arrow
返回

CBA-Detector: A Self-Feedback Detector Against Cache-Based Attacks

delete2022-09-01
delete7
PRE
AI
B
Beilei Zheng
J
Jianan Gu
J
Jialun Wang
C
Chuliang Weng *
DOI:10.1109/TDSC.2021.3089882delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Cloud computing is convenient to provide adequate resources for tenants. However, since multiple tenants share the underlying hardware resources, malicious tenants can use the shared processor to launch cache-based attacks. Such attacks can help malicious tenants steal private data of other tenants bypassing isolation mechanisms provided by the system, resulting in information leakage. Moreover, Spectre and Meltdown vulnerabilities can even extract memory contents arbitrarily with the help of cache attacks. Therefore, cache-based attacks pose a serious threat to the security of cloud platforms. To defeat such attacks, many detection methods have been proposed. However, most methods induce high false positives because they completely rely on the hardware performance counters (HPCs) and detect attacks with static criteria. To solve this problem, this article proposes a self-feedback detector named CBA-Detector to detect cache-based attacks in real time. Specifically, CBA-Detector first uses machine learning technologies to create models for identifying suspicious programs with abnormal hardware behaviors, then analyzes suspicious programs from the instruction level to identify real attacks and provide feedback. Based on the feedback, the models can be updated to further improve their detection accuracy. As our experiments show, CBA-Detector can accurately identify cache-based attacks in real time and introduces a little overhead. Besides, the misjudgment rate decreases with the running time.
Keyword:
Hardware
Real-time systems
Machine learning
Detectors
Side-channel attacks
Time measurement
Decision trees
Cache-based side-channel attacks
self-feedback
false positives
machine learning
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

IEEE Transactions on Dependable and Secure Computing 封面图
IEEE Transactions on Dependable and Secure Computing
IF:
7.5
论文数:
2.4K
被引数:
9.6K

机构

E
east china normal university
学者数:
3.1W
论文数: 2.1W
被引数: 25
引用论文

引用论文

Therapeutic Potential of Iridoid Derivatives: Patent Review
err2019-05-16
err0
errOAAI
errHidayat Hussain; Ivan R. Green; Muhammad Saleem; Muhammad Liaquat Raza; Mamona Nazir
err分享
err收藏
Magnetic Structure of Inorganic–Organic Hybrid (C6H5CH2CH2NH3)2MnCl4 Using Magnetic Space Group Concept
err2020-11-30
err0
errOAAI
errGaram Park; In-Hwan Oh; J. M. Sungil Park; Seungsoo Hahn; Seong-Hun Park
err分享
err收藏
err分享
err收藏
Incidence and Risk Factors of Metabolic Syndrome and 9-year Follow-up in Na Yao Community, Sanam Chai Khet District, Chacheongsao, Thailand
err2018-06-27
err0
errOAAI
errJarukorn Sangbangmud; Benyalak Kaewthanasin; Kanit Jintabunyat; Chanin Pokabarl; Chalisa Limcharoenchai; Natnarong Kanchana-Udomkan; Tanaporn Apiraksaporn; Teeragarn Supapunpinyo; Pavitra Charoensrisakkul; Phongkon Aiyarakanchanakun; Patteera Suriyaraksh; Peeraya Permkarnjaroen; Vongsathorn Rojanapaiboon; Suphat Lorchareonraung; Aukrit Luangpattarawong; Phunlerd Piyaraj; Ram Rangsin
err分享
err收藏
err分享
err收藏
学者 查看更多内容