SaTC: CORE: Medium: Collaborative: Security of Reconfigurable Cloud Computing
SaTC:核心:媒介:协作:可重构云计算的安全性
基本信息
- 批准号:1902532
- 负责人:
- 金额:$ 69.08万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2019
- 资助国家:美国
- 起止时间:2019-07-01 至 2024-06-30
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Large-scale computer systems that can perform challenging computations can now be leased by the general public for seconds, minutes, or hours at a time. Although these systems typically use microprocessors for most computation, recently, special reconfigurable computer chips called field-programmable  gate arrays (FPGAs) have been integrated into these publicly-available systems. Although these chips are more powerful than microprocessors, they have security weaknesses that could put users' data at risk and expose their personal information. This project explores how to secure FPGAs in distributed large-scale computer servers, also known as cloud computing, to prevent information theft and incorrect calculations.As FPGAs grow in size and complexity, cloud FPGA deployments aim to leverage economies of scale to share FPGAs among different, untrusting cloud users who wish to accelerate their machine learning, data search, or other applications with FPGAs. Numerous independent applications may share the same FPGA over time, reside in FPGAs that are in close physical proximity to each other, or even simultaneously reside in a single FPGA. Such uses of multi-tenant FPGAs open the door to numerous potential attack vectors on unsuspecting circuits implemented in the shared FPGAs. This project examines the security vulnerabilities that arise from adding FPGAs into data center environments where such FPGA sharing is possible on a large scale. The initial part of this project quantifies the risks associated with malicious FPGA application behavior, including clandestine data snooping, data leaking, and deliberate attempts by users to degrade or even damage the FPGA infrastructure. To address these vulnerabilities,  an active monitoring system continuously checks the FPGAs, detects attacks, and aims to limit malicious behavior at run-time. In parallel, a rules-based resource manager controls resource usage and FPGA allocation in an effort to mitigate FPGA-based attacks. Compile-time rule checks are also implemented. The layered approach enables truly secure multi-tenant FPGAs, allowing sensitive data to be processed securely and cost efficiently with cloud FPGAs. Two specific programs to broaden the impact are: 1)new courses on data center and FPGA security, focused on scalable real-world systems, and 2) a student-run research workshop to allow students to share research ideas and their work.  These activities teach undergraduate and graduate students how to leverage cloud FPGA resources for a variety of hardware and software experiments.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
