Spectre attacks exploit control- and data-flow (mis)prediction on modern processors to transiently leak program secrets. Comprehensively mitigating Spectre leakage is hard, and doing so while preserving the program’s performance is even harder: no existing Spectre mitigations are widely deployed due to their high overhead or high complexity. We claim that a comprehensive, efficient, and low-complexity mitigation for Spectre attacks requires engaging in software-compiler-hardware co-design. In our talk, we will pitch such a co-designed Spectre mitigation that will be widely deployable at a low cost in security-critical applications. As a first step towards this goal, we have developed Serberus, a comprehensive and proven-correct Spectre miti...
The disclosure of the Spectre speculative-execution attacks in January 2018 has left a severe vulner...
Spectre attacks enable an attacker to access restricted data in an application's memory. Both the ac...
Cyberattacks are the fastest growing crime in the U.S., and they are increasing in size, sophisticat...
We present Serberus, the first comprehensive mitigation for hardening constant-time (CT) code agains...
Attacks exploiting speculative execution, known as Spectre attacks, have gained substantial attentio...
In this paper, we analyze the security of programming languages and their execution environments (co...
Speculative attacks are still an active threat today that, even if initially focused on the x86 plat...
Attackers can access sensitive information of programs by exploiting the side-effects of speculative...
Modern processors use architecture like caches, branch predictors, and speculative execution in orde...
Modern processors use architecture like caches, branch predictors, and speculative execution in orde...
The processor flaws used in the Spectre and Meltdown attacks have had uncharacteristically large med...
Speculative execution allows CPUs to improve performance by using prediction mechanisms that predic...
Spectre attacks exploit speculative execution to leak sensitive information. In the last few years, ...
International audienceSpectre are microarchitectural attacks which were made public in January 2018....
To defeat ASLR or more advanced fine-grained and leakage-resistant code randomization schemes, moder...
The disclosure of the Spectre speculative-execution attacks in January 2018 has left a severe vulner...
Spectre attacks enable an attacker to access restricted data in an application's memory. Both the ac...
Cyberattacks are the fastest growing crime in the U.S., and they are increasing in size, sophisticat...
We present Serberus, the first comprehensive mitigation for hardening constant-time (CT) code agains...
Attacks exploiting speculative execution, known as Spectre attacks, have gained substantial attentio...
In this paper, we analyze the security of programming languages and their execution environments (co...
Speculative attacks are still an active threat today that, even if initially focused on the x86 plat...
Attackers can access sensitive information of programs by exploiting the side-effects of speculative...
Modern processors use architecture like caches, branch predictors, and speculative execution in orde...
Modern processors use architecture like caches, branch predictors, and speculative execution in orde...
The processor flaws used in the Spectre and Meltdown attacks have had uncharacteristically large med...
Speculative execution allows CPUs to improve performance by using prediction mechanisms that predic...
Spectre attacks exploit speculative execution to leak sensitive information. In the last few years, ...
International audienceSpectre are microarchitectural attacks which were made public in January 2018....
To defeat ASLR or more advanced fine-grained and leakage-resistant code randomization schemes, moder...
The disclosure of the Spectre speculative-execution attacks in January 2018 has left a severe vulner...
Spectre attacks enable an attacker to access restricted data in an application's memory. Both the ac...
Cyberattacks are the fastest growing crime in the U.S., and they are increasing in size, sophisticat...