CacheGuard: A Security-Enhanced Directory Architecture Against Continuous Attacks

6Citations
Citations of this article
7Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Modern processor cores share the last-level cache and directory to improve resource utilization. Unfortunately, such sharing makes the cache vulnerable to cross-core cache side channel attacks. Recent studies show that information leakage through cross-core cache side channel attacks is a serious threat in different computing domains ranging from cloud servers and mobile phones to embedded devices. However, previous solutions have limitations of losing performance, lacking golden standards, requiring software support, or being easily bypassed. In this paper, we observe that most cross-core cache side channel attacks cause sensitive data to appear in a ping-pong pattern in continuous attack scenarios, where attackers need to launch numerous attacks in a short period of time. This paper proposes CacheGuard to defend against the continuous attacks. CacheGuard extends the directory architecture for capturing the ping-pong patterns. Once the ping-pong pattern of a cache line is captured, Cache-Guard can secure the line with two pattern-oriented counteractions, Preload and Lock. The experimental evaluation demonstrates that CacheGuard can block the continuous attacks, and that it induces negligible performance degradation and hardware overhead.

Cite

CITATION STYLE

APA

Wang, K., Yuan, F., Hou, R., Lin, J., Ji, Z., & Meng, D. (2019). CacheGuard: A Security-Enhanced Directory Architecture Against Continuous Attacks. In ACM International Conference on Computing Frontiers 2019, CF 2019 - Proceedings (pp. 32–41). Association for Computing Machinery, Inc. https://doi.org/10.1145/3310273.3323051

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free