Developers vPub 0xB

Verified Boot and secure updates - How to do them securely and openly?
2024-06-13 , Dasharo vPub

A fundamental problem of firmware security are secure firmware updates. Dasharo tries to solve these problems using Vboot, a verified boot and A/B update scheme developed by Google for use in Chrome devices. However, when used in devices other than Chromebooks and Chromeboxes, this solution brings a new set of issues. This talk will discuss the various problems we’ve encountered in trying to deploy Vboot for Dasharo, what we’re doing to improve, and potential alternatives.


See also:

Michał Żygowski is a versatile engineer with a strong focus on system firmware. Works as a firmware engineer at 3mdeb. Active contributor of coreboot and other open-source projects. Core coreboot developer, maintainer of Braswell SoC, PC Engines, Protectli, MSI MS-7D25/MS-7E06 and Libretrend platforms. Loves travelling and attending conferences, which actively speaks on. Mainly interested in the firmware, security and advanced hardware features.