of individual devices; and a remote device management server configured to select the second individual device of the plurality of individual devices as a verification delegator, and to receive a result of integrity verification of the first individual device by the second individual device.
-
2.
公开(公告)号:US10915633B2
公开(公告)日:2021-02-09
申请号:US16204802
申请日:2018-11-29
Inventor: Yong Hyuk Moon , Dae Won Kim , Young Sae Kim , Seung Yong Yoon , Jin Hee Han , Jeong Nyeo Kim , Jae Deok Lim
IPC: G06F21/57 , G06F21/51 , H04L9/32 , G06F21/62 , G06F21/54 , H04L9/08 , G06F12/14 , G06F8/65 , G06F8/654 , H04L9/06
Abstract: A method and an apparatus for device security verification utilizing a virtual trusted computing base are provided. The validity of a key for decryption is verified by a secure memory loader running on a processor of a device after booting of the device which is a computing device, and if the key is valid, encrypted firmware stored in a memory of the device is decrypted using the key to verify the confidentiality of the firmware. Then, the security memory loader verifies the authentication and integrity of the firmware by comparing a signature value generated for the decrypted firmware with an existing signature value.
-