能够执行具有挑战性的计算的大型计算机系统现在可以被公众一次租用几秒钟、几分钟或几小时。虽然这些系统通常使用微处理器进行大部分计算,但最近,称为现场可编程门阵列(FPGA)的特殊可重新配置计算机芯片已集成到这些公开可用的系统中。虽然这些芯片比微处理器更强大,但它们存在安全漏洞,可能会使用户的数据处于危险之中,并暴露他们的个人信息。该项目探讨如何在分布式大规模计算机服务器(也称为云计算)中保护FPGA,以防止信息窃取和错误计算。随着FPGA规模和复杂性的增长,云FPGA部署旨在利用规模经济,在不同的、不信任的云用户之间共享FPGA,这些用户希望通过FPGA加速机器学习、数据搜索或其他应用。随着时间的推移,许多独立的应用程序可能共享同一个FPGA,驻留在物理上彼此接近的FPGA中,甚至同时驻留在单个FPGA中。多租户FPGA的这种使用为共享FPGA中实现的不知情电路上的许多潜在攻击载体打开了大门。该项目研究了将FPGA添加到数据中心环境中所产生的安全漏洞,在数据中心环境中可以大规模共享FPGA。该项目的初始部分量化了与恶意FPGA应用程序行为相关的风险,包括秘密数据窥探、数据泄漏以及用户故意降低甚至损坏FPGA基础设施的尝试。为了解决这些漏洞,主动监控系统不断检查FPGA,检测攻击,并旨在限制运行时的恶意行为。同时,基于规则的资源管理器控制资源使用和FPGA分配,以减轻基于FPGA的攻击。还实现了实时规则检查。分层方法实现了真正安全的多租户FPGA,允许使用云FPGA安全且经济高效地处理敏感数据。扩大影响的两个具体计划是:1)关于数据中心和FPGA安全的新课程,重点是可扩展的现实世界系统,以及2)学生运行的研究研讨会,让学生分享研究想法和他们的工作。  这些活动教导本科生和研究生如何利用云FPGA资源进行各种硬件和软件实验。该奖项反映了NSF的法定使命,并且通过使用基金会的知识价值和更广泛的影响力审查标准进行评估,被认为值得支持。
项目成果
期刊论文数量(14)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Remote Power Side-Channel Attacks on BNN Accelerators in FPGAs
对 FPGA 中 BNN 加速器的远程电源侧通道攻击
- DOI:
- 发表时间:2021
- 期刊:
- 影响因子:0
- 作者:Shayan Moini, Shanquan Tian
- 通讯作者:Shayan Moini, Shanquan Tian
Understanding and Comparing the Capabilities of On-Chip Voltage Sensors against Remote Power Attacks on FPGAs
- DOI:10.1109/mwscas48704.2020.9184683
- 发表时间:2020-08
- 期刊:
- 影响因子:0
- 作者:Shayan Moini;Xiang Li;Peter Stanwicks;George Provelengios;W. Burleson;R. Tessier;Daniel E. Holcomb
- 通讯作者:Shayan Moini;Xiang Li;Peter Stanwicks;George Provelengios;W. Burleson;R. Tessier;Daniel E. Holcomb
Mitigating Voltage Attacks in Multi-Tenant FPGAs
减轻多租户 FPGA 中的电压攻击
- DOI:10.1145/3451236
- 发表时间:2021
- 期刊:
- 影响因子:2.3
- 作者:Provelengios, George;Holcomb, Daniel;Tessier, Russell
- 通讯作者:Tessier, Russell
Remote Power Attacks on the Versatile Tensor Accelerator in Multi-Tenant FPGAs
- DOI:10.1109/fccm51124.2021.00037
- 发表时间:2021-05
- 期刊:
- 影响因子:0
- 作者:Shanquan Tian;Shayan Moini;Adam Wolnikowski;Daniel E. Holcomb;R. Tessier;Jakub Szefer
- 通讯作者:Shanquan Tian;Shayan Moini;Adam Wolnikowski;Daniel E. Holcomb;R. Tessier;Jakub Szefer
A Practical Remote Power Attack on Machine Learning Accelerators in Cloud FPGAs
对云 FPGA 中机器学习加速器的实用远程攻击
- DOI:10.23919/date56975.2023.10136956
- 发表时间:2023
- 期刊:
- 影响因子:0
- 作者:Tian, Shanquan;Moini, Shayan;Holcomb, Daniel;Tessier, Russell;Szefer, Jakub
- 通讯作者:Szefer, Jakub
{{
                item.title }}
{{ item.translation_title }}
- DOI:{{ item.doi }} 
- 发表时间:{{ item.publish_year }} 
- 期刊:
- 影响因子:{{ item.factor }}
- 作者:{{ item.authors }} 
- 通讯作者:{{ item.author }} 
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:{{ item.author }} 
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:{{ item.author }} 
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:{{ item.author }} 
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:{{ item.author }} 
数据更新时间:{{ patent.updateTime }}
Russell Tessier其他文献
