Side Channel Attacks Flashcards

(7 cards)

1
Q

What is simple power analysis?

A

Different operations draw different amounts of power, this may be easily distinguishable on a power trace

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Masking

Side Channel Defence

A

Sensitive variables are split up so that they are never accessed directly

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Blinding

Side Channel Defence

A

Encode random values to the input that are then removed from the output and the computation. So the program never operates on a sensitive value directly.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

State 5 side channel defences

A

Constant time operation
No branches
Masking
Blinding
Use special co-processors to perform sensitive operations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Flush and reload

Side Channel Attack

A

Spy process flushes the cache and waits for a victim process to perform an operation. The spy process then tries to access a value, if it gets fast access then it was loaded into the cache by the victim process.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is transient execution?

A

Lines of a program can be executed in parallel if they are do not require the result from another instruction. If there is an error or change in branch, the state of the program is rolled back. This can include loading data into cache which the program shouldn’t have access to, but only realises this after it has been loaded into cache. The state of the cache does not get rolled back.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How does the spectre attack work?

A

Train the branch predictor unit to take a certain branch. Access an out of bounds peice of data that gets loaded into the cache before the CPU checks if the process has the right to access that data. Then use a flush and reload attack to get the value from the cache.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly