Verification of serialising instructions for security against transient execution attacks
Verification of serialising instructions for security against transient execution attacks
复制标题
验证序列化指令以防止瞬时执行攻击
DOI:
10.1049/cdt2.12058
复制
发表时间:
2023
影响因子:
1.2
通讯作者:
Mathure, Nimish
中科院分区:
文献类型:
--
作者:
Ponugoti, Kushal K.;Srinivasan, Sudarshan K.;Mathure, Nimish
Transient execution attacks such as Spectre and Meltdown exploit speculative execution in modern microprocessors to leak information via cache side‐channels. Software solutions to defend against many transient execution attacks employ thelfenceserialising instruction, which does not allow instructions that come after thelfenceto execute out‐of‐order with respect to instructions that come before thelfence. However, errors and Trojans in the hardware implementation oflfencecan be exploited to compromise the software mitigations that uselfence. The aforementioned security gap has not been identified and addressed previously. The authors provide a formal method solution that addresses the verification oflfencehardware implementation. The authors also show how hardware Trojans can be designed to circumventlfenceand demonstrate that their verification approach will flag such Trojans as well. The authors have demonstrated the efficacy of our approach using RSD, which is an open source RISC‐V based superscalar out‐of‐order processor.
DOI:
10.1145/1014194.800930
发表时间:
1982-10
期刊:
--
影响因子:
--
作者:
J. Hennessy;N. Jouppi;S. Przybylski;C. Rowen;T. Gross;F. Baskett;John T. Gill
通讯作者:
J. Hennessy;N. Jouppi;S. Przybylski;C. Rowen;T. Gross;F. Baskett;John T. Gill
DOI:
10.14722/ndss.2021.24466
发表时间:
2021
期刊:
Proceedings 2021 Network and Distributed System Security Symposium
影响因子:
--
作者:
Zhenxiao Qi;Qian Feng;Yueqiang Cheng;Mengjia Yan;Peng Li;Heng Yin;Tao Wei
通讯作者:
Tao Wei
影响因子:
3.7
作者:
Li, Congmiao;Gaudiot, Jean-Luc
通讯作者:
Gaudiot, Jean-Luc