This page was machine-translated and may differ from the original. View original
Fully compliant with PACBTI extended edition specifications, effectively blocking malicious attackers
IAR Embedded Workbench 9.40 fully protects embedded applications from security attacks by fully complying with the PACBTI extended version specifications.
IAR, a global provider of embedded development software and services, announced on the 21st that it has released version 9.40 of IAR Embedded Workbench for Arm.
This latest update features the integration of the Pointer Authentication and Branch Target Identification (PACBTI) extension for Armv8.1-M, which enhances code security capabilities.
By using PACBTI, user applications can be protected through cryptographic signature implementations, effectively preventing malicious attackers from manipulating the entire system at will.
In addition, this version includes enhanced Smart IDE Build Actions, which improve the development environment for software engineers.
As the demand for secure products increases due to legislation and stricter regulations, the latest version of IAR is meeting the demand for enhanced code security.
One of the notable features of the latest updated version is that the compiler functionality in IAR Embedded Workbench for Arm has been newly enhanced by the PACBTI extension.
This compiler is a return-oriented programIt provides strong defense against two common security attacks, such as Return-Oriented Programming (ROP) and Jump-Oriented Programming (JOP).
Both techniques leverage existing code segments within user applications. Attackers use methods such as stack smashing to control the call stack, overwriting critical pointers stored on the stack and redirecting them to proven vulnerable code snippets that align with their attack intent.
By including this new feature, IAR Embedded Workbench has established a significant level of protection barrier, making it more difficult for attackers to compromise code and system integrity.
PACBTI is generally designed to identify and mitigate exploitable software vulnerabilities, but its effectiveness depends on sound software development practices, such as the use of code analysis tools.
"Security has emerged as a top priority for embedded software developers," said Anders Holmberg, CTO of IAR. "The latest version of IAR Embedded Workbench for Arm, combined with well-established software development practices, provides the foundation for practically secure embedded applications. Known for superior code efficiency, productivity, and quality improvements, IAR offers one of the most comprehensive end-to-end solutions providing enhanced security at every stage, from product development to mass production, including IAR Embedded Trust and IAR Secure Deploy embedded security solutions."
본 기사에 대한 정정·반론·추후보도 청구는 보도 청구 안내를, 그간 게재된 보도문은 정정·반론보도 모아보기를 참고해 주세요.














