Security Analysis of Processor Instruction Set Architecture for Enforcing Control-Flow Integrity
Security Analysis of Processor Instruction Set Architecture for Enforcing Control-Flow Integrity
复制标题
用于加强控制流完整性的处理器指令集架构的安全分析
DOI:
--
复制
发表时间:
2019
期刊:
影响因子:
--
通讯作者:
R. Sahita
中科院分区:
文献类型:
--
作者:
Vedvyas Shanbhogue;D. Gupta;R. Sahita
Intel has developed Control-flow Enforcement Technology (CET) [27] that provides CPU instruction set architecture (ISA) capabilities to defend against Return-oriented Programming (ROP) and call/jmp-oriented programming (COP/JOP) style control-flow subversion attacks. This attack methodology uses code sequences in authorized modules with at least one instruction in the sequence being a control transfer instruction that depends on attacker-controlled data either in the return stack or in a register/memory for the target address. Attackers stitch these sequences together by diverting the control flow instruction (e.g. RET, CALL, JMP) from its original target address to a new target (via modification in the data stack or in the register or memory used by these instructions). This paper describes CET security objectives, threat model and various architectural design choices to ensure that the design meets the security objectives. We conclude the paper with performance data and related work in this domain.