Högskolan i Skövde

his.sePublications
Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • apa-cv
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Enhancing IoT Device Security in Autonomous Building Systems: A Study on Secure Boot Mechanisms
University of Skövde, School of Informatics.
2025 (English)Independent thesis Advanced level (degree of Master (Two Years)), 20 credits / 30 HE creditsStudent thesis
Abstract [en]

The rapid integration of Internet of Things (IoT) devices in autonomous building systems has enhanced operational efficiency but also introduced significant security vulnerabilities, particularly at the firmware level including tampering, rollback attacks and unauthorized code execution that compromise system integrity. The study explores the effectiveness of Secure Boot mechanisms enhanced by Trusted Platform Module (TPM) integration, in addressing threats in resource-constrained IoT environments. A mixed-methods approach, combining literature review and simulation-based experiments helps to identify design principles, attack vectors, and implementation challenges along with tested Secure Boot’s resilience against kernel signature tampering, firmware corruption, and rollback scenarios. Performance metrics like boot time, CPU usage, memory consumption, and PCR values were also recorded to assess security enforcement impact. This study demonstrates that Secure Boot effectively blocks unauthorized firmware and enforces trust chain from the bootloader to the operating system execution. TPM integration enhances security by providing cryptographic measurement and attestation capabilities. Although minor performance overheads were observed, they remained acceptable limit for IoT class devices. The simulation environment setup using open-source tools like QEMU, UEFI firmware, and a virtual TPM offers a controlled testing environment to validates Secure Boot's practical effectiveness and scalability for real world scenario. This study provides actionable practical insights for deploying Secure Boot in autonomous systems and support emerging cybersecurity best practices, standardization efforts, and future research on firmware level protection in the IoT ecosystem.

Place, publisher, year, edition, pages
2025. , p. v, 57
Keywords [en]
Secure Boot, IoT Security, Autonomous Building Systems, Tampering, Rollback Protection, Chain of Trust, Trusted Platform Module (TPM), Platform Configuration Registers (PCR), UEFI Firmware
National Category
Computer Engineering
Identifiers
URN: urn:nbn:se:his:diva-25477OAI: oai:DiVA.org:his-25477DiVA, id: diva2:1983411
Subject / course
Informationsteknologi
Educational program
Privacy, Information and Cyber Security - Master's Programme 120 ECTS
Supervisors
Examiners
Available from: 2025-07-10 Created: 2025-07-10 Last updated: 2025-09-29Bibliographically approved

Open Access in DiVA

fulltext(1273 kB)819 downloads
File information
File name FULLTEXT01.pdfFile size 1273 kBChecksum SHA-512
ae99fed9d23ce87399d130ffa5c8abd31c2ca8a9afbe327f6504ef04e690d8aa2286ad52edf958b7ee9132abe68e600360135c4645124f47dc2a5a98a29c9df1
Type fulltextMimetype application/pdf

By organisation
School of Informatics
Computer Engineering

Search outside of DiVA

GoogleGoogle Scholar
Total: 821 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

urn-nbn

Altmetric score

urn-nbn
Total: 355 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • apa-cv
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf