Stuart Yoder explains why standard assessment tools like #LFVS, #HSI, and #CHIPSEC struggle on #ARM systems, where diverse hardware designs make direct inspection unreliable. The lack of consistent, inspectable security primitives leaves significant blind spots for teams trying to validate platform security.
🔗 Video, description & slides:
https://cfp.3mdeb.com/developers-vpub-0xc-2024/talk/RMEWFV/
Security assessment on Arm platforms Developers vPub 0xC
Security assessment tooling such as LFVS HSI and Chipsec rely on standard security mechanisms that can be directly inspected by a tool. Due to the diversity of Arm-based hardware platforms doing direct inspection is difficult. This presentation discusses work underway to evaluate how security assessment could be done on Arm platforms and work towards a solution.
