Developers: Beware of Timing Side-Channels

被引:0
|
作者
Schneider, Dominik [1 ]
Zeitschner, Jannik [2 ]
Kloos, Michael [3 ]
Lemke-Rust, Kerstin [1 ]
Iacono, Luigilo [3 ]
机构
[1] H BRS Univ Appl Sci, D-53757 St Augustin, Germany
[2] Ruhr Univ Bochum, D-44801 Bochum, Germany
[3] H BRS Univ Appl Sci, Inst Cyber Secur & Privacy, D-53757 St Augustin, Germany
关键词
Timing; Software; Cryptography; Codes; Microarchitecture; Static analysis; Source coding;
D O I
10.1109/MSEC.2024.3399330
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Resilience of digital systems to cyberattacks remains a major challenge and requires attention within protection technologies themselves. This article explores the evolution of timing side-channels into multistage threats, illustrates their complexity, and highlights the need to support developers.
引用
收藏
页码:47 / 52
页数:6
相关论文
共 50 条
  • [41] A Comparison of Backscattering, EM, and Power Side-Channels and Their Performance in Detecting Software and Hardware Intrusions
    Luong N. Nguyen
    Chia-Lin Cheng
    Frank T. Werner
    Milos Prvulovic
    Alenka Zajic
    Journal of Hardware and Systems Security, 2020, 4 (2) : 150 - 165
  • [42] Circuit Deobfuscation from Power Side-Channels using Pseudo-Boolean SAT
    Shamsi, Kaveh
    Jin, Yier
    2021 IEEE/ACM INTERNATIONAL CONFERENCE ON COMPUTER AIDED DESIGN (ICCAD), 2021,
  • [43] MIGRATE: Towards a Lightweight Moving-target Defense against Cloud Side-Channels
    Azab, Mohamed
    Eltoweissy, Mohamed
    2016 IEEE SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (SPW 2016), 2016, : 96 - 103
  • [44] The Overhead from Combating Side-Channels in Cloud Systems Using VM-Scheduling
    Juma, Nahid
    Shahen, Jonathan
    Bijon, Khalid
    Tripunitara, Mahesh
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2020, 17 (02) : 422 - 435
  • [45] Secure Database Outsourcing to the Cloud: Side-Channels, Counter-Measures and Trusted Execution
    Gabel, Matthias
    Mechler, Jeremias
    2017 IEEE 30TH INTERNATIONAL SYMPOSIUM ON COMPUTER-BASED MEDICAL SYSTEMS (CBMS), 2017, : 799 - 804
  • [46] De-anonymizing VR Avatars using Non-VR Motion Side-channels
    Sabra, Mohd
    Vinayaga-Sureshkanth, Nisha
    Sharma, Ari
    Maiti, Anindya
    Jadliwala, Murtuza
    PROCEEDINGS OF THE 17TH ACM CONFERENCE ON SECURITY AND PRIVACY IN WIRELESS AND MOBILE NETWORKS, WISEC 2024, 2024, : 54 - 65
  • [47] DAGguise: Mitigating Memory Timing Side Channels
    Deutsch, Peter W.
    Yang, Yuheng
    Bourgeat, Thomas
    Drean, Jules
    Emer, Joel S.
    Yan, Mengjia
    ASPLOS '22: PROCEEDINGS OF THE 27TH ACM INTERNATIONAL CONFERENCE ON ARCHITECTURAL SUPPORT FOR PROGRAMMING LANGUAGES AND OPERATING SYSTEMS, 2022, : 329 - 343
  • [48] A Performance-Enhanced Liquid Metal-Based Microheater with Parallel Ventilating Side-Channels
    Zhang, Lunjia
    Zhang, Pan
    Wang, Ronghang
    Zhang, Renchang
    Li, Zhenming
    Liu, Wei
    Wang, Qifu
    Gao, Meng
    Gui, Lin
    MICROMACHINES, 2020, 11 (02)
  • [49] DATA - Differential Address Trace Analysis: Finding Address-based Side-Channels in Binaries
    Weiser, Samuel
    Zankl, Andreas
    Spreitzer, Raphael
    Miller, Katja
    Mangard, Stefan
    Sigl, Georg
    PROCEEDINGS OF THE 27TH USENIX SECURITY SYMPOSIUM, 2018, : 603 - 620
  • [50] RASCv2: Enabling Remote Access to Side-Channels for Mission Critical and IoT Systems
    Bai, Yunkai
    Stern, Andrew
    Park, Jungmin
    Tehranipoor, Mark
    Forte, Domenic
    ACM TRANSACTIONS ON DESIGN AUTOMATION OF ELECTRONIC SYSTEMS, 2022, 27 (06)