eCommons

 

Sound And Practical Methods For Full-System Timing Channel Control

dc.contributor.authorZhang, Danfeng
dc.contributor.chairMyers,Andrew C.
dc.contributor.committeeMemberKozen,Dexter Campbell
dc.contributor.committeeMemberSelman,Bart
dc.date.accessioned2015-10-15T18:01:13Z
dc.date.available2015-10-15T18:01:13Z
dc.date.issued2015-08-17
dc.description.abstractBuilding systems with rigorous security guarantees is difficult, because most programming languages lack support for reasoning about security. This situation is amplified by emerging timing attacks, which reveal secrets from computation time. Recent work shows that timing channels can quickly leak sensitive information, such as private keys of RSA and AES. Such threats greatly harm the security of many emerging applications, such as cloud computing, mobile computing, and embedded systems. This dissertation describes novel programming languages and run-time enforcement mechanisms for full-system control of timing channels. The proposed approach has two major components: A new software-hardware security interface, and control mechanisms present at separate levels of system abstraction. These control mechanisms include: 1) A type system for an imperative language, so that well-typed programs provably leak only a bounded amount of information via timing channels, 2) SecVerilog, a hardware description language that supports mostly-static, precise reasoning about information flows in hardware designs, and 3) Predictive mitigation, a general run-time mechanism that permits tunable tradeoffs between security and performance. Evaluation on real-world security-sensitive applications suggest that the proposed approach is sound and has reasonable performance.
dc.identifier.otherbibid: 9255188
dc.identifier.urihttps://hdl.handle.net/1813/40918
dc.language.isoen_US
dc.subjectTiming Channels
dc.subjectProgramming Languages
dc.subjectType System
dc.titleSound And Practical Methods For Full-System Timing Channel Control
dc.typedissertation or thesis
thesis.degree.disciplineComputer Science
thesis.degree.grantorCornell University
thesis.degree.levelDoctor of Philosophy
thesis.degree.namePh. D., Computer Science

Files

Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
dz94.pdf
Size:
1.32 MB
Format:
Adobe Portable Document Format