New for RTOS Security: The Enhanced Security Module for the SAFERTOS Product Range from WITTENSTEIN high integrity systems
Summary
In a conventional flash driven system, the typical security boundary, or attack surface, is the external interfaces (the RTOS and host application combined as a block). The objective of the ESM is to make it possible for the application designer to reduce the attack surface of a user mode Task to a minimum. This thereby restricts a bad actor to just the compromised user mode Task, and prevents access to the rest of the system. Typical users of the SAFERTOS ESM include developers who need enhanced data protection in high risk applications, those using large, complex devices on multiple cores, or those running third party code. The ESM is constructed from a series of security features that constrain the access a user mode Task has to the rest of the system.