首页> 外文会议>Design, Automation and Test in Europe Conference and Exhibition >Are Cloud FPGAs Really Vulnerable to Power Analysis Attacks?
【24h】

Are Cloud FPGAs Really Vulnerable to Power Analysis Attacks?

机译:云FPGA是否真的容易受到功耗分析攻击?

获取原文

摘要

Recent works have demonstrated the possibility of extracting secrets from a cryptographic core running on an FPGA by means of remote power analysis attacks. To mount these attacks, an adversary implements a voltage fluctuation sensor in the FPGA logic, records the power consumption of the target cryptographic core, and recovers the secret key by running a power analysis attack on the recorded traces. Despite showing that the power analysis could also be performed without physical access to the cryptographic core, these works were mostly carried out on dedicated FPGA boards in a controlled environment, leaving open the question about the possibility to successfully mount these attacks on a real system deployed in the cloud. In this paper, we demonstrate, for the first time, a successful key recovery attack on an AES cryptographic accelerator running on an Amazon EC2 F1 instance. We collect the power traces using a delay-line based voltage drop sensor, adapted to the Xilinx Virtex Ultrascale+ architecture used on Amazon EC2 F1, where CARRY8 blocks do not have a monotonic delay increase at their outputs. Our results demonstrate that security concerns raised by multitenant FPGAs are indeed valid and that countermeasures should be put in place to mitigate them.
机译:最近的作品已经证明,通过远程功率分析攻击,通过在FPGA上运行的加密核心提取秘密的可能性。为了安装这些攻击,对手实现FPGA逻辑中的电压波动传感器,记录目标加密核心的功耗,并通过在记录的迹线上运行电源分析攻击来恢复密钥。尽管表明,在没有对加密核心的物理访问的情况下也可以进行功率分析,但这些作品主要在受控环境中对专用的FPGA板进行,揭示了有关成功安装这些攻击的可能性对部署的真实系统的可能性在云中。在本文中,我们首次演示了关于在Amazon EC2 F1实例上运行的AES加密加速器的成功关键恢复攻击。我们使用基于延迟线的电压丢弃传感器收集电源迹线,适用于Xilinx Virtex UltraScale +架构,用于Amazon EC2 F1,其中CALLE8块在其输出处没有单调延迟增加。我们的结果表明,多租户FPGA提出的安全问题确实有效,应当建立对策以减轻它们。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号