IBM embeds cryptography into mobile chips

IBM talks up new technology for boosting security on mobile phones and PDA chips

Written by Daniel Robinson

IBM has announced new technology to bring a higher level of security to devices such as phones and PDAs. The move could make data encryption ubiquitous in devices if adopted, but it may be several years before it finds its way into handsets.

The technology, dubbed Secure Blue by IBM, integrates encryption hardware into the processor chip at the heart of devices. This extends protection to all information stored on the device, according to IBM, and makes it less susceptible to tampering than software-based security tools.

Advertisement

With up to half of all enterprise data now stored in endpoint devices, security becomes increasingly important according to Guerney Hunt, senior manager of the Distributed Infrastructure group at IBM Research.

"Cellphones and PDAs can easily fall into the hands of people who want to get at the data stored in them," he said.

While some mobile processor chips already have hardware to accelerate encryption algorithms, this is typically used for encrypting communications or individual files. Secure Blue takes protection a stage further by encrypting all information in the device's memory.

"This is needed because none of the chips available today protect against modification of data in memory, and anyone who acquires your mobile device can get at that data. We offer the ability to keep all information, including program code, encrypted," Hunt said.

Secure Blue performs encryption and integrity checking at the full memory bandwidth of the processor, making crypto operation transparent to software running on the device.

"Everything coming into the processor chip is decrypted, and everything going out [to memory] is automatically encrypted," Hunt said. The integrity protection also ensures that data read from memory is the same as that which was written, he added.

Secure Blue even performs 'whitening', which pads out encrypted data with redundant information, foiling attempts by malware to uncover the encryption keys via brute-force analysis of device memory content.

The technology is scalable from cellphones right up to supercomputers, IBM said. It is implemented in some devices today, but the company declined to name the products in question.

For Secure Blue to become a feature of phones or handhelds, IBM will have to get chipmakers such as Texas Instruments and Intel to license the technology in their mobile processors. IBM declined to detail any such agreements, but Hunt said that it would take about two years for the technology to filter through into end-user products.

Tags:

Further reading

Related articles

Related whitepapers

Related jobs

Do you agree?

IT white papers

Search vnunet IThound

Top categories

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Watch

Shaun Nichols and Iain Thomson

10 Oct 2008

7.33 MBPodcast Special: Views from the Valley More...

Podcast image

09 Oct 2008

12.99 MBComputing podcast - IT implications of the banking crisis, and the FSA clamps down on IT security More...

Shaun Nichols and Iain Thomson

03 Oct 2008

6.49 MBPodcast Special: Views from the Valley More...

Poll

Google Android

Google Android

Are you intending to try out a Google Android mobile phone?

Previous poll results

Spotlight

Ministry of Defence

MoD data loss total could hit 1.7 million

New figures far higher than initial estimates   More...

Sun Microsystems

Sun Sparc server shatters seven standards

T5440 sets new benchmark records   More...

Gary McKinnon

Home Office turns down latest McKinnon appeal

Home Secretary informs lawyers of arrangements for US extradition   More...

Network cables

Network Instruments touts nanosecond apps troubleshooting

Observer 13 offers upgraded performance and forensic network analysis   More...

Primary Navigation