Cache Template Attacks: Automating Attacks On Inclusive Last-Level Caches
Атаки на шаблоны кэша: автоматизация атак на инклюзивные кэши последнего уровня
2015-08-12
SCID: 54.1/v9sdyaka
Discuss with AI
Cache template attacksCache-based information leakageInclusive last-level cachesKeystroke inferenceT-table AES attacks
Figures from the paper
Abstract (AI)
Recent work on cache attacks has shown that CPU caches represent a powerful source of information leakage. However, existing attacks require manual identification of vulnerabilities, i.e., data accesses or instruction execution depending on secret information. In this paper, we present Cache Template Attacks. This generic attack technique allows us to profile and exploit cachebased information leakage of any program automatically, without prior knowledge of specific software versions or even specific system information. Cache Template Attacks can be executed online on a remote system without any prior offline computations or measurements. Cache Template Attacks consist of two phases. In the profiling phase, we determine dependencies between the processing of secret information, e.g., specific key inputs or private keys of cryptographic primitives, and specific cache accesses. In the exploitation phase, we derive the secret values based on observed cache accesses. We illustrate the power of the presented approach in several attacks, but also in a useful application for developers. Among the presented attacks is the application of Cache Template Attacks to infer keystrokes and—even more severe—the identification of specific keys on Linux and Windows user interfaces. More specifically, for lower-case only passwords, we can reduce the entropy per character from log2(26) = 4.7 to 1.4 bits on Linux systems. Furthermore, we perform an automated attack on the T-table-based AES implementation of OpenSSL that is as efficient as state-of-the-art manual cache attacks.
Key Findings
1
An automated attack against OpenSSL’s T-table AES implementation achieves efficiency comparable to state-of-the-art manual cache attacks.
2
Cache Template Attacks automatically profile and exploit cache-based information leakage without prior knowledge of software versions or detailed system information.
3
For lowercase-only passwords on Linux, the attack reduces entropy per character from log2(26) = 4.7 to 1.4 bits.
4
The online attack uses profiling to link secret-dependent processing with cache accesses, then exploits observed accesses to infer secret values without offline measurements.
5
The technique infers keystrokes and identifies specific keys in Linux and Windows user interfaces, demonstrating broad applicability beyond cryptographic targets.
Research Object
Inclusive last-level CPU caches and the programs executing on them
Research Subject
Automatically profiled and exploited cache-based information leakage, including secret-value, keystroke, and cryptographic-key inference
Publication Details
Publication Date
2015-08-12
Journal
Publisher
ISSN
Open access PDF
Access Type
Author Information
Download PDF
Subscribe to digest