Collaborative Research: SaTC: CORE: Medium: Leakage-free Isolated Execution: Architectures and Security Models
协作研究:SaTC:核心:中:无泄漏隔离执行:架构和安全模型
基本信息
- 批准号:2053383
- 负责人:
- 金额:$ 50.54万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2021
- 资助国家:美国
- 起止时间:2021-07-01 至 2025-06-30
- 项目状态:未结题
- 来源:
- 关键词:
项目摘要
Isolated execution is a hardware-supported security model used to protect programs from compromised or untrusted systems such as on the cloud. This project will develop next generation isolated execution systems that improve state-of-the-art along three dimensions. This project will develop a formal theoretical framework to study attacks and defenses and develop new solutions against side channel attacks based on the concept of composable resources.This project is organized into three thrusts. First, defenses against side channel leakage in isolated execution environments based on a new idea of composable resource-lets will be explored: these are fine-grained resources that can be combined to create isolated resource partitions for security. Second, the notion of isolated execution will be extended beyond a CPU to cover a heterogeneous system. Finally, new formalisms that allow reasoning about both vulnerabilities and defenses to reach strong guarantees of security will be introduced. Isolated execution for CPUs is available in products and continues to receive commercial and research interest. This project will substantially improve the security and applicability of isolated execution systems by providing protection against side channel attacks and by extending them beyond the CPU to operate in modern heterogeneous systems. This project will provide research opportunities for underrepresented students. New educational material on isolated execution and heterogeneous system security will be developed and integrated into classes.The project repository (available at https://github.com/seas-ucr/LFIE) will be maintained for at least 3 years beyond the end of the grant. It will hold all software byproducts from the project.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
孤立的执行是一种硬件支持的安全模型,用于保护程序免受受损或不信任的系统(例如云上)。 该项目将开发下一代孤立的执行系统,以改善沿三个维度的最新执行系统。 该项目将开发一个正式的理论框架来研究攻击和防御措施,并根据可合转资源的概念开发针对侧渠道攻击的新解决方案。该项目分为三个推力。首先,将探讨基于新的可组合资源概念的隔离执行环境中对侧渠道泄漏的防御措施:这些是可以组合的精细资源,以创建隔离的资源分区以进行安全性。 其次,隔离执行的概念将延伸到CPU之外,以涵盖异质系统。 最后,将引入有关漏洞和防御能力的推理的新形式主义,以实现强大的安全保证。 CPU的孤立执行可在产品中获得,并继续获得商业和研究兴趣。 该项目将通过提供针对侧渠道攻击的保护,并将其扩展到CPU以外,从而在现代异质系统中运行,从而实质上提高了孤立的执行系统的安全性和适用性。 该项目将为代表性不足的学生提供研究机会。 有关隔离执行和异质系统安全性的新的教育材料将被开发并集成到课堂中。项目存储库(可在https://github.com/seas-ucr/lfie上获得)至少在赠款结束之后至少维护3年。 该奖项将对NSF的法定任务进行奖励,并被认为是值得通过基金会的知识分子优点和更广泛的影响评论标准来评估的。
项目成果
期刊论文数量(4)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Spy in the GPU-box: Covert and Side Channel Attacks on Multi-GPU Systems
- DOI:10.1145/3579371.3589080
- 发表时间:2022-03
- 期刊:
- 影响因子:0
- 作者:S. B. Dutta;Hoda Naghibijouybari;Arjun Gupta;Nael B. Abu-Ghazaleh;A. Márquez;K. Barker
- 通讯作者:S. B. Dutta;Hoda Naghibijouybari;Arjun Gupta;Nael B. Abu-Ghazaleh;A. Márquez;K. Barker
