arrow
返回

HCIC: Hardware-Assisted Control-Flow Integrity Checking

delete2019-02-01
delete47
delete
OA
AI
J
Jiliang Zhang *
Q
Qi, Binhang
Z
Zheng Qin
曲刚 (Gang Qu)
DOI:10.1109/JIOT.2018.2866164delete
delete原文链接
delete分享
delete收藏
查看原文
摘要

摘要

En 中文
Recently, code reuse attacks (CRAs), such as return-oriented programming (ROP) and jump-oriented programming (JOP), have emerged as a new class of ingenious security threats. Attackers can utilize CRAs to hijack the control flow of programs to perform malicious actions without injecting any codes. Many defenses, classed into software-based and hardware-based, have been proposed. However, software-based methods are difficult to be deployed in practical systems due to high performance overhead. Hardware-based methods can reduce performance overhead but may require extending instruction set architectures (ISAs) and modifying the compiler or suffer the vulnerability of key leakage. To tackle these issues, this paper proposes a new hardware-assisted control flow checking method to resist CRAs with negligible performance overhead without extending ISAs, modifying the compiler or leaking the encryption/decryption key. The key technique involves two control flow checking mechanisms. The first one is the encrypted Hamming distances matching between the physical unclonable function (PUF) response and the return addresses, which prevents attackers from returning between gadgets so long as the PUF response is secret, thus resisting ROP attacks. The second one is the linear encryption/decryption operation (XOR) between the PUF response and the instructions at target addresses of call and jmp instructions to defeat JOP attacks. Advanced return-based full-function reuse attacks will be prevented with the dynamic key-updating method. Experimental evaluations on benchmarks demonstrate that the proposed method introduces negligible 0.95% runtime overhead and 0.78% binary size overhead on average.
Keyword:
Code reuse attacks (CRAs)
control flow integrity (CFI)
hardware-assisted security
physical unclonable function (PUF)
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

IEEE Internet of Things Journal 封面图
IEEE Internet of Things Journal
IF:
8.9
论文数:
1.4W
被引数:
7.8W

机构

University System of Maryland 封面图
University System of Maryland
学者数:
6.4W
论文数: 5.6W
被引数: 113
H
hunan university
学者数:
4.5W
论文数: 3.3W
被引数: 70
引用论文

引用论文

Prevalence of multidrug‐resistant tuberculosis in Latin America and the Caribbean: a systematic review and meta‐analysis
err2020-06-30
err0
errOAAI
errFátima M Tengan; Gerusa M Figueiredo; Olavo HM Leite; Arielle KS Nunes; Carol Manchiero; Bianca P Dantas; Mariana C Magri; Antonio A Barone; Wanderley M Bernardo
err分享
err收藏
T2FA: Transparent Two-Factor AuthenticationT2FA: 透明双因素身份验证
err2018-01-01
err37
errOAAI
errZhang, Jiliang; Tan, Xiao; Wang, Xiangqi; Yan, Aibin; Qin, Zheng
err分享
err收藏
err分享
err收藏
学者 查看更多内容