Hardware Information Flow Tracking

Hardware Information Flow Tracking
复制标题

DOI:
10.1145/3447867
复制
发表时间:
2021-04
期刊:
ACM Computing Surveys (CSUR)
影响因子:
--
通讯作者:
Wei Hu;Armaiti Ardeshiricham;Ryan Kastner
Wei Hu;Armaiti Ardeshiricham;Ryan Kastner
中科院分区:
其他
文献类型:
--
作者:
Wei Hu;Armaiti Ardeshiricham;Ryan Kastner

文献摘要

相似文献

信息流跟踪(IFT)是一种基本的计算机安全技术,用于了解信息如何在计算系统中移动。硬件IFT技术专门针对与硬件电路的设计、验证、测试、制造和部署相关的安全漏洞。硬件IFT可以检测无意的设计缺陷、恶意电路修改、定时侧信道、访问控制违规和其他不安全的硬件行为。本文概述了硬件IFT领域。我们首先讨论IFT的基础知识,它的基础是由丹宁在20世纪70年代提出的。在此基础上,我们为硬件IFT开发了一个分类法。我们用它来分类和区分硬件IFT工具和技术。最后,我们讨论了有待解决的挑战。调查显示,硬件IFT提供了一种强大的技术来识别硬件安全漏洞,以及验证和执行硬件安全属性。
Information flow tracking (IFT) is a fundamental computer security technique used to understand how information moves through a computing system. Hardware IFT techniques specifically target security vulnerabilities related to the design, verification, testing, manufacturing, and deployment of hardware circuits. Hardware IFT can detect unintentional design flaws, malicious circuit modifications, timing side channels, access control violations, and other insecure hardware behaviors. This article surveys the area of hardware IFT. We start with a discussion on the basics of IFT, whose foundations were introduced by Denning in the 1970s. Building upon this, we develop a taxonomy for hardware IFT. We use this to classify and differentiate hardware IFT tools and techniques. Finally, we discuss the challenges yet to be resolved. The survey shows that hardware IFT provides a powerful technique for identifying hardware security vulnerabilities, as well as verifying and enforcing hardware security properties.