CS-773 Paper Presentation��CacheFX: A Framework for Evaluating Cache Security
Garaga V V S Krishna Vamsi�CoR3Dump (#5)
180070020@iitb.ac.in
1
Pictures adapted from CacheFX: A Framework for Evaluating Cache Security unless otherwise mentioned
Coming up…
2
The problem
How to evaluate the security that cache designs offer against contention based cache attacks
3
Why you should worry about it
4
PL Cache
New Cache
Phantom Cache
CEASER
CEASER-S
Set-associative
Scatter Cache
Way-partitioned
Limitations of previous solutions
5
Background
6
Our Solution - CacheFX
7
Relative Eviction Entropy (REE)
Information in bits that can be leaked by the attacker due to a single memory access by the victim via cache side channel.
We use fully associative cache with random replacement policy as reference. (pu(a))
8
REE for different cache designs
9
REE of different CEASER-S configurations
10
Eviction Set Creation
11
Number of memory accesses
12
Number of memory accesses (CEASER-S)
13
Percentage of conflicting addresses
14
Eviction set sizes (2048 line caches)
15
Eviction success rate
16
Eviction set size for 90% eviction success
17
18
Cryptography attacks
19
20
21
22
Where we fall short
23
Q&A
Thank you for listening!
Any questions?
24