A Visionary Look at the Security of Reconfigurable Cloud Computing
对可重构云计算安全性的远见卓识
- DOI:
- 发表时间:2023 
- 期刊:
- 影响因子:20.6
- 作者:Mirjana Stojilović;K. Rasmussen;Francesco Regazzoni;M. Tahoori;Russell Tessier 
- 通讯作者:Russell Tessier 
Reconfigurable Computing for Digital Signal Processing : A Survey ∗
数字信号处理的可重构计算:调查*
- DOI:
- 发表时间:2001 
- 期刊:
- 影响因子:0
- 作者:Russell Tessier;Wayne Burleson 
- 通讯作者:Wayne Burleson 
On the Malicious Potential of Xilinx’ Internal Configuration Access Port (ICAP)
关于 Xilinx 内部配置访问端口 (ICAP) 的恶意潜力
- DOI:10.1145/3633204 
- 发表时间:2023 
- 期刊:
- 影响因子:0
- 作者:Nils Albartus;Maik Ender;Jan;Marc Fyrbiak;Christof Paar;Russell Tessier 
- 通讯作者:Russell Tessier 
Reliability and Security of AI Hardware
AI硬件的可靠性和安全性
- DOI:
- 发表时间:2024 
- 期刊:
- 影响因子:0
- 作者:Dennis R. E. Gnad;Martin Gotthard;Jonas Krautter;Angeliki Kritikakou;Vincent Meyers;Paolo Rech;Josie E. Rodriguez Condia;A. Ruospo;Ernesto Sanchez;F. F. dos Santos;Olivier Sentieys;M. Tahoori;Russell Tessier;Marcello Traiola 
- 通讯作者:Marcello Traiola 
Dynamically Parameterized Algorithms and Architectures to Exploit Signal Variations
- DOI:10.1023/b:vlsi.0000008068.26922.0b 
- 发表时间:2004-02-01 
- 期刊:
- 影响因子:1.800
- 作者:Prashant Jain;Andrew Laffely;Wayne Burleson;Russell Tessier;Dennis Goeckel 
- 通讯作者:Dennis Goeckel 
Russell Tessier的其他文献
{{
              item.title }}
{{ item.translation_title }}
- DOI:{{ item.doi }} 
- 发表时间:{{ item.publish_year }} 
- 期刊:
- 影响因子:{{ item.factor }}
- 作者:{{ item.authors }} 
- 通讯作者:{{ item.author }} 
{{ truncateString('Russell Tessier', 18)}}的其他基金
NeTS: Small: Network Function Virtualization Using Dynamic Reconfiguration
NeTS:小型:使用动态重新配置的网络功能虚拟化
- 批准号:1525836 
- 财政年份:2015
- 资助金额:$ 69.08万 
- 项目类别:Standard Grant 
TWC: Small: New Directions in Field Programmable Gate Arrays (FPGA) Security
TWC:小型:现场可编程门阵列 (FPGA) 安全性的新方向
- 批准号:1318497 
- 财政年份:2013
- 资助金额:$ 69.08万 
- 项目类别:Standard Grant 
Collaborative Research: Eliminating the Energy Efficiency Barrier of Reconfigurable Architectures for Diverse Signal Processing in Mobile Devices
合作研究:消除移动设备中多样化信号处理的可重构架构的能效障碍
- 批准号:1201834 
- 财政年份:2012
- 资助金额:$ 69.08万 
- 项目类别:Standard Grant 
XPLR: Network Virtualization Using Dynamic FPGA Reconfiguration
XPLR:使用动态 FPGA 重新配置的网络虚拟化
- 批准号:0831940 
- 财政年份:2008
- 资助金额:$ 69.08万 
- 项目类别:Continuing Grant 
Collaborative Proposal: CRI: CRD: Computer-aided Design Tool and Compiler Repository for Reconfigurable Computing
协作提案:CRI:CRD:用于可重构计算的计算机辅助设计工具和编译器存储库
- 批准号:0708273 
- 财政年份:2007
- 资助金额:$ 69.08万 
- 项目类别:Continuing Grant 
ITR: Adaptive Fault Recovery for Networked Digital Systems
ITR:网络数字系统的自适应故障恢复
- 批准号:0081405 
- 财政年份:2000
- 资助金额:$ 69.08万 
- 项目类别:Standard Grant 
相似国自然基金
胆固醇羟化酶CH25H非酶活依赖性促进乙型肝炎病毒蛋白Core及Pre-core降解的分子机制研究
- 批准号:82371765
- 批准年份:2023
- 资助金额:50 万元
- 项目类别:面上项目
锕系元素5f-in-core的GTH赝势和基组的开发
- 批准号:22303037
- 批准年份:2023
- 资助金额:30 万元
- 项目类别:青年科学基金项目
