Position Paper: A case for exposing extra-architectural state in the ISA

Position Paper: A case for exposing extra-architectural state in the ISA
复制标题

立场文件:在 ISA 中暴露架构外状态的案例

DOI:
--
复制
发表时间:
2018
期刊:
影响因子:
--
通讯作者:
C. Nitta
C. Nitta
中科院分区:
--
文献类型:
--
作者:
Jason Lowe;V. Akella;M. Farrens;Samuel T. King;C. Nitta

文献摘要

被引文献

相似文献

最近的Meltdown和Spectre攻击让社区感到惊讶。这些攻击不是利用伊萨的不正确实现,而是利用高性能微架构的未记录的特定于实现的推测行为来影响机器的架构外状态(例如,缓存)。受这些新颖的基于投机的攻击的启发,我们认为是时候重新考虑传统的伊萨层了。程序员和安全专业人员需要一个框架来推理推测和其他微架构性能优化的影响。我们建议明智地扩展伊萨,以包括额外的架构状态,使伊萨的实现要么完全压扁所有系统状态的变化所造成的错误推测的指令或潜在的变化被严格记录。我们希望这个新的框架将为架构师和安全研究人员提供工具,以减少未来意外漏洞的可能性。
The recent Meltdown and Spectre attacks took the community by surprise. Rather than exploiting an incorrect implementation of the ISA, these attacks leverage the undocumented implementation-specific speculation behavior of high-performance microarchitectures to affect the extra-architectural state of the machine (e.g., caches). Inspired by these novel speculation-based attacks, we argue it is time to rethink the traditional ISA layers. Programmers and security professionals need a framework to reason about the effects of speculation and other microarchitectural performance optimizations. We propose judiciously extending the ISA to include the extra-architectural state so that an ISA implementation either completely squashes all system state changes caused by mis-speculated instructions or the potential changes are rigorously documented. We hope this new framework will give architects and security researchers tools to reduce the likelihood of future surprise vulnerabilities.