Security validation of VP-based SoCs using dynamic information flow tracking
Autor(en):
Zusammenfassung
Modern System-on-Chips (SoCs) are notoriously insecure. Hence, the fundamental security feature of IP isolation is heavily used, e. g., secured Memory Mapped IOs (MMIOs), or secured address ranges in case of memories, are marked as non-accessible. One way to provide strong assurance of security is to define isolation as information flow policy in hardware using the notion of non-interference. Since, an insecure hardware opens up the door for attacks across the entire system stack (from software down to hardware), the security validation process should start as early as possible in the SoC design cycle, i. e. at Electronic System Level (ESL). Hence, in this paper we propose the first dynamic information flow analysis at ESL. Our approach allows to validate the run-time behavior of a given SoC implemented using Virtual Prototypes (VPs) against security threat models, such as information leakage (confidentiality) and unauthorized access to data in a memory (integrity). Experiments show the applicability and efficacy of the proposed method on various VPs including a real-world system.
- Vollständige Referenz
- BibTeX
Goli, M., Hassan, M., Große, D. & Drechsler, R.,
(2019).
Security validation of VP-based SoCs using dynamic information flow tracking.
it - Information Technology: Vol. 61, No. 1.
Berlin:
De Gruyter.
(S. 45-58).
DOI: 10.1515/itit-2018-0027
@article{mci/Goli2019,
author = {Goli, Mehran AND Hassan, Muhammad AND Große, Daniel AND Drechsler, Rolf},
title = {Security validation of VP-based SoCs using dynamic information flow tracking},
journal = {it - Information Technology},
volume = {61},
number = {1},
year = {2019},
,
pages = { 45-58 } ,
doi = { 10.1515/itit-2018-0027 }
}
author = {Goli, Mehran AND Hassan, Muhammad AND Große, Daniel AND Drechsler, Rolf},
title = {Security validation of VP-based SoCs using dynamic information flow tracking},
journal = {it - Information Technology},
volume = {61},
number = {1},
year = {2019},
,
pages = { 45-58 } ,
doi = { 10.1515/itit-2018-0027 }
}
Sollte hier kein Volltext (PDF) verlinkt sein, dann kann es sein, dass dieser aus verschiedenen Gruenden (z.B. Lizenzen oder Copyright) nur in einer anderen Digital Library verfuegbar ist. Versuchen Sie in diesem Fall einen Zugriff ueber die verlinkte DOI: 10.1515/itit-2018-0027
Haben Sie fehlerhafte Angaben entdeckt? Sagen Sie uns Bescheid: Feedback abschicken
Mehr Information
ISSN: 2196-7032
Datum: 2019
Sprache:
(en)
(en)
Typ: Text/Journal Article

