计算机科学
隐蔽通道
隐蔽的
投机
块(置换群论)
计算机安全
旁道攻击
架空(工程)
抽象
投机性执行
嵌入式系统
操作系统
密码学
云安全计算
云计算
安全信息和事件管理
认识论
哲学
宏观经济学
经济
语言学
数学
几何学
作者
Jiyong Yu,Mengjia Yan,Artem Khyzha,Adam Morrison,Josep Torrellas,Christopher W. Fletcher
摘要
Speculative execution attacks present an enormous security threat, capable of reading arbitrary program data under malicious speculation, and later exfiltrating that data over microarchitectural covert channels. This paper proposes speculative taint tracking (STT), a high security and high performance hardware mechanism to block these attacks. The main idea is that it is safe to execute and selectively forward the results of speculative instructions that read secrets, as long as we can prove that the forwarded results do not reach potential covert channels. The technical core of the paper is a new abstraction to help identify all micro-architectural covert channels, and an architecture to quickly identify when a covert channel is no longer a threat. We further conduct a detailed formal analysis on the scheme in a companion document. When evaluated on SPEC06 workloads, STT incurs 8.5% or 14.5% performance overhead relative to an insecure machine.
科研通智能强力驱动
Strongly Powered by AbleSci AI