基于合成致死策略搭建Core-matched前药共组装体克服肿瘤耐药的机制研究
- 批准号:
- 批准年份:2022
- 资助金额:52 万元
- 项目类别:
鼠伤寒沙门氏菌LPS core经由CD209/SphK1促进树突状细胞迁移加重炎症性肠病的机制研究
- 批准号:
- 批准年份:2022
- 资助金额:30 万元
- 项目类别:青年科学基金项目
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
- 批准号:
- 批准年份:2020
- 资助金额:55 万元
- 项目类别:
肌营养不良蛋白聚糖Core M3型甘露糖肽的精确制备及功能探索
- 批准号:92053110
- 批准年份:2020
- 资助金额:70.0 万元
- 项目类别:重大研究计划
Core-1-O型聚糖黏蛋白缺陷诱导胃炎发生并介导慢性胃炎向胃癌转化的分子机制研究
- 批准号:81902805
- 批准年份:2019
- 资助金额:20.5 万元
- 项目类别:青年科学基金项目
原始地球增生晚期的Core-merging大碰撞事件:地核增生、核幔平衡与核幔边界结构的新认识
- 批准号:41973063
- 批准年份:2019
- 资助金额:65.0 万元
- 项目类别:面上项目
CORDEX-CORE区域气候模拟与预估研讨会
- 批准号:41981240365
- 批准年份:2019
- 资助金额:1.5 万元
- 项目类别:国际(地区)合作与交流项目
RBM38通过协助Pol-ε结合、招募core调控HBV复制
- 批准号:31900138
- 批准年份:2019
- 资助金额:24.0 万元
- 项目类别:青年科学基金项目
相似海外基金
Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
- 批准号:2317232 
- 财政年份:2024
- 资助金额:$ 69.08万 
- 项目类别:Continuing Grant 
Collaborative Research: SaTC: CORE: Medium: Using Intelligent Conversational Agents to Empower Adolescents to be Resilient Against Cybergrooming
合作研究:SaTC:核心:中:使用智能会话代理使青少年能够抵御网络诱骗
- 批准号:2330940 
- 财政年份:2024
- 资助金额:$ 69.08万 
- 项目类别:Continuing Grant 
Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
- 批准号:2317233 
- 财政年份:2024
- 资助金额:$ 69.08万 
- 项目类别:Continuing Grant 
SaTC: CORE: Medium: Testing the causal influence of social media on well-being and animosity
SaTC:核心:中:测试社交媒体对幸福感和敌意的因果影响
- 批准号:2334148 
- 财政年份:2024
- 资助金额:$ 69.08万 
- 项目类别:Standard Grant 
Collaborative Research: SaTC: CORE: Medium: Using Intelligent Conversational Agents to Empower Adolescents to be Resilient Against Cybergrooming
合作研究:SaTC:核心:中:使用智能会话代理使青少年能够抵御网络诱骗
- 批准号:2330941 
- 财政年份:2024
- 资助金额:$ 69.08万 
- 项目类别:Continuing Grant 
SaTC: CORE: Medium: Increasing user autonomy and advertiser and platform responsibility in online advertising
SaTC:核心:中:增加在线广告中的用户自主权以及广告商和平台责任
- 批准号:2318290 
- 财政年份:2024
- 资助金额:$ 69.08万 
- 项目类别:Continuing Grant 
SaTC: CORE: Medium: Collaborative: Hardening Off-the-Shelf Software Against Side Channel Attacks
SaTC:核心:媒介:协作:强化现成软件以抵御侧通道攻击
- 批准号:2425665 
- 财政年份:2024
- 资助金额:$ 69.08万 
- 项目类别:Continuing Grant 
Collaborative Research: SaTC: CORE: Medium: Understanding the Impact of Privacy Interventions on the Online Publishing Ecosystem
协作研究:SaTC:核心:媒介:了解隐私干预对在线出版生态系统的影响
- 批准号:2237329 
- 财政年份:2023
- 资助金额:$ 69.08万 
- 项目类别:Standard Grant 
Collaborative Research: SaTC: CORE: Medium: Securing Interactions between Driver and Vehicle Using Batteries
合作研究:SaTC:核心:中:使用电池确保驾驶员和车辆之间的交互安全
- 批准号:2245224 
- 财政年份:2023
- 资助金额:$ 69.08万 
- 项目类别:Continuing Grant 
Collaborative Research: SaTC: CORE: Medium: Understanding and Combatting Impersonation Attacks and Data Leakage in Online Advertising
协作研究:SaTC:核心:媒介:理解和打击在线广告中的冒充攻击和数据泄露
- 批准号:2247516 
- 财政年份:2023
- 资助金额:$ 69.08万 
- 项目类别:Continuing Grant 

 刷新
              刷新
            
















 {{item.name}}会员
              {{item.name}}会员
            



