首页> 外文会议>ACM/EDAC/IEEE Design Automation Conference >A Red Team/Blue Team Assessment of Functional Analysis Methods for Malicious Circuit Identification
【24h】

A Red Team/Blue Team Assessment of Functional Analysis Methods for Malicious Circuit Identification

机译:红色团队/蓝色团队对恶意电路识别功能分析方法的评估

获取原文

摘要

Recent advances in hardware security have led to the development of FANCI (Functional Analysis for Nearly-Unused Circuit Identification), an analysis algorithm that identifies stealthy, malicious circuits within hardware designs that can perform backdoor operations to compromise security. Evaluations of such methods using benchmarks and academically known attacks are not always equivalent to the dynamic attack scenarios that can arise in the real world. For this reason, we apply a red team/blue team approach to stress-test the abilities of the FANCI prototype. In the Embedded Systems Challenge (ESC) 2013, teams from research groups from multiple continents created designs with backdoors hidden in them as part of a red team effort to circumvent FANCI. Notably, these backdoors were not placed into a priori known designs. The red team was allowed to create arbitrary, unspecified designs. Two interesting results came out of this effort. The first was that FANCI was surprisingly resilient to this wide variety of attacks and was not circumvented by any of the stealthy backdoors created by the red teams. The second result is that frequentaction backdoors, which are non-stealthy backdoors, were often successful. These results emphasize the importance of combining FANCI with a reasonable degree of validation testing. The blue team efforts also exposed some areas where the FANCI prototype could be made more performant, which motivates further development of the prototype.
机译:硬件安全的最新进展导致了FANCI的开发(近乎未使用的电路识别功能分析),一个分析算法识别硬件设计中的隐形,恶意电路,可以执行后门操作来抑制安全性。使用基准和学术上已知的攻击的这些方法的评估并不总是等同于现实世界中可能出现的动态攻击情景。出于这个原因,我们应用了一个红色的团队/蓝色团队方法来压力 - 测试Fanci原型的能力。在嵌入式系统挑战(Esc)2013中,来自多个大陆的研究小组的团队创造了与后门隐藏在其中的设计,作为Recid Fanci的红色团队努力的一部分。值得注意的是,这些后门不会被置于先验的已知设计中。红色团队被允许创建任意,未指定的设计。这项努力出现了两个有趣的结果。首先,Fanci对这种广泛的攻击令人惊讶地令人痛心,并且没有被红色球队创造的任何隐秘的后门都是不规则的。第二个结果是,频繁的后门,非隐秘的后门往往是成功的。这些结果强调了与合理程度的验证测试结合的重要性。蓝色团队的努力也暴露了一些领域,这些地区可以更加表现,这激励了原型的进一步发展。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号