首页> 外文会议>International Symposium on Design and Diagnostics of Electronic Circuits and Systems >CLD: An Accurate, Cost-Effective and Scalable Run-Time Cache Leakage Detector
【24h】

CLD: An Accurate, Cost-Effective and Scalable Run-Time Cache Leakage Detector

机译:CLD:准确,经济效益和可扩展的运行时缓存泄漏检测器

获取原文

摘要

Cache logical side channel attacks pose a significant threat to the security of modern computer systems. This is a result of exploitation of cache information leakages arising from cache contention. Detection of such leakages can be inferred from cache behavior and processes’ access patterns during run time. To achieve this, a detection template that uses available information on cache outputs and process accesses at run-time is required. In this work, such template is proposed and implemented as a hardware monitor called Cache Leakage Detector (CLD). CLD is a high-accuracy, cost-effective and scalable run-time cache information leakage detector. CLD uses cache signals and process IDs to detect exploitable cache access patterns. It does so by identifying potential information leakage patterns. Accuracy of CLD is evaluated by using several benchmarks and injecting attacks into a 128-bit key AES algorithm. The experiments demonstrate that CLD has far higher detection accuracy (0.7964 vs 0.3195) and lower percentage of false positive detections (1.2% vs 30.6%) compared to a state-of-the-art hardware detector. Moreover, CLD introduces a very low area overhead of 0.002% to the total area of the cache. Experimental result section reports the above claims in detail.
机译:缓存逻辑侧信道攻击对现代计算机系统的安全构成了重大威胁。这是对缓存争用产生的缓存信息泄露的结果。可以在运行时从缓存行为和过程的访问模式推断出这种泄漏的检测。为此,需要一种在运行时使用有关高速缓存输出和进程访问的可用信息的检测模板。在这项工作中,提出了这样的模板并实现为称为高速缓存泄漏检测器(CLD)的硬件监视器。 CLD是一种高精度,成本效益和可扩展的运行时缓存信息泄漏检测器。 CLD使用缓存信号和进程ID来检测可利用的缓存访问模式。它通过识别潜在信息泄漏模式来实现。通过使用多个基准并将攻击注入128位密钥AES算法来评估CLD的准确性。实验表明,与最先进的硬件检测器相比,CLD的检测精度远远较高(0.7964 vs 0.3195),较小的阳性检测百分比(1.2%vs 30.6%)。此外,CLD引入了高速缓存总面积的0.002%的低区域开销。实验结果部分详细介绍了上述要求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号