LATIDIA · Ciberseguridad
Protección de la IA de la CPU en los TEE de borde: la promesa y los desafíos prácticos de WebAssembly
arXiv:2610.12050v1 Announce Type: new Resumen: Los modelos de IA en el hardware de borde contienen propiedad intelectual (IP) importante, pero un adversario puede robarla cuando logran acceso root. Entornos de ejecución de confianza (TEE) l
WhatsApp ↗Telegram ↗
La noticia
arXiv:2610.12050v1 Announce Type: new Abstract: AI models on edge hardware contain important intellectual property (IP), but an adversary can steal it when they achieve root access. Trusted Execution Environments (TEE) like Arm TrustZone protect against these Operating System (OS) level attacks. However, they are challenging to use. More precisely, it is difficult to run unaltered applications inside a TEE. This work presents a solution that allows the execution of unaltered AI models, compiled to WebAssembly, on the WebAssembly Micro Runtime (WAMR) in OP-TEE for Arm TrustZone. Additionally, this work provides an AI model distributor that encrypts the WebAssembly binary and places the encryption key in one of the device's fuses.