Property Specific Information Flow Analysis for Hardware Security Verification

Property Specific Information Flow Analysis for Hardware Security Verification
复制标题

DOI:
10.1145/3240765.3240839
复制
发表时间:
2018-11
期刊:
2018 IEEE/ACM International Conference on Computer-Aided Design (ICCAD)
影响因子:
--
通讯作者:
Wei Hu;Armaiti Ardeshiricham;Mustafa S. Gobulukoglu;Xinmu Wang;Ryan Kastner
Wei Hu;Armaiti Ardeshiricham;Mustafa S. Gobulukoglu;Xinmu Wang;Ryan Kastner
中科院分区:
其他
文献类型:
--
作者:
Wei Hu;Armaiti Ardeshiricham;Mustafa S. Gobulukoglu;Xinmu Wang;Ryan Kastner

文献摘要

被引文献

相似文献

硬件信息流分析检测由意外的设计缺陷、计时通道和硬件特洛伊木马程序引起的安全漏洞。这些信息流模型通常以通用方式生成,其中包括与指定的安全属性无关的大量冗余。在这项工作中,我们提出了一种特定于属性的信息流安全方法。我们通过执行特定于属性的搜索来确定安全关键路径,从而创建针对要验证的属性的信息流模型。这有助于发现需要更仔细检查的可疑信号,并快速消除设计中没有安全违规的部分。我们的特定于属性的修剪技术降低了安全模型的复杂性;这加快了安全验证,并将潜在的安全违规限制在较小的区域,有助于快速定位硬件安全漏洞。
Hardware information flow analysis detects security vulnerabilities resulting from unintended design flaws, timing channels, and hardware Trojans. These information flow models are typically generated in a general way, which includes a significant amount of redundancy that is irrelevant to the specified security properties. In this work, we propose a property specific approach for information flow security. We create information flow models tailored to the properties to be verified by performing a property specific search to identify security critical paths. This helps find suspicious signals that require closer inspection and quickly eliminates portions of the design that are free of security violations. Our property specific trimming technique reduces the complexity of the security model; this accelerates security verification and restricts potential security violations to a smaller region which helps quickly pinpoint hardware security vulnerabilities.