课题基金 / 基金详情

FMitF: Track II: Automated Verification for Assembly Implementations of Cryptography Libraries

FMitF: Track II: Automated Verification for Assembly Implementations of Cryptography Libraries
FMITF:轨道 II:密码库汇编实现的自动验证
批准号:
1917897
负责人:
Santosh Nagarakatte
金额:
$10.0万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2019
资助国家:
美国
项目状态:
已结题
起止时间:
2019-08-01 至 2022-01-31

项目摘要

项目成果

Santosh Nagarakatte的其他基金

相似基金

相关文献

中文摘要
翻译
主流的加密库,如OpenSSL和BoringSSL,包含数千行手动优化的汇编代码,以实现高性能。不幸的是,这些系统中的bug相当普遍。该项目开发了一种技术和工具CASM-Verify,用于自动检查高度优化的加密算法汇编实现与这些算法的未优化参考版本的等价性,以确保在优化过程中不会引入错误。该项目的新颖之处在于将等价检验问题分解为几个小的子问题,使用具体和符号评估的结合。该项目旨在通过可用的等价性检查工具来提高广泛使用的加密库的安全性。该项目还将教育研究生和本科生以及各种正式工具和技术的实践者。作为该项目一部分开发的软件采用给定的参考和优化实现,并在随机生成的输入上具体执行这两种实现,并识别可能等效的变量。随后,利用可满足模理论解算器进行符号验证,以确定所识别的变量是否确实等价。此外,它使用一组内存访问优化将原始查询分解为小的子查询。为了使主流开发人员能够使用这些思想,本项目探索了以下方向:(1)支持Qhasm和Jasmin语言用于高速加密,(2)支持大整数算法的推理,以及(3)验证汇编实现的恒定时间属性。该奖项反映了美国国家科学基金会的法定使命,并通过使用基金会的知识价值和更广泛的影响审查标准进行评估,被认为值得支持。
英文摘要
Mainstream libraries for cryptography, like OpenSSL and BoringSSL, contain several thousand lines of manually optimized assembly code for high performance. Bugs in these systems are unfortunately somewhat common. This project develops techniques and a tool, CASM-Verify, to automatically check the equivalence of highly optimized assembly implementations of cryptographic algorithms against unoptimized reference versions of these algorithms in order to ensure that bugs are not introduced during the optimization process. The project's novelty is in decomposing the equivalence checking problem into several small sub-problems using a combination of concrete and symbolic evaluation. The project aims to improve the assurance of widely used cryptography libraries with usable equivalence checking tools. The project also will educate graduate and undergraduate students and practitioners on various formal tools and techniques.The software developed as part of this project takes a given a reference and an optimized implementation, and concretely execute the two implementations on randomly generated inputs and identifies likely equivalent variables. Subsequently, it uses symbolic verification using satisfiability modulo theory solvers to determine whether the identified variables are indeed equivalent. Further, it decomposes the original query into small sub-queries using a collection of optimizations for memory accesses. To enable the usage of these ideas by mainstream developers, this project explores the following directions: (1) support Qhasm and Jasmin languages for high-speed cryptography, (2) support reasoning about large integer arithmetic, and (3) verify constant-time properties of assembly implementations.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(6)
专著(0)
科研奖励(0)
会议论文
DOI: 10.1145/3387902.3392632
发表时间: 2020
期刊: CF '20: Proceedings of the 17th ACM International Conference on Computing Frontiers
影响因子: --
作者: [Lim, Jay P, Shachnai, Matan, Nagarakatte, Santosh]
通讯作者: Nagarakatte, Santosh
DOI: 10.1145/3468264.3468585
发表时间: 2021
期刊: 2021 The ACM Joint European Software Engineering Conference and Symposium on the Foundations of Software Engineering (ESEC/FSE
影响因子: --
作者: [Chowdhary, Sangeeta, Nagarakatte, Santosh]
通讯作者: Nagarakatte, Santosh
DOI: 10.1145/3498664
发表时间: 2022-01
期刊: Proceedings of the ACM on Programming Languages
影响因子: --
作者: [Jay P. Lim;Santosh Nagarakatte]
通讯作者: Jay P. Lim;Santosh Nagarakatte
DOI: 10.1145/3385412.3386004
发表时间: 2020-06
期刊: Proceedings of the 41st ACM SIGPLAN Conference on Programming Language Design and Implementation
影响因子: --
作者: [Sangeeta Chowdhary;Jay P. Lim;Santosh Nagarakatte]
通讯作者: Sangeeta Chowdhary;Jay P. Lim;Santosh Nagarakatte
共 6 条
    Collaborative Research: DOE/NSF Workshop on Correctness in Scientific Computing
    • 批准号:
      2319661
    • 项目类别:
      Standard Grant
    • 资助金额:
      $2.0万
    • 财政年份:
      2023
    • 负责人:
      Santosh Nagarakatte
    • 依托单位:
    SHF:Small:Techniques for Generating Correctly Rounded Math Libraries
    • 批准号:
      2110861
    • 项目类别:
      Standard Grant
    • 资助金额:
      $50.0万
    • 财政年份:
      2021
    • 负责人:
      Santosh Nagarakatte
    • 依托单位:
    SHF: Small: Formalisms, Implementations, and Verification Procedures for Alternatives to Floating Point
    • 批准号:
      1908798
    • 项目类别:
      Standard Grant
    • 资助金额:
      $50.0万
    • 财政年份:
      2019
    • 负责人:
      Santosh Nagarakatte
    • 依托单位:
    CAREER: Semantics, Abstractions, and Tools for a Pragmatic Verified LLVM Compiler
    • 批准号:
      1453086
    • 项目类别:
      Continuing Grant
    • 资助金额:
      $54.5万
    • 财政年份:
      2015
    • 负责人:
      Santosh Nagarakatte
    • 依托单位:
    海外基金