IP Library Granted Patent US 12,373,547
Granted Patent B2
US 12,373,547 · App. 17/898,375 · Granted Jul 29, 2025

Preventing replacement and clone attacks using a secure processing environment

Inventor: Zhan Liu (Cupertino, CA)
Assignee: Micron Technology, Inc.
G06F21/53G06F21/64G06F2221/031
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,373,547
App. No.
17/898,375
Granted
Jul 29, 2025
Kind
B2
Abstract

In some aspects, the techniques described herein relate to a device including: a storage device, the storage device including a first physically unclonable function (PUF) and configured to generate a storage device public key and a storage device private key; and a secure environment, the secure environment including a controller configured for: transmitting a nonce value to the storage device; receiving a response from the storage device, the response including a unique identifier (UID) and a digital signature, the digital signature generated using the UID and the nonce value; validating the digital signature using a public key of the storage device; and issuing a command to the storage device after validating the digital signature.

Claims (34)

1. A device comprising:

a storage device, the storage device including a first physically unclonable function (PUF) and configured to generate a storage device public key and a storage device private key; and

a secure environment, the secure environment including a controller configured for:

transmitting a nonce value to the storage device;

receiving a response from the storage device, the response including a unique identifier (UID) and a digital signature, the digital signature generated using the UID and the nonce value;

validating the digital signature using a public key of the storage device; and

issuing a command to the storage device after validating the digital signature.

2. The device of claim 1 , the controller further configured for receiving the command prior to transmitting the nonce value.

3. The device of claim 1 , the controller further configured for receiving the storage device public key from the storage device in response to a signed replace key command, the signed replace key command received from a key management server and signed using a private key corresponding to a key management server public key stored by the secure environment and the storage device.

4. The device of claim 1 , wherein the response further includes a copy of the nonce value and the controller is further configured for validating that the copy of the nonce value is equal to the nonce value.

5. The device of claim 1 , the controller further configured for receiving a second response from a second storage device and disallowing a command accessing the second storage device upon determining that a second digital signature generated by the second storage device is not valid.

6. The device of claim 1 , wherein the secure environment comprises a trusted execution environment and the storage device comprises one of a persistent storage device or a volatile storage device.

7. A method comprising:

transmitting, by a secure environment, a nonce value to a storage device;

receiving, by the secure environment, a response from the storage device, the response including a unique identifier (UID) and a digital signature, the digital signature generated using the UID and the nonce value;

validating, by the secure environment, the digital signature using a public key of the storage device; and

issuing, by the secure environment, a command to the storage device after validating the digital signature.

8. The method of claim 7 , further comprising receiving the command prior to transmitting the nonce value.

9. The method of claim 7 , wherein the public key of the storage device comprises a public key derived from a physically unclonable function of the storage device.

10. The method of claim 7 , further comprising receiving the public key from the storage device in response to a signed replace key command, the signed replace key command received from a key management server and signed using a private key corresponding to a key management server public key stored by the secure environment and the storage device.

11. The method of claim 7 , wherein the response further includes a copy of the nonce value and the method further comprises validating that the copy of the nonce value is equal to the nonce value.

12. The method of claim 7 , further comprising receiving a second response from a second storage device and disallowing a command accessing the second storage device upon determining that a second digital signature generated by the second storage device is not valid.

13. The method of claim 7 , wherein the secure environment comprises a trusted execution environment and the storage device comprises one of a persistent storage device or a volatile storage device.

14. A non-transitory computer-readable storage medium for tangibly storing computer program instructions capable of being executed by a computer processor, the computer program instructions defining steps of:

transmitting, by a secure environment, a nonce value to a storage device;

receiving, by the secure environment, a response from the storage device, the response including a unique identifier (UID) and a digital signature, the digital signature generated using the UID and the nonce value;

validating, by the secure environment, the digital signature using a public key of the storage device; and

issuing, by the secure environment, a command to the storage device after validating the digital signature.

15. The non-transitory computer-readable storage medium of claim 14 , further comprising receiving the command prior to transmitting the nonce value.

16. The non-transitory computer-readable storage medium of claim 14 , wherein the public key of the storage device comprises a public key derived from a physically unclonable function of the storage device.

17. The non-transitory computer-readable storage medium of claim 14 , further comprising receiving the public key from the storage device in response to a signed replace key command, the signed replace key command received from a key management server and signed using a private key corresponding to a key management server public key stored by the secure environment and the storage device.

18. The non-transitory computer-readable storage medium of claim 14 , wherein the response further includes a copy of the nonce value and the steps further comprise validating that the copy of the nonce value is equal to the nonce value.

19. The non-transitory computer-readable storage medium of claim 14 , further comprising receiving a second response from a second storage device and disallowing a command accessing the second storage device upon determining that a second digital signature generated by the second storage device is not valid.

20. The non-transitory computer-readable storage medium of claim 14 , wherein the secure environment comprises a trusted execution environment and the storage device comprises one of a persistent storage device or a volatile storage device.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 5, 2022
From: LIU, ZHAN
To: MICRON TECHNOLOGY, INC.
Reel/Frame 061321/0907 →
Continuity (1)
Related Publication 20240070262A1 · Feb 29, 2024
References Cited (3)
US 10891366B1 · Wu · 2021 [cited by examiner]
US 20190163912A1 · Kumar · 2019 [cited by examiner]
US 20190305973A1 · Dewan · 2019 [cited by examiner]
Cited By (1)
US 12,676,761