首页> 外文会议>ACM/IEEE Annual International Symposium on Computer Architecture >Packet Chasing: Spying on Network Packets over a Cache Side-Channel
【24h】

Packet Chasing: Spying on Network Packets over a Cache Side-Channel

机译:数据包跟踪:通过缓存侧通道监视网络数据包

获取原文

摘要

This paper presents Packet Chasing, an attack on the network that does not require access to the network, and works regardless of the privilege level of the process receiving the packets. A spy process can easily probe and discover the exact cache location of each buffer used by the network driver. Even more useful, it can discover the exact sequence in which those buffers are used to receive packets. This then enables packet frequency and packet sizes to be monitored through cache side channels. This allows both covert channels between a sender and a remote spy with no access to the network, as well as direct attacks that can identify, among other things, the web page access patterns of a victim on the network. In addition to identifying the potential attack, this work proposes a software-based short-term mitigation as well as a light-weight, adaptive, cache partitioning mitigation that blocks the interference of I/O and CPU requests in the last-level cache.
机译:本文提出了数据包追踪,这是一种对网络的攻击,不需要访问网络,并且无论接收数据包的进程的特权级别如何都可以起作用。间谍程序可以轻松探测并发现网络驱动程序使用的每个缓冲区的确切缓存位置。更有用的是,它可以发现使用这些缓冲区接收数据包的确切顺序。然后,这使得能够通过高速缓存侧信道来监视分组频率和分组大小。这允许发送者和远程间谍之间的秘密通道,而无需访问网络,以及直接攻击,这些攻击可以识别(尤其是)网络上受害者的网页访问模式。除了确定潜在的攻击之外,这项工作还提出了基于软件的短期缓解措施以及轻量级的自适应缓存分区缓解措施,以阻止I / O和CPU请求在最后一级缓存中的干扰。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号