arrow
Return

FLAShadow: A Flash-based Shadow Stack for Low-end Embedded Systems

delete2024-08-12
delete0
PRE
AI
M
Michele Grisafi *
M
Mahmoud Ammar
M
Marco Roveri
B
Bruno Crispo
DOI:10.1145/3670413delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Runtime attacks are a rising threat to both low- and high-end systems with the spread of techniques such as Return-Oriented Programming (ROP), which aims at hijacking the control flow of vulnerable applications. Although several control flow integrity schemes have been proposed by both academia and the industry, the vast majority of them are not compatible with low-end embedded devices, especially the ones that lack hardware security features. In this article, we propose FLASHADow, a secure shadow stack design and implementation for low-end embedded systems, relying on zero hardware security features. The key idea is to leverage a software-based memory isolation mechanism to establish an integrity-protected memory area on the Flash of the target device, where FLASHADow can be securely maintained. FLASHADow exclusively reserves a register for maintaining the integrity of the stack pointer and also depends on a minimal trusted runtime component to avoid trusting the compiler toolchain. We evaluate an open-source implementation of FLASHADow for the MSP430 architecture, showing an average performance and memory overhead of 168.58% and 25.91%, respectively. While the average performance overhead is considered high, we show that it is application dependent and incurs less than 5% for some applications.
Keywords:
Return-oriented programming
control flow integrity
shadow stack

Journal

ACM Transactions on Internet Technology cover
ACM Transactions on Internet Technology
IF:
4.1
Papers:
896
Citations:
1.9K

Organization

U
University of Trento
Scholars:
8.8K
Papers: 9.0K
Citations: 1.2W