• 中国精品科技期刊
  • CCF推荐A类中文期刊
  • 计算领域高质量科技期刊T1类
高级检索

访问驱动下的Cache侧信道攻击研究综述

苗新亮, 蒋烈辉, 常瑞

苗新亮, 蒋烈辉, 常瑞. 访问驱动下的Cache侧信道攻击研究综述[J]. 计算机研究与发展, 2020, 57(4): 824-835. DOI: 10.7544/issn1000-1239.2020.20190581
引用本文: 苗新亮, 蒋烈辉, 常瑞. 访问驱动下的Cache侧信道攻击研究综述[J]. 计算机研究与发展, 2020, 57(4): 824-835. DOI: 10.7544/issn1000-1239.2020.20190581
Miao Xinliang, Jiang Liehui, Chang Rui. Survey of Access-Driven Cache-Based Side Channel Attack[J]. Journal of Computer Research and Development, 2020, 57(4): 824-835. DOI: 10.7544/issn1000-1239.2020.20190581
Citation: Miao Xinliang, Jiang Liehui, Chang Rui. Survey of Access-Driven Cache-Based Side Channel Attack[J]. Journal of Computer Research and Development, 2020, 57(4): 824-835. DOI: 10.7544/issn1000-1239.2020.20190581
苗新亮, 蒋烈辉, 常瑞. 访问驱动下的Cache侧信道攻击研究综述[J]. 计算机研究与发展, 2020, 57(4): 824-835. CSTR: 32373.14.issn1000-1239.2020.20190581
引用本文: 苗新亮, 蒋烈辉, 常瑞. 访问驱动下的Cache侧信道攻击研究综述[J]. 计算机研究与发展, 2020, 57(4): 824-835. CSTR: 32373.14.issn1000-1239.2020.20190581
Miao Xinliang, Jiang Liehui, Chang Rui. Survey of Access-Driven Cache-Based Side Channel Attack[J]. Journal of Computer Research and Development, 2020, 57(4): 824-835. CSTR: 32373.14.issn1000-1239.2020.20190581
Citation: Miao Xinliang, Jiang Liehui, Chang Rui. Survey of Access-Driven Cache-Based Side Channel Attack[J]. Journal of Computer Research and Development, 2020, 57(4): 824-835. CSTR: 32373.14.issn1000-1239.2020.20190581

访问驱动下的Cache侧信道攻击研究综述

基金项目: 国家自然科学基金项目(61802431)
详细信息
  • 中图分类号: TP309

Survey of Access-Driven Cache-Based Side Channel Attack

Funds: This work was supported by the National Natural Science Foundation of China (61802431).
  • 摘要: 近年来,海量异构的物联网终端设备承载着核心功能,更易成为攻击者的直接目标.Cache侧信道攻击越来越多地出现在终端设备和云平台中,该攻击通过构建细粒度、高隐蔽性的Cache侧信道从目标设备中提取加密密钥等敏感数据,打破设备的隔离保护机制.在综述中,针对访问驱动下的Cache侧信道攻击技术展开研究,介绍了Cache侧信道攻击技术的基本原理和研究现状,通过理论分析和实例验证的方式重点研究了“清除+重载”攻击、“填充+探测”攻击、“刷新+重载”攻击的攻击原理、攻击过程和攻击效果.以攻击特点、攻击范围和对应的防御方案为切入点,对上述3种攻击进行对比分析,指出不同攻击的优缺点和适用场景;进一步探讨攻击过程中存在的问题,提出了攻击最后一级缓存(last-level cache, LLC)和噪声处理方面面临的挑战.最后结合万物互联时代下,从Cache层次结构的逐步转变、云平台的海量数据存储、以及终端设备上可信应用环境的广泛部署等现状,讨论了未来可能的研究方向.
    Abstract: In recent years, massive heterogeneous IoT (Internet of things) terminal devices carry the core functions, and they are easier to be the direct targets of attackers. Besides, more terminal devices and cloud platforms are suffering from cache-based side channel attacks. These attacks construct the fine-grained and the concealed cache side channel to extract sensitive data (such as encryption keys) from the target devices, which defeats the isolation mechanism. In this paper, we focus on access-driven cache-based side channel attack technology. Firstly, the fundamental principle and the current research status of cache-based side channel attack are present. Then, "Evict+Reload" attack, "Prime+Probe" attack and "Flush+Reload" attack, which belong to access-driven cache-based side channel attack, are described mainly. Especially, the attack principle, implementation process and attack effect are elaborated through theoretical analysis and experimental verification. After that, the characteristics and applications of the above three attacks are discussed, and the comparison results are given. Furthermore, the current challenges in LLC (last-level cache) attack and noise elimination are proposed. Finally, the future research directions are pointed out in the era of IoE (Internet of everything), in terms of the gradual change of the cache hierarchy, the massive data storage of the cloud platforms, and the widespread deployment of TEE (trusted execution environment) on physical devices.
  • 期刊类型引用(8)

    1. 唐旭,张多利,王杰,宋宇鲲. 异构多核处理器多发射动态调度技术研究. 合肥工业大学学报(自然科学版). 2023(05): 632-640 . 百度学术
    2. 纪元,郑卫波,王梓. 基于容器的安全接入虚拟化. 计算机与现代化. 2022(09): 106-110+118 . 百度学术
    3. 阳勇,孟相如,康巧燕,韩晓阳. 拓扑与资源感知的虚拟网络功能迁移方法. 计算机科学与探索. 2021(11): 2161-2170 . 百度学术
    4. 曾理,叶晓舟,王玲芳. DPDK技术应用研究综述. 网络新媒体技术. 2020(02): 1-8 . 百度学术
    5. 邓理,吴伟楠,朱正一,陈鸣. DiffSec:一种差别性的智能网络安全服务模型. 计算机研究与发展. 2019(05): 955-966 . 本站查看
    6. 房一泉,姚俊,万浩,徐鹏. 教育信息化大平台的构建. 化工高等教育. 2019(03): 38-42+89 . 百度学术
    7. 李佑文,褚红健,王志心. 基于网络负载均衡的综合监控系统网关设计. 江苏科技信息. 2019(32): 57-59 . 百度学术
    8. 胡洪云,符小周. 基于网络功能虚拟化的高性能负载均衡研究. 佳木斯职业学院学报. 2018(11): 393-394 . 百度学术

    其他类型引用(4)

计量
  • 文章访问数:  1515
  • HTML全文浏览量:  3
  • PDF下载量:  950
  • 被引次数: 12
出版历程
  • 发布日期:  2020-03-31

目录

    /

    返回文章
    返回