Leaky Buddies: Cross-Component Covert Channels on Integrated CPU-GPU Systems
- DOI:10.1109/isca52012.2021.00080
- 发表时间:2020-11
- 期刊:
- 影响因子:0
- 作者:Sankha Baran Dutta;Hoda Naghibijouybari;N. Abu-Ghazaleh;A. Márquez;K. Barker
- 通讯作者:Sankha Baran Dutta;Hoda Naghibijouybari;N. Abu-Ghazaleh;A. Márquez;K. Barker
Microarchitectural Attacks in Heterogeneous Systems: A Survey
- DOI:10.1145/3544102
- 发表时间:2022-06
- 期刊:
- 影响因子:16.6
- 作者:Hoda Naghibijouybari;Esmaeil Mohammadian Koruyeh;Nael B. Abu-Ghazaleh
- 通讯作者:Hoda Naghibijouybari;Esmaeil Mohammadian Koruyeh;Nael B. Abu-Ghazaleh
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Nael Abu-Ghazaleh其他文献
An information-theoretic perspective of physical adversarial patches
- DOI:
10.1016/j.neunet.2024.106590 - 发表时间:
2024-11-01 - 期刊:
- 影响因子:
- 作者:
Bilel Tarchoun;Anouar Ben Khalifa;Mohamed Ali Mahjoub;Nael Abu-Ghazaleh;Ihsen Alouani - 通讯作者:
Ihsen Alouani
Nael Abu-Ghazaleh的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Nael Abu-Ghazaleh', 18)}}的其他基金
Collaborative Research: SHF: Medium: Approximate Computing for Machine Learning Security: Foundations and Accelerator Design
协作研究:SHF:媒介:机器学习安全的近似计算:基础和加速器设计
- 批准号:
2212426 - 财政年份:2022
- 资助金额:
$ 50.54万 - 项目类别:
Continuing Grant
TWC: Small: Collaborative: Practical Hardware-Assisted Always-On Malware Detection
TWC:小型:协作:实用的硬件辅助始终在线恶意软件检测
- 批准号:
1619322 - 财政年份:2016
- 资助金额:
$ 50.54万 - 项目类别:
Standard Grant
CSR: Small: Collaborative Research: Combining Static Analysis and Dynamic Run-time Optimization for Parallel Discrete Event Simulation in Many-Core Environments
CSR:小型:协作研究:结合静态分析和动态运行时优化,实现多核环境中的并行离散事件仿真
- 批准号:
0916323 - 财政年份:2009
- 资助金额:
$ 50.54万 - 项目类别:
Standard Grant
相似国自然基金
支持二维毫米波波束扫描的微波/毫米波高集成度天线研究
- 批准号:62371263
- 批准年份:2023
- 资助金额:52 万元
- 项目类别:面上项目
腙的Heck/脱氮气重排串联反应研究
- 批准号:22301211
- 批准年份:2023
- 资助金额:30 万元
- 项目类别:青年科学基金项目
水系锌离子电池协同性能调控及枝晶抑制机理研究
- 批准号:52364038
- 批准年份:2023
- 资助金额:33 万元
- 项目类别:地区科学基金项目
基于人类血清素神经元报告系统研究TSPYL1突变对婴儿猝死综合征的致病作用及机制
- 批准号:82371176
- 批准年份:2023
- 资助金额:49 万元
- 项目类别:面上项目
FOXO3 m6A甲基化修饰诱导滋养细胞衰老效应在补肾法治疗自然流产中的机制研究
- 批准号:82305286
- 批准年份:2023
- 资助金额:30 万元
- 项目类别:青年科学基金项目
相似海外基金
Collaborative Research: SaTC: CORE: Medium: Using Intelligent Conversational Agents to Empower Adolescents to be Resilient Against Cybergrooming
合作研究:SaTC:核心:中:使用智能会话代理使青少年能够抵御网络诱骗
- 批准号:
2330940 - 财政年份:2024
- 资助金额:
$ 50.54万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
- 批准号:
2317232 - 财政年份:2024
- 资助金额:
$ 50.54万 - 项目类别:
Continuing Grant
Collaborative Research: NSF-BSF: SaTC: CORE: Small: Detecting malware with machine learning models efficiently and reliably
协作研究:NSF-BSF:SaTC:核心:小型:利用机器学习模型高效可靠地检测恶意软件
- 批准号:
2338301 - 财政年份:2024
- 资助金额:
$ 50.54万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
- 批准号:
2317233 - 财政年份:2024
- 资助金额:
$ 50.54万 - 项目类别:
Continuing Grant
Collaborative Research: NSF-BSF: SaTC: CORE: Small: Detecting malware with machine learning models efficiently and reliably
协作研究:NSF-BSF:SaTC:核心:小型:利用机器学习模型高效可靠地检测恶意软件
- 批准号:
2338302 - 财政年份:2024
- 资助金额:
$ 50.54万 - 项目类别:
Continuing Grant