Logic Technology, Benelux sales and support partner of SEGGER Microcontrollers GmbH, has announced the release of emBoot-Secure, a robust new bootloader solution designed specifically to address the stringent requirements of the EU Cyber Resilience Act (CRA).
With the regulatory landscape for embedded devices shifting rapidly, manufacturers are now under increased pressure to prove their devices can withstand cyber threats throughout their entire lifecycle. A critical component of this compliance is the ability to deliver secure, verifiable firmware updates. emBoot-Secure provides a ready-made answer to this challenge, allowing developers to implement authenticated updates without the risks associated with “do-it-yourself” security implementations.
Secure by Design
emBoot-Secure is built on a foundation of asymmetric cryptography. The architecture ensures that only firmware signed with a manufacturer’s private key can be installed on the device.
Updates are packaged as compact, protected files that are digitally signed, encrypted, and compressed. Upon restart, the emBoot-Secure bootloader verifies the package’s signature against the internal public key. If the integrity or authenticity checks fail, the update is rejected, preventing the installation of malicious or corrupted code.
Rolf Segger, founder of SEGGER, emphasizes that the complexity of modern security standards makes ad-hoc solutions dangerous.
“The ability to carry out updates securely is no longer optional for products with embedded systems but, luckily, it has never been easier,” says Segger. “SEGGER provides a complete package containing all of the tools required to be safe, secure, and compliant right away. Security should never be seen as a do-it-yourself project. It has always been risky to gamble with product security… With the new CRA regulations, there is now also significant legal risk.”
Flexible Integration for Any Workflow
One of the standout features of emBoot-Secure is its independence from the transport layer. The update payload can be delivered via any method supported by the customer’s application—Ethernet, Wi-Fi, USB, SD card, Bluetooth, LoRa, or Zigbee.
The solution is optimized for small code size and fast boot times, ensuring that adding security does not compromise system performance. It seamlessly integrates into existing production workflows, making it an ideal choice for everything from high-volume consumer IoT devices to industrial systems operating in closed networks.