Engineering Secure Devices: A Practical Guide for Embedded System Architects and Developers (Paperback)
暫譯: 工程安全裝置:嵌入式系統架構師與開發者的實用指南

Merli, Dominik

  • 出版商: No Starch Press
  • 出版日期: 2024-07-23
  • 售價: $2,070
  • 貴賓價: 9.5$1,967
  • 語言: 英文
  • 頁數: 288
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 1718503482
  • ISBN-13: 9781718503489
  • 相關分類: 嵌入式系統
  • 立即出貨 (庫存=1)

相關主題

商品描述

This practical guide to building embedded and IoT devices securely is an essential resource for current and future developers tasked with protecting users from the potential threats of these ubiquitous devices.

As an engineer, you know that countless devices--from industrial components to smart household appliances--rely on embedded computer systems. But how do you balance the need for robust security with performance and innovative product design?

Engineering Secure Devices will guide you through crafting secure devices--from protecting crucial assets to the nature of attackers and the risks they pose. You'll explore the technical intricacies and pros and cons of symmetric and asymmetric cryptography and learn how to use and analyze random number generators and cryptographic algorithms. You'll learn how to ensure confidential data storage and secure memory, and devise secure device identity solutions and communication protocols to reinforce system architecture against potential threats. And finally, you'll learn how to properly design secure boot and secure update processes, manage access control, and perform system monitoring to secure IoT devices.

Real-world case studies throughout highlight practical applications, solutions, and obstacles, such as firmware updates with SWUpdate, secure communication with MQTT, and advanced access control with AppArmor.

You'll also dig into topics like:

  • Analyzing the performance of cryptographic implementations in both hardware and software
  • Considerations for secure boot and software update processes to ensure ongoing firmware integrity
  • Designing robust device architectures that withstand attacks while maintaining critical operations
  • Developing strategies to detect and respond to anomalies or security breaches in embedded systems


Whether you're an IoT developer or an embedded system architect, Engineering Secure Devices equips you with the indispensable knowledge to design, secure, and support the next generation of smart devices--from webcams to four-legged robots.

商品描述(中文翻譯)

這本關於安全構建嵌入式和物聯網設備的實用指南,是當前和未來開發人員保護用戶免受這些無處不在的設備潛在威脅的重要資源。

作為一名工程師,您知道無數設備——從工業元件到智能家電——都依賴於嵌入式計算機系統。但是,您如何在強健的安全性、性能和創新產品設計之間取得平衡呢?

《工程安全設備》將指導您如何打造安全的設備——從保護關鍵資產到攻擊者的性質及其帶來的風險。您將探索對稱和非對稱加密的技術細節及其優缺點,並學習如何使用和分析隨機數生成器和加密算法。您將學習如何確保機密數據存儲和安全內存,並設計安全的設備身份解決方案和通信協議,以加強系統架構抵禦潛在威脅。最後,您將學習如何正確設計安全啟動和安全更新過程,管理訪問控制,並執行系統監控以保護物聯網設備。

書中穿插的實際案例研究突顯了實用應用、解決方案和障礙,例如使用 SWUpdate 進行固件更新、使用 MQTT 進行安全通信,以及使用 AppArmor 進行高級訪問控制。

您還將深入探討以下主題:

- 分析硬體和軟體中加密實現的性能
- 確保持續固件完整性的安全啟動和軟體更新過程的考量
- 設計能夠抵禦攻擊的穩健設備架構,同時保持關鍵操作
- 開發檢測和應對嵌入式系統中異常或安全漏洞的策略

無論您是物聯網開發人員還是嵌入式系統架構師,《工程安全設備》都為您提供了設計、安全和支持下一代智能設備(從網路攝影機到四足機器人)所需的不可或缺的知識。

作者簡介

Dominik Merli is a professor of IT Security at the Augsburg Technical University of Applied Sciences, with over a decade of experience in security engineering for industrial, automotive, and semiconductor sectors at companies like Fraunhofer and Siemens. He holds a master's of engineering degree from Ulster University and a doctorate from the Technical University of Munich.

作者簡介(中文翻譯)

Dominik Merli 是奧格斯堡應用科技大學的資訊安全教授,擁有超過十年的安全工程經驗,曾在 Fraunhofer 和 Siemens 等公司服務於工業、汽車和半導體領域。他擁有來自阿爾斯特大學的工程碩士學位以及慕尼黑工業大學的博士學位。