The RESCALE Vision
RESCALE revolutionizes software and hardware development by tackling the intricacies of the modern supply chain. Today’s software integrates components from diverse sources in the Software Development Lifecycle (SDLC), accelerating time-to-market but raising security concerns. We aim to establish secure-by-design supply chains, automate evaluations, ensure third-party segments are vulnerability-free, facilitate cybersecurity audits, and construct robust systems. Using a Trusted Bill of Materials (TBOM) mechanism, RESCALE systematically analyzes and extends every layer in a computing system, employing cutting-edge tools and methodologies across the entire supply chain to redefine security standards.
Project Objectives
Provide a thorough, detailed security auditing, static and dynamic assessment process with security guarantees both in software and hardware (via static code analysis and SW/HW dynamic testing). Both static and dynamic testing is assisted by Machine Learning/Deep Learning techniques and is performed automatically through a trust orchestrator.
The software and hardware supply chain in RESCALE is modelled through the trusted BOM structure capable of monitoring the dependencies of an associated software/hardware with its various components, including the security level of each such component. In RESCALE, we detect vulnerabilities in hardware by using dynamic testing of hardware implementation attacks and we will also focus on the extension of the security capabilities of software components in a supply chain.
The RESCALE solution is built around the concept of a trusted, secure supply chain that uses trusted BOMs as building blocks. The security and trust of the TBOM supply chain mechanism is guaranteed by traditional cryptography blocks but mostly by the use of a public blockchain where the security testing information on each software product are stored and associated with the TBOM.
RESCALE envisions the execution of industrial-driven real-world trials that fundamentally improve complicated supply chains’ vulnerability detection mechanisms. RESCALE targets the realization of a technological convergence among emerging technologies to advance the operation of complex supply environments in terms of security and trustworthiness.
During RESCALE, a dissemination and exploitation plan will be developed ensuring the sustainability of the proposed solutions during and after the end of the project. A thorough market analysis will be performed to determine the context of RESCALE quantifying the size of the market, identifying the key competitors and the market needs, and formulate potential business models to exploit the project outcomes.