首页|一种缓存感知的统一化Spectre攻击检测

一种缓存感知的统一化Spectre攻击检测

扫码查看
推测执行攻击及其变种正在不断被推出,攻击在缓存中留下痕迹,再通过缓存侧信道将敏感信息泄露出去.然而,现有的针对Spectre攻击的检测对于Spectre攻击及各类变种的代码模式和防御手段分析不足,存在误报和漏报的情况.针对这一问题,提出了一种改进的缓存感知的动态分析方法,以识别多种Spectre攻击.基于攻击原理及代码模式特征对Spectre攻击多种变体进行分析建模,并提出了一种基于最近最少使用替换策略的抽象缓存模型;基于对Spectre攻击及缓存的建模实现了一个缓存感知的Spectre漏洞动态分析检测工具.通过分析建模、缓存状态感知和追踪实现了更全面和准确的检测.在一组微基准及常用的密码库上进行了实验,准确地检测出所有微基准样本中的Spectre漏洞,并在多个加密算法中检测到缓存侧信道及Spectre漏洞.实验结果表明,本文所实现的方法具有较好的检测能力.
A Unified Cache-Aware Detection for Spectre Attacks
Spectre attack and its variants have been released continuously,leaving traces in the cache and then leaking sensitive in-formation through the cache side-channel attacks.However,existing detection methods for Spectre attacks are insufficient for ana-lyzing of the attack code patterns and existing defenses,resulting in false positives and negatives.This paper proposed an improved cache-aware dynamic analysis method to address this issue to identify various Spectre attacks.This paper analyzed and modeled variants of Spectre attacks based on the attack principle and code pattern characteristics,and improved the formal cache model based on the least recently used replacement policy,finally implemented a cache-aware dynamic analysis and detection tool for Spectre vulnerability based on the modeling of Spectre attacks and cache.Through experiments conducted on a set of microbench-marks and commonly used cryptographic libraries,Spectre gadgets were accurately detected in all microbenchmark samples.Addi-tionally,cache side-channel and Spectre vulnerabilities were identified in several cryptographic algorithms.In the end,the experi-mental results showed that the method proposed in this paper has a good detection capability.

Spectre attackscache side-channelside-channel detection

刘慧敏、严飞、张立强、欧长海

展开 >

空天信息安全与可信计算教育部实验室,武汉大学国家网络安全学院,湖北武汉 430072

Spectre攻击 缓存侧信道 侧信道检测

国家重点研发计划项目国家自然科学基金湖北省重大研究计划项目湖北省重点研发计划湖北省重点研发计划

2022YFB3103804621022902023BAA0272020BAA0032021BAA027

2024

武汉大学学报(理学版)
武汉大学

武汉大学学报(理学版)

CSTPCD北大核心
影响因子:0.814
ISSN:1671-8836
年,卷(期):2024.70(4)