Developers: Beware of Timing Side-Channels

被引:0
|
作者
Schneider, Dominik [1 ]
Zeitschner, Jannik [2 ]
Kloos, Michael [3 ]
Lemke-Rust, Kerstin [1 ]
Iacono, Luigilo [3 ]
机构
[1] H BRS Univ Appl Sci, D-53757 St Augustin, Germany
[2] Ruhr Univ Bochum, D-44801 Bochum, Germany
[3] H BRS Univ Appl Sci, Inst Cyber Secur & Privacy, D-53757 St Augustin, Germany
关键词
Timing; Software; Cryptography; Codes; Microarchitecture; Static analysis; Source coding;
D O I
10.1109/MSEC.2024.3399330
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Resilience of digital systems to cyberattacks remains a major challenge and requires attention within protection technologies themselves. This article explores the evolution of timing side-channels into multistage threats, illustrates their complexity, and highlights the need to support developers.
引用
收藏
页码:47 / 52
页数:6
相关论文
共 50 条
  • [1] A Taxonomy of Side-Channels
    Clark, Tristan
    McDonald, Jeffrey T.
    Andel, Todd R.
    Baggett, Brandon
    Mullens, Tristen
    SOUTHEASTCON 2024, 2024, : 1564 - 1570
  • [2] SCRAMBLESUIT: An effective timing side-channels framework for malware sandbox evasion
    Nappa, Antonio
    Ubeda-Portugues, Aaron
    Papadopoulos, Panagiotis
    Varvello, Matteo
    Tapiador, Juan
    Lanzi, Andrea
    JOURNAL OF COMPUTER SECURITY, 2022, 30 (06) : 851 - 876
  • [3] Risks and Benefits of Side-Channels in Battlefields
    Agadakos, Ioannis
    Ciocarlie, Gabriela F.
    Copos, Bogdan
    Lepoint, Tancrede
    Lindqvist, Ulf
    Locasto, Michael E.
    Michaelis, James R.
    2018 21ST INTERNATIONAL CONFERENCE ON INFORMATION FUSION (FUSION), 2018, : 2290 - 2297
  • [4] BRB: Mitigating Branch Predictor Side-Channels
    Vougioukas, Ilias
    Nikoleris, Nikos
    Sandberg, Andreas
    Diestelhorst, Stephan
    Al-Hashimi, Bashir M.
    Merrett, Geoff V.
    2019 25TH IEEE INTERNATIONAL SYMPOSIUM ON HIGH PERFORMANCE COMPUTER ARCHITECTURE (HPCA), 2019, : 466 - 477
  • [5] SoCs security: a war against side-channels
    Guilley, S
    Pacalet, R
    ANNALS OF TELECOMMUNICATIONS, 2004, 59 (7-8) : 998 - 1009
  • [6] Domain-Agnostic Representation of Side-Channels
    Spence, Aaron
    Bangay, Shaun
    ENTROPY, 2024, 26 (08)
  • [7] Evaluation of (power) side-channels in cryptographic implementations
    Bache, Florian
    Plump, Christina
    Wloka, Jonas
    Gueneysu, Tim
    Drechsler, Rolf
    IT-INFORMATION TECHNOLOGY, 2019, 61 (01): : 15 - 28
  • [8] Guard Cache: Creating Noisy Side-Channels
    Mosquera, Fernando
    Kavi, Krishna
    Mehta, Gayatri
    John, Lizy
    IEEE COMPUTER ARCHITECTURE LETTERS, 2023, 22 (02) : 97 - 100
  • [9] OBELIX: Mitigating Side-Channels Through Dynamic Obfuscation
    Wichelmann, Jan
    Rabich, Anja
    Paetschke, Anna
    Eisenbarth, Thomas
    45TH IEEE SYMPOSIUM ON SECURITY AND PRIVACY, SP 2024, 2024, : 4182 - 4199
  • [10] Extraction and Validation of Algorithms from Analog Side-Channels
    Riley, Ronald A.
    Graham, James T.
    Fuller, Ryan M.
    Baldwin, Rusty O.
    Sampathkumar, Ashwin
    CYBER SENSING 2017, 2017, 10185