Abstract:
When TrustZone is used to build a trusted execution environment for embedded devices, existing solutions have problems such as low security and long response time. Therefore, this paper proposes a TrustZone- based trusted execution environment construction method for power edge intelligent devices. In the normal world, a secure enclave was established to safeguard the runtime security of the application. In the secure world, a single security monitoring module was deployed, responsible for the implementation of integrity measurement and execution control functions. When a safety- related event occurs in the normal world, it was captured by the normal monitoring module and subsequently transferred to the secure world for processing. Only operations deemed safe by the security monitoring module were permitted to be executed. The experimental results demonstrate that this method can effectively resist attacks against kernel, memory and application with low overhead.