CAREER: Scalable Assurance via Verifiable Hardware-Software Contracts
CAREER: Scalable Assurance via Verifiable Hardware-Software Contracts
批准号:
2236855
负责人:
Caroline Trippel
金额:
$57.5万
依托单位:
依托单位国家:
美国
项目类别:
Continuing Grant
财政年份:
2023
资助国家:
美国
项目状态:
未结题
起止时间:
2023-02-01 至 2028-01-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
Hardware-software (HW-SW) contracts are critical for high-assurance computer systems design and an enabler for software design/analysis tools that find and repair hardware-related bugs in programs. For example, memory consistency models (MCMs) define what values shared memory loads can return in a parallel program. Emerging security contracts define what program data is susceptible to leakage via hardware side-channels. Unfortunately, these contracts and the analyses they support are useless if we cannot guarantee microarchitectural compliance, which is a “grand challenge.” The project's key novelty is a bottom-up approach to the contract verification challenge that synthesizes HW-SW contracts, specifically MCMs and security contracts, from advanced (i.e., industry-scale/complexity) processor implementations. This project's core impacts are as follows. First, a significant fraction of modern design effort is devoted to verification. An automated methodology for synthesizing HW-SW contracts directly from implementations, even with modest designer input, would be a huge step forward. Second, hardware side-channel attacks are arguably the security threat in computer architecture. An approach for precisely computing how a microarchitecture can leak the data it processes through side-channels has direct applications to secure software design and hardware verification today (e.g., verification of Arm’s Data-Independent Timing extensions or Intel’s Operand Independent Timing specification) and HW-SW-security co-design tomorrow.This work will explore three research thrusts to enable synthesizing HW-SW contracts from advanced processor designs. Thrust 1 will investigate what design information is required to support automated contract synthesis procedures and how to acquire it from the target microarchitecture with minimal designer input. Thrust 2 will study how to use the design information acquired in Thrust 1 to develop HW-SW contract synthesis procedures. Thrust 3 will use the contracts produced by Thrust 2 to support hardware verification and program analysis flows rooted in hardware reality. This work's bottom-up approach to verifying contract compliance by synthesizing HW-SW contracts from implementations offers efficiency and scalability advantages over traditional top-down techniques since abstract contracts can be incrementally constructed by evaluating a design’s adherence to simple low-level properties. Moreover, it is robust to HW-SW contracts that emerge post-deployment or evolve over time. HW-SW contracts that are synthesized from implementations enable advances in high-assurance software design and hardware verification. For example, this project will enable the design of software which is provably robust to hardware side-channel leakage as well as comprehensive MCM verification of advanced processor Register Transfer Level (RTL) for the first time. This cross-disciplinary research project cuts across three areas: computer architecture, formal methods, security. The team consists of one PI and a graduate student researcher at Stanford University, who will work with ARM and Intel as partners.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(1)
专著(0)
科研奖励(0)
会议论文
Serberus: Protecting Cryptographic Code from Spectres at Compile-Time
Serberus:在编译时保护加密代码免受幽灵影响
DOI:
--
发表时间:
2024
期刊:
Proceedings of the IEEE Symposium on Security and Privacy
影响因子:
--
作者:
[Mosier, Nicholas, Nemati, Hamed, Mitchell, John C., Trippel, Caroline]
通讯作者:
Trippel, Caroline
Collaborative Research: CISE: Large: Cross-Layer Resilience to Silent Data Corruption
-
批准号:2321489
-
项目类别:Continuing Grant
-
资助金额:$218.75万
-
财政年份:2023
-
负责人:Caroline Trippel
-
依托单位:
Collaborative Research: SaTC: CORE: Medium: Systematic Detection Of and Defenses Against Next-Generation Microarchitectural Attacks
-
批准号:2153936
-
项目类别:Continuing Grant
-
资助金额:$40.0万
-
财政年份:2022
-
负责人:Caroline Trippel
-
依托单位:
FMitF: Track II: Scaling Formal Hardware Security Verification with CheckMate from Research to Practice
-
批准号:2017863
-
项目类别:Standard Grant
-
资助金额:$10.0万
-
财政年份:2020
-
负责人:Caroline Trippel
-
依托单位:
国内基金
海外基金
Scalable Learning and Optimization: High-dimensional Models and Online Decision-Making Strategies for Big Data Analysis
-
批准号:--
-
项目类别:合作创新研究团队
-
资助金额:--
-
批准年份:2024
-
负责人:姚韬
-
依托单位: