SPECS: A Lightweight Runtime Mechanism for Protecting Software from Security-Critical Processor Bugs
SPECS: A Lightweight Runtime Mechanism for Protecting Software from Security-Critical Processor Bugs
复制标题
规格:一种轻量级运行时机制,用于保护软件免受安全关键处理器错误的影响
DOI:
10.1145/2694344.2694366
复制
发表时间:
2015
期刊:
影响因子:
--
通讯作者:
Jonathan M. Smith
中科院分区:
文献类型:
--
作者:
Matthew Hicks;C. Sturton;Samuel T. King;Jonathan M. Smith
Processor implementation errata remain a problem, and worse, a subset of these bugs are security-critical. We classified 7 years of errata from recent commercial processors to understand the magnitude and severity of this problem, and found that of 301 errata analyzed, 28 are security-critical. We propose the SECURITY-CRITICAL PROCESSOR ER- RATA CATCHING SYSTEM (SPECS) as a low-overhead solution to this problem. SPECS employs a dynamic verification strategy that is made lightweight by limiting protection to only security-critical processor state. As a proof-of- concept, we implement a hardware prototype of SPECS in an open source processor. Using this prototype, we evaluate SPECS against a set of 14 bugs inspired by the types of security-critical errata we discovered in the classification phase. The evaluation shows that SPECS is 86% effective as a defense when deployed using only ISA-level state; incurs less than 5% area and power overhead; and has no software run-time overhead.