ORSHIN Attack Defense Framework

Firmware Downgrade Attack

Description

Firmware Downgrade Attack

CWE

1328

CVE

Attack Surfaces

SoloKey

FW

FW-SW Upgrade (MITRE EMB3D PID-27)

Attack Vectors

FA (MITRE EMB3D TID-105)

Firmware Rollback (MITRE EMB3D TID-216)

Defenses

Eliminate the Possibility to Upload the Firmare in Unordered Chuncks, Require Ascending Order of Firmware Chuncks