SaTC: CORE: Small: Security of FPGA-as-a-Service Reconfigurable Systems
SaTC: CORE: Small: Security of FPGA-as-a-Service Reconfigurable Systems
批准号:
2310142
负责人:
Krishnendu Chakrabarty
金额:
$50.0万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2023
资助国家:
美国
项目状态:
已结题
起止时间:
2023-01-01 至 2024-09-30
中文摘要
商业云计算服务如今被广泛使用。云计算的进步使得现场可编程门阵列(FPGA)能够集成到高端平台中,以进行特定领域的定制。然而,这种FPGA即服务系统容易受到恶意攻击,需要采取对策来确保这些系统可以高保证地部署。今天的安全解决方案不足以满足下一代平台的需求,在下一代平台中,来自不同供应商的知识产权(IP)块集成在同一FPGA结构上;它们访问共享的计算资源,并合并来自潜在不可信来源的应用程序。这项研究是基于认证方法,信息流跟踪,影子逻辑,形式化方法,和片上传感器的监测相结合。利用机器学习检测恶意FPGA比特流。身份验证方法用于保护FPGA免受由于贪婪租户、任务重定向、任务隐藏和临时实例攻击而引起的拒绝服务攻击。影子逻辑和信息流跟踪用于保护FPGA和其他IP免受数据嗅探和数据修改攻击。评估使用的是一个带有嵌入式Xilinx Kintex-7 FPGA的Digilent Genesys 2开发板和一个ZedBoard Zynq-7000开发板。威胁建模、攻击预测和主动对策将有助于确保FPGA即服务系统的信任。正在开发恶意FPGA比特流的基准以评估对策。正在设计一个基于网络的反措施效果评估平台,以协助研究人员评估反措施的效果,并比较不同的解决方案。与英特尔和IBM的合作伙伴正在进行合作。研究结果正在被纳入一个新的硬件安全课程和一个新的网络安全课程在研究生一级。来自北卡罗来纳州科学和数学学院的高中生正在参与这项正在进行的研究。与该项目有关的所有数据都通过DukeSpace储存库https://dukespace.lib.duke.edu/dspace/传播。杜克空间是一个数字集合,捕捉和保存杜克的智力输出的服务器上运行的大学的图书馆。测试源代码、输入/输出文件和文档将在项目成熟时发布。所有的数据和软件将在杜克网站(http://people.ee.duke.edu/dukrish/)上提供,这些数据将在项目完成后的5年内提供。该奖项反映了NSF的法定使命,并被认为值得通过使用基金会的知识价值和更广泛的影响审查标准进行评估来支持。
英文摘要
Commercial cloud computing services are widely used today. Advances in cloud computing have enabled integration of field-programmable gate-arrays (FPGAs) in high-end platforms for domain-specific customization. However, such FPGA-as-a-service systems are vulnerable to malicious attacks and countermeasures are needed to ensure that these systems can be deployed with high assurance. Today's security solutions are not sufficient for next-generation platforms in which intellectual property (IP) blocks from different providers are integrated on the same FPGA fabric; they access shared computational resources and incorporate applications from potentially untrusted sources. This research is based on a combination of authentication methods, information flow tracking, shadow logic, formal methods, and the monitoring of on-chip sensors. Machine learning is utilized to detect malicious FPGA bitstreams. Authentication methods are being used to secure FPGAs against denial-of-service attacks due to greedy tenants, task-redirection, task-hiding, and temporal-instance attacks. Shadow logic and information flow tracking are used to secure the FPGA and other IPs against data-sniffing and data-modification attacks. Evaluation is being carried out using a Digilent Genesys 2 board with an embedded Xilinx Kintex-7 FPGA, and a ZedBoard Zynq-7000 development board.Threat modeling, attack prediction, and proactive countermeasures will contribute to trust assurance in FPGA-as-a-Service systems. Benchmarks of malicious FPGA bitstreams are being developed for the evaluation of countermeasures. A web-based countermeasure-effectiveness assessment platform is being designed to assist researchers in evaluating the effectiveness of countermeasures and compare between different solutions. Collaborations are underway with partners in Intel and IBM. Research findings are being integrated in a new hardware security course and a new cybersecurity curriculum at the graduate level. High-school students from the North Carolina School of Science and Mathematics are being engaged in the ongoing research. All data related to this project are being disseminated through the DukeSpace repository, https://dukespace.lib.duke.edu/dspace/. DukeSpace is a digital collection that captures and preserve Duke’s intellectual output on a server operated by the University’s Library. Source code for testing, input/output files, and documentation will be released as the project matures. All data and software will be available in a Duke website (http://people.ee.duke.edu/~krish/), and this data will be available for 5 years after the project is completed.