Collaborative: FMitF: Track I: A Principled Approach to Modeling and Analysis of Hardware Fault Attacks on Embedded Software

协作:FMitF:第一轨:嵌入式软件硬件故障攻击建模和分析的原则方法

基本信息

  • 批准号:
    2219810
  • 负责人:
  • 金额:
    $ 37.45万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Standard Grant
  • 财政年份:
    2022
  • 资助国家:
    美国
  • 起止时间:
    2022-07-15 至 2026-06-30
  • 项目状态:
    未结题

项目摘要

In a hardware fault attack on embedded software, an attacker can temporarily change the meaning of instructions in the embedded software or the value of its data. The consequences of unmitigated fault attacks are significant. They may lead to privilege escalation of an attacker's code over victim code or information leakage from a victim process to an attacker. However, the software community does not yet have a deep understanding of fault attacks. The effects of fault injection on a digital system are only understood at the hardware level. The gap is due to the lack of models that adequately capture the effects of fault injection on complex, layered systems, leading to the lack of clear guarantees about the non-exploitability of software. The project's novelties are to develop a principled understanding of these hardware attacks and to create novel formal analysis tools and methodologies for secure embedded software verification. The project's impacts are to help the software community understand the importance and relevance of hardware fault attacks and to help mitigate the security risks. The expected outcomes are formal tools and techniques for improved fault detection and fault countermeasures that would address malicious hardware fault attacks and faults related to the rapidly growing problem of silicon reliability.The project investigates a unified framework capable of modeling and analyzing the impact of hardware faults on embedded software in a principled and systematic fashion. The framework combines open-source simulation and compilation technologies to show exploitability, or to prove non-exploitability, in the presence of hardware fault attacks. Three research tasks lead to the framework's development. First, the design of a fault model captures the impact of hardware faults at the instruction-set architecture (ISA) level. Second, hardware-software co-simulation characterizes the fault model. Third, formal analysis and verification tools integrate the fault model to efficiently and accurately investigate the faults' impact on software code. Finally, the investigators create and extend graduate-level educational content on the use of formal technologies in the field of embedded software. The investigators also direct senior theses to include undergraduate students in the research.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
在针对嵌入式软件的硬件故障攻击中,攻击者可以暂时改变嵌入式软件中指令的含义或其数据的值。未缓解的故障攻击的后果是严重的。它们可能会导致攻击者代码相对于受害者代码的权限升级,或者信息从受害者进程泄露给攻击者。然而,软件界还没有对故障攻击有深入的了解。故障注入对数字系统的影响只能在硬件层面上理解。造成这一差距的原因是缺乏能够充分捕捉故障注入对复杂分层系统影响的模型,从而导致缺乏对软件不可利用性的明确保证。该项目的新颖之处在于对这些硬件攻击形成原则性的理解,并为安全嵌入式软件验证创建新颖的形式分析工具和方法。该项目的影响是帮助软件社区了解硬件故障攻击的重要性和相关性,并帮助减轻安全风险。预期成果是用于改进故障检测和故障对策的正式工具和技术,以解决恶意硬件故障攻击和与快速增长的芯片可靠性问题相关的故障。该项目研究了一个统一的框架,能够以原则性和系统性的方式建模和分析硬件故障对嵌入式软件的影响。该框架结合了开源模拟和编译技术,以在存在硬件故障攻击的情况下显示可利用性或证明不可利用性。三项研究任务导致了该框架的开发。首先,故障模型的设计在指令集架构(ISA)级别捕获硬件故障的影响。其次,软硬件联合仿真表征了故障模型。第三,形式化分析和验证工具集成故障模型​​,以高效、准确地调查故障对软件代码的影响。最后,研究人员创建并扩展了关于嵌入式软件领域形式技术使用的研究生教育内容。研究人员还指导高级论文将本科生纳入研究中。该奖项反映了 NSF 的法定使命,并通过使用基金会的智力价值和更广泛的影响审查标准进行评估,被认为值得支持。

项目成果

期刊论文数量(2)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Analysis of EM Fault Injection on Bit-sliced Number Theoretic Transform Software in Dilithium
The Technological Arms Race in Hardware Security
硬件安全领域的技术军备竞赛
{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Patrick Schaumont其他文献

Introduction to the CHES 2012 special issue
  • DOI:
    10.1007/s13389-013-0055-5
  • 发表时间:
    2013-02-27
  • 期刊:
  • 影响因子:
    1.400
  • 作者:
    Emmanuel Prouff;Patrick Schaumont
  • 通讯作者:
    Patrick Schaumont
Low Power Digital Frequency Conversion Architectures
Parasitic Circus: On the Feasibility of Golden Free PCB Verification
寄生马戏团:论无金PCB验证的可行性
  • DOI:
  • 发表时间:
    2024
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Maryam Saadat;Patrick Schaumont;Shahin Tajik
  • 通讯作者:
    Shahin Tajik
The ASHES 2020 special issue at JCEN
  • DOI:
    10.1007/s13389-022-00300-2
  • 发表时间:
    2022-09-12
  • 期刊:
  • 影响因子:
    1.400
  • 作者:
    Chip-Hong Chang;Stefan Katzenbeisser;Ulrich Rührmair;Patrick Schaumont
  • 通讯作者:
    Patrick Schaumont
Lightning Talk: The Incredible Shrinking Black Box Model
闪电演讲:令人难以置信的缩小黑匣子模型

