1024x1024 SecureSPOT BG
1920x980 SecureSPOT BG1920x980 SecureSPOT

secureSPOT: Embedded Security for Apollo SoCs

Design Securely

1024x830 SecureSPOT

在这个日益互联的世界中,设备安全在保护敏感数据、维护隐私以及保障数字系统和通信的完整性方面发挥着至关重要的作用。 Ambiq secureSPOT® 解决方案通过提供一套全面的安全功能,在确保设备性能和电池续航能力不受影响的前提下,有效解决了这些关键问题。secureSPOT 3.0 在此基础上进一步整合了 Arm® TrustZone® 技术,新增了安全启动、加密的安全外设、受控的安全调试访问,以及贯穿设备整个生命周期的安全生命周期管理。

secureSPOT 3.0 Highlights

01

Secure Boot

通过信任根增强安全性,确保在设备初始化过程中只加载经过验证和信任的固件,从启动过程开始就防止未经授权/恶意代码的执行。

02

Secure Peripherals

通过加密、身份验证和访问控制等基于硬件的安全功能加强保护,确保外围操作的数据完整性和保密性。

03

Secure Debug

对调试界面进行受控和认证访问,确保只有授权用户才能在开发过程中访问设备并与之互动。

04

Secure Lifecycle Management

确保设备在整个生命周期内的完整性和安全性,从制造和配置到部署和退役,在每个阶段都降低风险和漏洞。

Security Centered

Our products are specifically engineered to serve a diverse array of applications, encompassing wearables, medical devices, smart home technologies, IIoT solutions, and more.

Technology Bg L scaled

Specifications

Apollo510 mockup white

secureSPOT 3.0 with Arm® TrustZone®

  • 安全启动
  • 可扩展至自定义二级引导加载器
  • 安全/非安全真实随机数发生器 (TRNG)
  • 可信执行环境
  • 防篡改保护
  • 安全外设
  • 基于 PUF 的身份/签名/验证
  • 密钥撤销
  • 闪存保护(复制和写入保护)
  • 硬件加密加速
  • 硬件密钥(软件无法访问)
  • 安全升级(OTA)
  • 支持有线接口
  • 防回弹
  • 更新加密支持
  • 恢复(出厂重置)
  • 硬件熵
  • 安全生命周期管理
  • 安全调试
  • OTP 支持
  • 安全密钥存储
Apollo4 Plus SoC

secureSPOT 2.0

  • 安全启动
  • 可扩展至自定义二级引导加载器
  • 真随机数发生器 (TRNG)
  • 密钥撤销
  • 闪存保护(复制和写入保护)
  • 硬件加密加速
  • 硬件密钥(软件无法访问)
  • 安全升级(OTA)
  • 支持有线接口
  • 防回弹
  • 更新加密支持
  • 恢复(出厂重置)
  • 硬件熵
  • 安全生命周期管理
  • 安全调试
  • OTP 支持
  • 安全密钥存储
Apollo3 Blue Plus

secureSPOT 1.0

  • 安全启动
  • 可扩展至自定义二级引导加载器
  • 密钥撤销
  • 闪存保护(复制和写入保护)
  • 安全升级(OTA)
  • 支持有线接口
  • 防回弹
  • 更新加密支持
  • 恢复(出厂重置)
  • 硬件熵
  • 调试器锁定支持

设计资源

Browse our Design Resources which includes product briefs, datasheets, selector guides, family brochures, white papers, quick start guides, and more to help you learn more about products.

其他文档

  • 设置收藏夹
  • 获取更新通知
  • 使用搜索过滤器

视频库

hqdefault
hqdefault

常见问题解答(FAQ)

  • secureSPOT® is Ambiq’s hardware-based security technology for Apollo ultra-low-power SoCs. It provides a comprehensive platform for embedded device security, including Secure Boot, Secure Peripherals, Secure Debug, Secure Lifecycle Management, and Trusted Execution capabilities. secureSPOT helps protect firmware, sensitive data, cryptographic assets, and device integrity while maintaining the ultra-low-power performance required for battery-powered edge devices. 

  • secureSPOT® 3.0 introduces support for Arm® TrustZone®, an extensible secondary boot loader, a Trusted Execution Environment (TEE), a secure and non-secure True Random Number Generator (TRNG), and Anti-Tamper Protection. These capabilities build on the security foundation established in secureSPOT 2.0 and 1.0 to provide stronger isolation, more flexible secure boot, and enhanced protection for modern edge AI and embedded applications. 

  • secureSPOT® secure boot establishes a hardware root of trust that verifies firmware authenticity before execution. Only authenticated and trusted software is allowed to boot, helping prevent unauthorized firmware, malicious code injection, and device compromise during system startup. 

  • secureSPOT® secure peripherals use hardware-based encryption, authentication, and access control to protect communications between the processor and connected peripherals. These protections help maintain data confidentiality, integrity, and isolation while reducing the risk of unauthorized access to sensitive device resources. 

  • Secure Debug provides authenticated, controlled access to hardware debugging interfaces during development and manufacturing. By restricting debug access to authorized users, secureSPOT® helps prevent unauthorized firmware extraction, device manipulation, and security bypass in production devices. 

  • Secure Lifecycle Management protects devices throughout their entire lifecycle—from manufacturing and secure provisioning through deployment, firmware updates, maintenance, and decommissioning. It enables organizations to securely manage device state and credentials while reducing security risks across manufacturing and field operations. 

  • SecureSPOT® is supported on Ambiq Apollo generations 3 through 5, including Apollo3, Apollo4, and Apollo510 series SoCs. Support will continue to expand with future Apollo platforms. 

  • secureSPOT® is designed for battery-powered embedded devices that require strong hardware security, including wearables, medical devices, smart home products, industrial IoT (IIoT) systems, asset trackers, and edge AI devices. 

准备下载