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(3)
专著(0)
科研奖励(0)
会议论文
Diagnosis of Malicious Bitstreams in Cloud Computing FPGAs*
云计算 FPGA 中的恶意比特流诊断*
DOI:
10.1109/tcad.2023.3272268
发表时间:
2023
期刊:
IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems
影响因子:
2.9
作者:
[Chaudhuri, Jayeeta, Chakrabarty, Krishnendu]
通讯作者:
Chakrabarty, Krishnendu
Criticality Analysis of Ring Oscillators in FPGA Bitstreams *
FPGA 比特流中环形振荡器的关键性分析*
DOI:
10.1109/ets56758.2023.10173861
发表时间:
2023
期刊:
Prof. IEEE European Test Symposium
影响因子:
--
作者:
[Chaudhuri, Jayeeta, Chakrabarty, Krishnendu]
通讯作者:
Chakrabarty, Krishnendu
Detection and Classification of Malicious Bitstreams for FPGAs in Cloud Computing
云计算中 FPGA 恶意比特流的检测和分类
DOI:
10.1145/3566097.3568346
发表时间:
2023
期刊:
Proc. Asia South Pacific Design Automation Conference
影响因子:
--
作者:
[Chaudhuri, Jayeeta, Chakrabarty, Krishnendu]
通讯作者:
Chakrabarty, Krishnendu
SHF: Small: Testing and Design-for-Test Techniques for Monolithic 3D Integrated Circuits
-
批准号:2309822
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2023
-
负责人:Krishnendu Chakrabarty
-
依托单位:
Collaborative Research: SaTC: CORE: Medium: Secure and Trustworthy Cyberphysical Microfluidic Systems
-
批准号:2313296
-
项目类别:Standard Grant
-
资助金额:$65.76万
-
财政年份:2023
-
负责人:Krishnendu Chakrabarty
-
依托单位:
Adaptive Protocol Synthesis and Error Recovery in Micro-Electrode-Dot-Array (MEDA) Microfluidic Biochips
-
批准号:2313498
-
项目类别:Standard Grant
-
资助金额:$44.99万
-
财政年份:2023
-
负责人:Krishnendu Chakrabarty
-
依托单位:
Collaborative Research: SaTC: CORE: Medium: Secure and Trustworthy Cyberphysical Microfluidic Systems
-
批准号:2049335
-
项目类别:Standard Grant
-
资助金额:$65.76万
-
财政年份:2021
-
负责人:Krishnendu Chakrabarty
-
依托单位:
SaTC: CORE: Small: Security of FPGA-as-a-Service Reconfigurable Systems
-
批准号:2011561
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2020
-
负责人:Krishnendu Chakrabarty
-
依托单位:
Adaptive Protocol Synthesis and Error Recovery in Micro-Electrode-Dot-Array (MEDA) Microfluidic Biochips
-
批准号:1914796
-
项目类别:Standard Grant
-
资助金额:$44.99万
-
财政年份:2019
-
负责人:Krishnendu Chakrabarty
-
依托单位:
SHF: Small: Testing and Design-for-Test Techniques for Monolithic 3D Integrated Circuits
-
批准号:1908045
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2019
-
负责人:Krishnendu Chakrabarty
-
依托单位:
EAGER: Collaborative: Secure and Trustworthy Cyberphysical Microfluidic Systems
-
批准号:1833622
-
项目类别:Standard Grant
-
资助金额:$10.0万
-
财政年份:2018
-
负责人:Krishnendu Chakrabarty
-
依托单位:
SHF: Medium: Microbiology on a Programmable Biochip: An Integrated Hardware/Software Digital Microfluidics Platform
-
批准号:1702596
-
项目类别:Standard Grant
-
资助金额:$90.0万
-
财政年份:2017
-
负责人:Krishnendu Chakrabarty
-
依托单位:
EAGER: Cybermanufacturing: Design of an Agile and Smart Manufacturing Exchange: Enabling Small Businesses through Standardized Protocols and Distributed Optimization
