-
1.
公开(公告)号:US20240176886A1
公开(公告)日:2024-05-30
申请号:US18510881
申请日:2023-11-16
Applicant: Samsung Electronics Co., Ltd.
Inventor: Younsung CHU , Jisoo KIM
CPC classification number: G06F21/575 , G06F21/79
Abstract: Provided is a system including a memory device including an interface configured to receive a measurement value generation request signal from a host and transmit a first measurement value and a second measurement value to the host, attester firmware configured to receive measurement values for a plurality of pieces of firmware, a bootloader configured to perform booting, a first register configured to record a first measurement value of the bootloader, and a second register configured to record a second measurement value for the attester firmware in response to the first measurement value being recorded, and the host including processing circuitry configured to receive the first measurement value and the second measurement value, and determine whether to falsify the bootloader or the attester firmware based on at least one of (1) the first measurement value and first reference values or (2) the second measurement value and second refence values.
-
2.
公开(公告)号:US20230342044A1
公开(公告)日:2023-10-26
申请号:US18217736
申请日:2023-07-03
Applicant: SAMSUNG ELECTRONICS CO., LTD.
Inventor: Hyunsook HONG , Jisoo KIM , Yongsuk LEE , Younsung CHU , Hyungsup KIM
CPC classification number: G06F3/0622 , G06F3/0673 , G06F3/0659 , G06F3/0637 , G06F21/78 , G06F7/588
Abstract: A method of writing data to a protected region in response to a request from a host includes receiving a first write request including a first host message authentication code and a first random number from the host, verifying the first write request based on a write count, the first random number, and the first host message authentication code, updating the write count based on a result of verifying the first write request, generating a first device message authentication code based on the updated write count and the first random number, and providing the host with a first response including the first device message authentication code and a result of the verifying of the first write request.
-
公开(公告)号:US20240168675A1
公开(公告)日:2024-05-23
申请号:US18333994
申请日:2023-06-13
Applicant: Samsung Electronics Co., Ltd.
Inventor: Jisoo KIM , Younsung CHU
IPC: G06F3/06
CPC classification number: G06F3/0655 , G06F3/061 , G06F3/0619 , G06F3/0679
Abstract: Disclosed is a storage apparatus for data integrity. The storage apparatus includes a hash value table configured to store information on a secured area in a main memory of a host communicating through a compute express link (CXL) interface and a hash value corresponding to the secured area, and a monitoring controller configured to read sensitive data stored in the secured area from the main memory through the CXL interface based on the information on the secured area, calculate a hash value of the sensitive data, compare the hash value of the sensitive data with the hash value corresponding to the secured area to determine whether the sensitive data is falsified, and recover the falsified sensitive data in response to determining that the sensitive data is falsified.
-
公开(公告)号:US20210306135A1
公开(公告)日:2021-09-30
申请号:US17082790
申请日:2020-10-28
Applicant: SAMSUNG ELECTRONICS CO., LTD.
Inventor: Younsung CHU , Junho HUH
Abstract: An electronic device of a first domain, which is a blockchain-based public key infrastructure (PKI) domain, includes: an interface configured to receive, from a first entity belonging to a second domain which is a certification authority (CA)-based PKI domain, a first certificate of the first entity and a second certificate of a second entity, wherein the second entity is an upper node of the first entity and is a node of a blockchain; a memory configured to store the first certificate and the second certificate; and a processor configured to look up a transaction corresponding to the second entity at a distributed ledger of the first domain based on an identifier of the second entity, verify the second certificate based on the transaction, and verify the first certificate based on the second certificate.
-
5.
公开(公告)号:US20210176075A1
公开(公告)日:2021-06-10
申请号:US16923521
申请日:2020-07-08
Applicant: Samsung Electronics Co., Ltd.
Inventor: Younsung CHU , Junho HUH
Abstract: A cryptographic communication system includes an electronic device configured to output a certificate and a transaction including a first hash value in which a certificate is hashed certificate, and a node configured to first determine whether the electronic device generated the transaction based on the transaction and the certificate, to second determine whether information included in the transaction and information included in the certificate coincide, and to third add a block to a distributed ledger depending on the result of the first determining and the second determining. The block includes the transaction, and the electronic device is configured to generate the certificate such that the certificate includes an ID of the electronic device and a public key of the electronic device.
-
公开(公告)号:US20250021239A1
公开(公告)日:2025-01-16
申请号:US18600853
申请日:2024-03-11
Applicant: Samsung Electronics Co., Ltd.
Inventor: Sungho YOON , Younsung CHU , Youngmoon KIM
IPC: G06F3/06
Abstract: Provided are storage devices, methods of operating a storage controller, and universal flash storage (UFS) systems. The storage device includes a memory group configured to store unique device secret (UDS) data including a UDS, and pre-installed device secret (PDS) data including a PDS, and a processor configured to receive a first endorsement generated based on the PDS and a first firmware image, perform a first integrity check for the first firmware image based on the PDS of the PDS data, the first firmware image, and the first endorsement, and generate a second endorsement based on the UDS and the first firmware image in response to a pass result of the first integrity check.
-
公开(公告)号:US20240078316A1
公开(公告)日:2024-03-07
申请号:US18205866
申请日:2023-06-05
Applicant: SAMSUNG ELECTRONICS CO., LTD.
Inventor: Younsung CHU , Jisoo Kim
CPC classification number: G06F21/575 , G06F21/602
Abstract: An electronic device includes at least one processor, a first storage unit configured to store a secret value set by a host, a second storage unit configured to store a boot loader code, a first firmware code, and a second firmware code, and a read-only memory (ROM) configured to store a ROM code executable in a booting operation. The ROM code, when executed, may cause the at least one processor to generate a first booting value based on the secret value and a first hash value for the boot loader code, the boot loader code, when executed, may cause the at least one processor to generate a second booting value based on the first booting value and a second hash value for the first firmware code, and the first firmware code, when executed, may cause the at least one processor to generate a third booting value based on the second booting value and a third hash value for the second firmware code.
-
公开(公告)号:US20230153441A1
公开(公告)日:2023-05-18
申请号:US17842216
申请日:2022-06-16
Applicant: Samsung Electronics Co., Ltd.
Inventor: Younsung CHU , Jisoo KIM , Youngtak NOH
CPC classification number: G06F21/575 , G06F21/79 , G06F21/31 , G06F21/602
Abstract: Disclosed is a storage device which includes a nonvolatile memory device that stores booting data and user data, and a memory controller that includes a first core, a second core, and third cores. In an initialization operation, the first core performs first authentication on at least a first part of the booting data. In response to that the first authentication succeeds, the first core generates a device identifier, and the second core loads the first part of the booting data and performs first booting. The first core performs second authentication on at least a second part of the booting data. In response to that the second authentication succeeds, the first core generates a first certificate and a second certificate, and the second core loads the second part of the booting data and performs second booting.
-
公开(公告)号:US20220187997A1
公开(公告)日:2022-06-16
申请号:US17374098
申请日:2021-07-13
Applicant: SAMSUNG ELECTRONICS CO., LTD.
Inventor: Younsung CHU , Jisoo KIM , Hyungsup KIM , Yongsuk LEE , Hyunsook HONG
IPC: G06F3/06
Abstract: A storage device configured to communicate with a host, the storage device including: a memory including a protected region; and a controller configured to provide the host with a first response including a first device message authentication code and a first device message, receive a first write request from the host, the first write request including a first host message authentication code and a first host message, generate a first message verification code based on the first device message authentication code and the first host message, verify the first write request based on the first host message authentication code and the first message verification code, and write data included in the first write request to the protected region when the verification of the first write request succeeds.
-
10.
公开(公告)号:US20250085874A1
公开(公告)日:2025-03-13
申请号:US18800350
申请日:2024-08-12
Applicant: Samsung Electronics Co., Ltd.
Inventor: Mungyu BAE , Sungho YOON , Jisoo KIM , Younsung CHU
IPC: G06F3/06
Abstract: Provided is a storage system. When a user registration request for a new user is received, the storage system is configured to allocate a user storage space for the new user in a plurality of storage devices, and, when a user activation request for the new user is received, the storage system is configured to generate user identification information regarding the new user, based on user credential information of the new user included in the user activation request, allocate a user area for the new user in the memory, and store the user identification information regarding the new user in the user area for the new user.
-
-
-
-
-
-
-
-
-