In June 2024 it's 10 years since OP-TEE was published as an open source project. OP-TEE has been a significant project for Linaro and it has been used as a reference TEE implementation at Arm. Also in addition to that it's used by lots of organizations, c
A commonly heard adage in security is "never design your own cryptography". Related to this is advice that you also shouldn't design your own protocol. In this talk we will start with what seems to be a simple requirement for cryptography, and go through
The DICE attestation scheme is used in Android pVMs to establish trust towards the device. The DPE spec enhances the original idea to move all the related computation into a secure enclave to enforce HW protection. ARM's RSE IP has the required security a
OP-TEE OS offers an almost full software implementation of the GP TEE APIs and other services exposed to trusted applications and to non-secure OSes. However, OP-TEE OS also offers several frameworks to ease integration of device drivers for platform reso