Preventing Your Faults From Telling Your Secrets: Defenses Against Pigeonhole Attacks
@article{Shinde2015PreventingYF, title={Preventing Your Faults From Telling Your Secrets: Defenses Against Pigeonhole Attacks}, author={Shweta Shinde and Zheng Leong Chua and V. Narayanan and P. Saxena}, journal={ArXiv}, year={2015}, volume={abs/1506.04832} }
New hardware primitives such as Intel SGX secure a user-level process in presence of an untrusted or compromised OS. Such "enclaved execution" systems are vulnerable to several side-channels, one of which is the page fault channel. In this paper, we show that the page fault side-channel has sufficient channel capacity to extract bits of encryption keys from commodity implementations of cryptographic routines in OpenSSL and Libgcrypt --- leaking 27% on average and up to 100% of the secret bits… CONTINUE READING
Figures, Tables, and Topics from this paper
26 Citations
Sealed-Glass Proofs: Using Transparent Enclaves to Prove and Sell Knowledge
- Computer Science
- 2017 IEEE European Symposium on Security and Privacy (EuroS&P)
- 2017
- 64
- Highly Influenced
- PDF
Sgx-Lapd: Thwarting Controlled Side Channel Attacks via Enclave Verifiable Page Faults
- Computer Science
- RAID
- 2017
- 28
- PDF
Peapods: OS-Independent Memory Confidentiality for Cryptographic Engines
- Computer Science
- 2018 IEEE Intl Conf on Parallel & Distributed Processing with Applications, Ubiquitous Computing & Communications, Big Data & Cloud Computing, Social Computing & Networking, Sustainable Computing & Communications (ISPA/IUCC/BDCloud/SocialCom/SustainCom)
- 2018
T-SGX: Eradicating Controlled-Channel Attacks Against Enclave Programs
- Computer Science
- NDSS
- 2017
- 251
- Highly Influenced
- PDF
Mitigating Branch-Shadowing Attacks on Intel SGX using Control Flow Randomization
- Computer Science
- ArXiv
- 2018
- 5
- PDF
Inferring Fine-grained Control Flow Inside SGX Enclaves with Branch Shadowing
- Computer Science
- USENIX Security Symposium
- 2017
- 292
- Highly Influenced
- PDF
References
SHOWING 1-10 OF 67 REFERENCES
Practical Timing Side Channel Attacks against Kernel Space ASLR
- Computer Science
- 2013 IEEE Symposium on Security and Privacy
- 2013
- 267
- PDF
The Spy in the Sandbox: Practical Cache Attacks in JavaScript and their Implications
- Computer Science
- CCS
- 2015
- 192
- PDF
Controlled-Channel Attacks: Deterministic Side Channels for Untrusted Operating Systems
- Computer Science
- 2015 IEEE Symposium on Security and Privacy
- 2015
- 509
- PDF
FLUSH+RELOAD: A High Resolution, Low Noise, L3 Cache Side-Channel Attack
- Computer Science
- USENIX Security Symposium
- 2014
- 838
- PDF
Memory Trace Oblivious Program Execution
- Computer Science
- 2013 IEEE 26th Computer Security Foundations Symposium
- 2013
- 54
- PDF