Precise And Scalable Side Channel Analysis

Download Precise And Scalable Side Channel Analysis full books in PDF, epub, and Kindle. Read online free Precise And Scalable Side Channel Analysis ebook anywhere anytime directly on your device. Fast Download speed and no annoying ads. We cannot guarantee that every ebooks is available!

Precise and Scalable Side-Channel Analysis

Precise and Scalable Side-Channel Analysis
Author :
Publisher :
Total Pages :
Release :
ISBN-10 : OCLC:1273173587
ISBN-13 :
Rating : 4/5 ( Downloads)

Book Synopsis Precise and Scalable Side-Channel Analysis by : Qinkun Bao

Download or read book Precise and Scalable Side-Channel Analysis written by Qinkun Bao and published by . This book was released on 2021 with total page pages. Available in PDF, EPUB and Kindle. Book excerpt: Side channels are ubiquitous in modern computer systems as sensitive information can leak through many mechanisms such as power consumption, execution time, and even electromagnetic radiation. Among them, address-based side-channel attacks, such as cache-based attacks, memory page attacks, and controlled-channel attacks, are especially problematic as they do not require physical proximity. Hardware countermeasures, which usually require changes to the complex underlying hardware, are hard to adopt in practice. On the contrary, software approaches are generally easy to implement. While some existing tools can detect side-channel leakages, many of these approaches are computationally expensive or imprecise. Besides, many such vulnerabilities leak a negligible amount of sensitive information, and thus developers are often reluctant to address them. Existing tools do not provide sufficient information, such as the amount of information leaked through side channels, to evaluate the severity of a vulnerability. In this dissertation, we present methods to detect and quantify address-based side-channel vulnerabilities in real-world applications. First, a new method to detect address-based side-channel vulnerabilities for the binary code is proposed. We examine the bottleneck in the symbolic approaches and improve the analysis precision and performance. Second, we propose a new program analysis method to precisely quantify the leaked information in a single-trace attack. We model an attacker's observation of each leakage site as a constraint and run Monte Carlo sampling to estimate the number of leaked bits for each leakage site. Finally, we extend our approach to quantify side-channel leakages from multiple trace attacks. We present a method to quantify the lower bound of side-channel leakages. Unlike the previous side-channel detection tools, our approach can identify severe side-channel leakages without false positives. We implement the approaches and apply them to popular cryptography libraries. The evaluation results confirm that our side-channel detection method is much faster than state-of-art tools while identifying all the known leakages reported by previous tools. The experiments also show that our side-channel analysis reports precise leakage information that can help developers better triage the reported vulnerabilities. This dissertation research develops fundamental and practical techniques for precise side-channel analysis in software systems. We have also released our research software prototypes. As a result, developers can use our tools to develop more secure systems and the academic and industry communities can further advance side-channel analysis on top of our research.


Precise and Scalable Side-Channel Analysis Related Books

Precise and Scalable Side-Channel Analysis
Language: en
Pages:
Authors: Qinkun Bao
Categories:
Type: BOOK - Published: 2021 - Publisher:

DOWNLOAD EBOOK

Side channels are ubiquitous in modern computer systems as sensitive information can leak through many mechanisms such as power consumption, execution time, and
Constructive Side-Channel Analysis and Secure Design
Language: en
Pages: 309
Authors: Sylvain Guilley
Categories: Computers
Type: BOOK - Published: 2017-08-02 - Publisher: Springer

DOWNLOAD EBOOK

This book constitutes revised selected papers from the 8th International Workshop on Constructive Side-Channel Analysis and Secure Design, COSADE 2017, held in
Security of Ubiquitous Computing Systems
Language: en
Pages: 268
Authors: Gildas Avoine
Categories: Computers
Type: BOOK - Published: 2021-01-14 - Publisher: Springer Nature

DOWNLOAD EBOOK

The chapters in this open access book arise out of the EU Cost Action project Cryptacus, the objective of which was to improve and adapt existent cryptanalysis
Constructive Side-Channel Analysis and Secure Design
Language: en
Pages: 304
Authors: Ilia Polian
Categories: Computers
Type: BOOK - Published: 2019-03-15 - Publisher: Springer

DOWNLOAD EBOOK

This book constitutes revised selected papers from the 10th International Workshop on Constructive Side-Channel Analysis and Secure Design, COSADE 2019, held in
Constructive Side-Channel Analysis and Secure Design
Language: en
Pages: 341
Authors: Guido Marco Bertoni
Categories: Computers
Type: BOOK - Published: 2021-02-05 - Publisher: Springer Nature

DOWNLOAD EBOOK

This book constitutes revised selected papers from the 11th International Workshop on Constructive Side-Channel Analysis and Secure Design, COSADE 2020, held in