-
批准号:1543872
-
项目类别:Standard Grant
-
资助金额:$30.0万
-
财政年份:2015
-
负责人:Krishnendu Chakrabarty
-
依托单位:
US-Germany Collaboration: Satisfiability-Based Test Generation for Small-Delay Defects in Nanoscale Integrated Circuits
-
批准号:1157536
-
项目类别:Standard Grant
-
资助金额:$3.73万
-
财政年份:2012
-
负责人:Krishnendu Chakrabarty
-
依托单位:
CPS:Medium:Hardware/Software Co-Design for the Life Sciences: Towards a Programmable and Reconfigurable Lab-on-Chip
-
批准号:1135853
-
项目类别:Standard Grant
-
资助金额:$160.0万
-
财政年份:2011
-
负责人:Krishnendu Chakrabarty
-
依托单位:
SHF: Small: Collaborative Research: Testing and Design-for-Testability Solutions for 3D Stacked Integrated Circuits
-
批准号:1017391
-
项目类别:Standard Grant
-
资助金额:$20.0万
-
财政年份:2010
-
负责人:Krishnendu Chakrabarty
-
依托单位:
U.S.-India Planning Visit: Collaborative Research on Algorithms for Digital Microfluidic Biochips
-
批准号:1041708
-
项目类别:Standard Grant
-
资助金额:$0.44万
-
财政年份:2010
-
负责人:Krishnendu Chakrabarty
-
依托单位:
Optimization of Test and Diagnosis Infrastructure for Multicore Chips
-
批准号:0903392
-
项目类别:Standard Grant
-
资助金额:$19.73万
-
财政年份:2009
-
负责人:Krishnendu Chakrabarty
-
依托单位:
SHF: Small:Design Tools and Optimization Methods for Digital Microfluidic Biochips
-
批准号:0914895
-
项目类别:Standard Grant
-
资助金额:$27.5万
-
财政年份:2009
-
负责人:Krishnendu Chakrabarty
-
依托单位:
GOALI (Industry-University Collaborative Project): Collaborative Research: Scalable Techniques for Detecting Small-Delay Defects in Nanometer Integrated Circuits
-
批准号:0823835
-
项目类别:Standard Grant
-
资助金额:$23.52万
-
财政年份:2008
-
负责人:Krishnendu Chakrabarty
-
依托单位:
Synthesis, Test, and Reconfiguration Techniques for Microfluidics-Based Biochips
-
批准号:0541055
-
项目类别:Continuing Grant
-
资助金额:$20.0万
-
财政年份:2006
-
负责人:Krishnendu Chakrabarty
-
依托单位:
U.S.-Japan Cooperative Science: Efficient Test and Diagnosis Techniques for System-on-Chip
-
批准号:0403217
-
项目类别:Standard Grant
-
资助金额:$0.0万
-
财政年份:2004
-
负责人:Krishnendu Chakrabarty
-
依托单位:
Investigations into Droplet-Based Microelectrofluidic Technology for Hot Spot Cooling and Thermal Management in Integrated Circuits
-
批准号:0306349
-
项目类别:Continuing Grant
-
资助金额:$25.0万
-
财政年份:2003
-
负责人:Krishnendu Chakrabarty
-
依托单位:
国内基金
海外基金
登录
查看更多内容
胆固醇羟化酶CH25H非酶活依赖性促进乙型肝炎病毒蛋白Core及Pre-core降解的分子机制研究
-
批准号:82371765
-
项目类别:面上项目
-
资助金额:50万元
-
批准年份:2023
-
负责人:谭广云
-
依托单位:
锕系元素5f-in-core的GTH赝势和基组的开发
-
批准号:22303037
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2023
-
负责人:鲁俊波
-
依托单位:
基于合成致死策略搭建Core-matched前药共组装体克服肿瘤耐药的机制研究
-
批准号:--
-
项目类别:--
-
资助金额:52万元
-
批准年份:2022
-
负责人:孙丙军
-
依托单位:
鼠伤寒沙门氏菌LPS core经由CD209/SphK1促进树突状细胞迁移加重炎症性肠病的机制研究
-
批准号:--
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2022
-
负责人:叶成林
-
依托单位:
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
-
批准号:--
-
项目类别:--
-
资助金额:55万元
-
批准年份:2020
-
负责人:张智勇
-
依托单位:
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
-
批准号:82072415
-
项目类别:面上项目
-
资助金额:55.0万元
-
批准年份:2020
-
负责人:张智勇
-
依托单位:
肌营养不良蛋白聚糖Core M3型甘露糖肽的精确制备及功能探索
-
批准号:92053110
-
项目类别:重大研究计划
-
资助金额:70.0万元
-
批准年份:2020
-
负责人:彭鹏
-
依托单位:
Core-1-O型聚糖黏蛋白缺陷诱导胃炎发生并介导慢性胃炎向胃癌转化的分子机制研究
-
批准号:81902805
-
项目类别:青年科学基金项目
-
资助金额:20.5万元
-
批准年份:2019
-
负责人:刘菲
-
依托单位:
原始地球增生晚期的Core-merging大碰撞事件:地核增生、核幔平衡与核幔边界结构的新认识
-
批准号:41973063
-
项目类别:面上项目
-
资助金额:65.0万元
-
批准年份:2019
-
负责人:周游
-
依托单位:
CORDEX-CORE区域气候模拟与预估研讨会
-
批准号:41981240365
-
项目类别:国际(地区)合作与交流项目
-
资助金额:1.5万元
-
批准年份:2019
-
负责人:陈威霖
-
依托单位: