Abstract
Cloud’s unrivaled cost effectiveness and on the fly operation versatility is attractive to enterprise and personal users. However, the cloud inherits a dangerous behavior from virtualization systems that poses a serious security risk: resource sharing. This work exploits a shared resource optimization technique called memory deduplication to mount a powerful known-ciphertext only cache side-channel attack on a popular OpenSSL implementation of AES. In contrast to the other cross-VM cache attacks, our attack does not require synchronization with the target server and is fully asynchronous, working in a more realistic scenario with much weaker assumption. Also, our attack succeeds in just 15 seconds working across cores in the cross-VM setting. Our results show that there is strong information leakage through cache in virtualized systems and the memory deduplication should be approached with caution.
| Originalsprache | Englisch |
|---|---|
| Titel | Constructive Side-Channel Analysis and Secure Design |
| Redakteure/-innen | Stefan Mangard, Axel Y. Poschmann |
| Seitenumfang | 16 |
| Band | 9064 |
| Herausgeber (Verlag) | Springer Berlin Heidelberg |
| Erscheinungsdatum | 17.07.2015 |
| Seiten | 111-126 |
| ISBN (Print) | 978-3-319-21475-7 |
| ISBN (elektronisch) | 978-3-319-21476-4 |
| DOIs | |
| Publikationsstatus | Veröffentlicht - 17.07.2015 |
| Veranstaltung | 6th nternational Workshop on Constructive Side-Channel Analysis and Secure Design - Berlin, Deutschland Dauer: 13.04.2015 → 14.04.2015 |
UN SDGs
Dieser Output leistet einen Beitrag zu folgendem(n) Ziel(en) für nachhaltige Entwicklung
-
SDG 9 – Industrie, Innovation und Infrastruktur
-
SDG 11 – Nachhaltige Städte und Gemeinschaften
-
SDG 12 – Verantwortungsvoller Konsum und Produktion
Fingerprint
Untersuchen Sie die Forschungsthemen von „A Faster and More Realistic Flush+Reload Attack on AES“. Zusammen bilden sie einen einzigartigen Fingerprint.Zitieren
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver