Rivetz Whitepaper

Abstract

Rivetz is building a Global Attestation and Identity Network, powered by the Rivetz Token (RvT), in order
to improve the security of the devices on which we rely. Cybersecurity Ventures anticipates that
cybersecurity damages will total more than $6 trillion globally, up from $3 trillion in 2015. The rising cost
of cybersecurity reflects a failure of the security field to offer a solution that is both simple enough to
warrant adoption by industry and government, and secure enough to protect our most valuable secrets
and data.

Merely increasing spending without changing the way we think about modern security is insufficient. The
existing tools: firewalls, virtual private networks and passwords all assume that the edge of the network
is the network perimeter. This makes it too easy for non-authenticated users to probe and hack systems.
Rivetz is developing technology to push the edge of security to the screen of the device. Rather than a
password being the last line of defense, individual devices can be deputized to broker access to valued
online assets. The Global Attestation and Identity Network is intended to record and verify the health and
integrity of the device using an RvT and blockchain technology. This new service builds on the last three
years of work by Rivetz in creating the platform and tools to simplify a developer’s access to the Trusted
Execution Environment (TEE), a dedicated and impenetrable hardware platform that existsin every device.
Protecting data created and consumed by devices is an ever-growing challenge. Estimates peg the number
of Internet of Things (IoT) devices to exceed 200 billion by 2020.2
IoT devices are the foundational layer,

where data is created. The IoT industry assumes you can trust the data from the device, but in most cases,
this is not true. Rivetz, working with TEE, can create the much-needed trust.
The mobile devices of today are essential to decentralized data processing, but that processing can be
easily corrupted. By focusing on the device identity, continuously measuring the state of the device, and
enabling a new token based business model, Rivetz is constructing a new decentralized approach to
cybersecurity and transaction assurance.

The Rivetz solution for the Global Attestation and Identity Network is built on a foundation of combining
two global technologies. The first is the investment by industry of billions of dollars in trusted computing
and global platform standards and the billions of devices that have been delivered with these capabilities
embedded. The second is the revolutionary technology of blockchain that provides the decentralized key
management, immutable storage and micropayments on a decentralized basis. Rivetz is combining these
two technologies to demonstrate that provable cybersecurity controls are required to improve the
quality, value and trust of data processed, shared and stored on the internet. Equally important, the
Rivetzsolution is intended to provide the economic model for devicesto securely request and securely pay
providers or other devices for health and integrity services.

The Rivetz solution takes advantage of the TEE, which provides Rivetz with an isolated execution
environment within the main processor to execute code that cannot be observed or altered by the
operating system. This vault on the processor enables Rivetz to store and process sensitive data, and
assure that policy and controls are executed as expected. The TEE is a measured environment that can be
verified and proven to be operating in a reference condition. TEE capabilities have been available on both
ARM and Intel architecture processors world-wide for many years.

Rivetz intends to introduce the RvT, a cybersecurity token that can enable the registration of devices and
attest to their cybersecurity controls. The RvT is intende d to be integral to delivering automated
device-to-service or device-to-device payment for the consumption of the cybersecurity service and
eventually other permissioned services. It is planned to assist the owner of the device to forensically
prove verified cyber controls are in place when a transaction is executed.

The key to increasing the utilization of trusted computing technology is a business model that supports
an ecosystem for security as a service. The Rivetz network is designed to support secure procurement of
services, with a trusted mechanism for inexpensive automatic micro-payment. Rivetz plans to show how
the RvT could bring these new business models to the device for the delivery and consumption of modern
machine-to-machine procurement of services. The goal is to provide a source of payment (the RvT) that
is bound by the owner’s policy assuring that only approved service providers are paid.

The RvT model provides an operational role and a business role. The operational role will be intended
to evolve as the technology moves from simple use to full integration into Bitcoin and Ether. The
technology to efficiently integrate the solution has been prototyped, but some of the core capabilities
used are still only on the mainstream blockchain roadmap. Rivetz plans to invest in the technology to
operate and integrate the RvT into critical use cases. The goal is that every token and chain can take
advantage of the cybersecurity controls that Rivetz enables. Note that no guarantee can be made that
the goal will be achieved, based on factors including competition with other solutions and changes in
technology.

The Rivetz team brings years of experience and leadership in trusted computing and blockchain
technologies. Rivetz’s established team has secured over a million dollars in contracted revenue from the
U.S. government for other projects. Rivetz has operational technology currently compatible with over 500
million mobile phones as well as existing non-blockchain capabilities for multifactor authentication,
embedded authentication, file encryption and secure messaging. The company leadership was part of the
founding of the Trusted Computing Group in 2000 and has been an active blockchain cybersecurity
contributorsince 2013.

Every single day cybersecurity software proves unsuccessful in stopping attacks. Malware, malicious users,
and targeted attacks create massive risk. For industry, government and consumers to realize cybersecurity
success, they must begin with a foundation built on trusted hardware execution. The Rivetz plan is
intended to monetize and implement solutions that deliver cybersecurity from the birth of the device to
the confirmation of transactions for any service or IoT device.

Today, dozens of new token-enabled services are being developed; Rivetz is working to provide a secure
automated mechanism to support micro-payment for m a n y o f those services. Metered access to
services and capabilities could generate new revenue streams and new markets to serve the forecasted
future 40 billion dollar IoT device market.

Blockchain has created a new foundation for value transfer on the internet. Trusted computing has created
the foundation for protected execution on a device. Rivetz is building the network to put it all to work,
empowering a new market and new revenue for a decentralized network of secure devices and services.

Rivetz Website
Rivetz Whitepaper

Social