Patrick Schaumont的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Patrick Schaumont', 18)}}的其他基金

RAPID: Collaborative: A privacy-preserving contact tracing system for COVID-19 containment and mitigation
RAPID:协作:用于遏制和缓解 COVID-19 的隐私保护接触者追踪系统
  • 批准号:
    2028190
  • 财政年份:
    2020
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
NSF Student Travel Grant for 2019 Conference on Cryptographic Hardware and Embedded Systems (CHES)
2019 年加密硬件和嵌入式系统 (CHES) 会议 NSF 学生旅费补助金
  • 批准号:
    1936003
  • 财政年份:
    2019
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
NSF Student Travel Grant for 2018 Conference on Cryptographic Hardware and Embedded Systems
2018 年加密硬件和嵌入式系统会议 NSF 学生旅费补助金
  • 批准号:
    1827816
  • 财政年份:
    2018
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
TWC: Small: Secure by Construction: An Automated Approach to Comprehensive Side Channel Resistance
TWC:小型:通过构造实现安全:综合侧通道阻力的自动化方法
  • 批准号:
    1617203
  • 财政年份:
    2016
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
SaTC: STARSS: FAME: Fault-attack Awareness using Microprocessor Enhancements
SaTC:STARSS:FAME:使用微处理器增强功能的故障攻击意识
  • 批准号:
    1441710
  • 财政年份:
    2014
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
TC: Medium: From Statistics to Circuits: Foundations for Future On-chip Fingerprints
TC:媒介:从统计到电路:未来片上指纹的基础
  • 批准号:
    0964680
  • 财政年份:
    2010
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Continuing Grant
II-NEW: Infrastructure to Collect and Analyze Circuit Variability in FPGAs
II-新:收集和分析 FPGA 中电路变异性的基础设施
  • 批准号:
    0855095
  • 财政年份:
    2009
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
CAREER: Hardware/Software Codesign for Secure Embedded Systems: Methods and Education
职业:安全嵌入式系统的硬件/软件协同设计:方法和教育
  • 批准号:
    0644070
  • 财政年份:
    2007
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Continuing Grant

相似海外基金

Collaborative Research: FMitF: Track I: Game Theoretic Updates for Network and Cloud Functions
合作研究:FMitF:第一轨:网络和云功能的博弈论更新
  • 批准号:
    2318970
  • 财政年份:
    2023
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
Collaborative Research: FMitF: Track I: Knitting Semantics
合作研究:FMitF:第一轨:针织语义
  • 批准号:
    2319182
  • 财政年份:
    2023
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
Collaborative Research: FMitF: Track I: Towards Verified Robustness and Safety in Power System-Informed Neural Networks
合作研究:FMitF:第一轨:实现电力系统通知神经网络的鲁棒性和安全性验证
  • 批准号:
    2319242
  • 财政年份:
    2023
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
Collaborative Research: FMitF: Track I: DeepSmith: Scheduling with Quality Guarantees for Efficient DNN Model Execution
合作研究:FMitF:第一轨:DeepSmith:为高效 DNN 模型执行提供质量保证的调度
  • 批准号:
    2349461
  • 财政年份:
    2023
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
Collaborative Research: FMitF: Track I: Towards Verified Robustness and Safety in Power System-Informed Neural Networks
合作研究:FMitF:第一轨:实现电力系统通知神经网络的鲁棒性和安全性验证
  • 批准号:
    2319243
  • 财政年份:
    2023
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
Collaborative Research: FMitF: Track I: Synthesis and Verification of In-Memory Computing Systems using Formal Methods
合作研究:FMitF:第一轨:使用形式方法合成和验证内存计算系统
  • 批准号:
    2319400
  • 财政年份:
    2023
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
Collaborative Research: FMitF: Track I: Synthesis and Verification of In-Memory Computing Systems using Formal Methods
合作研究:FMitF:第一轨:使用形式方法合成和验证内存计算系统
  • 批准号:
    2319399
  • 财政年份:
    2023
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
Collaborative Research: FMitF: Track I: A Formal Verification and Implementation Stack for Programmable Logic Controllers
合作研究:FMitF:第一轨:可编程逻辑控制器的形式验证和实现堆栈
  • 批准号:
    2425711
  • 财政年份:
    2023
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
Collaborative Research: FMitF: Track I: Simplifying End-to-End Verification of High-Performance Distributed Systems
合作研究:FMitF:第一轨:简化高性能分布式系统的端到端验证
  • 批准号:
    2318954
  • 财政年份:
    2023
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
Collaborative Research: FMitF: Track I: The Phlox framework for verifying a high-performance distributed database
合作研究:FMitF:第一轨:用于验证高性能分布式数据库的 Phlox 框架
  • 批准号:
    2319167
  • 财政年份:
    2023
  • 资助金额:
    $ 37.45万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了