Isadora: automated information-flow property generation for hardware security verification

Isadora: automated information-flow property generation for hardware security verification
复制标题

DOI:
10.1007/s13389-022-00306-w
复制
发表时间:
2022-11
影响因子:
1.9
通讯作者:
Calvin Deutschbein;Andres Meza;Francesco Restuccia;R. Kastner;C. Sturton
Calvin Deutschbein;Andres Meza;Francesco Restuccia;R. Kastner;C. Sturton
中科院分区:
计算机科学4区
文献类型:
--
作者:
Calvin Deutschbein;Andres Meza;Francesco Restuccia;R. Kastner;C. Sturton

文献摘要

被引文献

相似文献

Isadora是一个规范挖掘工具,用于为硬件创建信息流属性。Isadora将硬件信息流跟踪和规范挖掘相结合,以生成适合硬件安全验证的属性,并支持更好地了解硬件的安全状态。Isadora完全自动化;用户仅提供硬件规范和测试台-他们不需要提供威胁模型或安全要求。Isadora在RISC-V处理器、SoC访问控制机制和OpenTitan硬件信任根上进行评估。Isadora生成的安全属性与常见弱点枚举(CWE)和安全专家手动编写的属性一致。
Isadora is a specification mining tool for creating information-flow properties for hardware. Isadora combines hardware information-flow tracking and specification mining to produce properties that are suitable for the hardware security validation and support a better understanding of the hardware’s security posture. Isadora is fully automated; the user provides only a hardware specification and a testbench—they do not need to supply a threat model or security requirements. Isadora is evaluated on a RISC-V processor, an SoC access control mechanism, and the OpenTitan hardware root of trust. Isadora generates security properties that align with Common Weakness Enumerations (CWEs) and with properties written manually by security experts.