Controlled-Channel Attacks: Deterministic Side Channels for Untrusted Operating Systems
The University of Texas at Austin · Microsoft Research (United Kingdom)
Abstract
The presence of large numbers of security vulnerabilities in popular feature-rich commodity operating systems has inspired a long line of work on excluding these operating systems from the trusted computing base of applications, while retaining many of their benefits. Legacy applications continue to run on the untrusted operating system, while a small hyper visor or trusted hardware prevents the operating system from accessing the applications' memory. In this paper, we introduce controlled-channel attacks, a new type of side-channel attack that allows an untrusted operating system to extract large amounts of sensitive information from protected applications on systems like Overshadow, Ink Tag or Haven. We…
Citation impact
- FWCI
- 108.62
- Percentile
- 100%
- References
- 62
Authors
3Topics & keywords
- Computer science
- Side channel attack
- Embedded system
- Operating system
- Channel (broadcasting)
- Computer security
- Memory protection
- Computer hardware