Skip to content
Jariais.com
Menu
  • Home
  • Arts Entertainments
  • Auto
  • Business
  • Cryptocurrency
  • Digital Marketing
  • Education
  • Finance
  • Gaming
  • Health Fitness
  • Home Kitchen
  • Legal Law
  • Lifestyle Fashion
  • Medicine
  • Pets
  • Real Estate
  • Relationship
  • Shopping Product Reviews
  • Sports
  • Technology
  • Tours Travel
  • Privacy Policy
  • Contact US
  • Sitemap
Menu

Computer scientists unveil novel attacks on cybersecurity

Posted on April 27, 2024

Researchers have found two novel types of attacks that target the conditional branch predictor found in high-end Intel processors, which could be exploited to compromise billions of processors currently in use.

The multi-university and industry research team led by computer scientists at University of California San Diego will present their work at the 2024 ACM ASPLOS Conference that begins tomorrow. The paper, “Pathfinder: High-Resolution Control-Flow Attacks Exploiting the Conditional Branch Predictor,” is based on findings from scientists from UC San Diego, Purdue University, Georgia Tech, the University of North Carolina Chapel Hill and Google.

They discover a unique attack that is the first to target a feature in the branch predictor called the Path History Register, which tracks both branch order and branch addresses. As a result, more information with more precision is exposed than with prior attacks that lacked insight into the exact structure of the branch predictor.

Their research has resulted in Intel and Advanced Micro Devices (AMD) addressing the concerns raised by the researchers and advising users about the security issues. Today, Intel is set to issue a Security Announcement, while AMD will release a Security Bulletin.

In software, frequent branching occurs as programs navigate different paths based on varying data values. The direction of these branches, whether “taken” or “not taken,” provides crucial insights into the executed program data. Given the significant impact of branches on modern processor performance, a crucial optimization known as the “branch predictor” is employed. This predictor anticipates future branch outcomes by referencing past histories stored within prediction tables. Previous attacks have exploited this mechanism by analyzing entries in these tables to discern recent branch tendencies at specific addresses.

In this new study, researchers leverage modern predictors’ utilization of a Path History Register (PHR) to index prediction tables. The PHR records the addresses and precise order of the last 194 taken branches in recent Intel architectures. With innovative techniques for capturing the PHR, the researchers demonstrate the ability to not only capture the most recent outcomes but also every branch outcome in sequential order. Remarkably, they uncover the global ordering of all branches. Despite the PHR typically retaining the most recent 194 branches, the researchers present an advanced technique to recover a significantly longer history.

“We successfully captured sequences of tens of thousands of branches in precise order, utilizing this method to leak secret images during processing by the widely used image library, libjpeg,” said Hosein Yavarzadeh, a UC San Diego Computer Science and Engineering Department PhD student and lead author of the paper.

The researchers also introduce an exceptionally precise Spectre-style poisoning attack, enabling attackers to induce intricate patterns of branch mispredictions within victim code. “This manipulation leads the victim to execute unintended code paths, inadvertently exposing its confidential data,” said UC San Diego computer science Professor Dean Tullsen.

“While prior attacks could misdirect a single branch or the first instance of a branch executed multiple times, we now have such precise control that we could misdirect the 732nd instance of a branch taken thousands of times,” said Tullsen.

The team presents a proof-of-concept where they force an encryption algorithm to transiently exit earlier, resulting in the exposure of reduced-round ciphertext. Through this demonstration, they illustrate the ability to extract the secret AES encryption key.

“Pathfinder can reveal the outcome of almost any branch in almost any victim program, making it the most precise and powerful microarchitectural control-flow extraction attack that we have seen so far,” said Kazem Taram, an assistant professor of computer science at Purdue University and a UC San Diego computer science PhD graduate.

In addition to Dean Tullsen and Hosein Yavarzadeh, other UC San Diego coauthors are. Archit Agarwal and Deian Stefan. Other coauthors include Christina Garman and Kazem Taram, Purdue University; Daniel Moghimi, Google; Daniel Genkin, Georgia Tech; Max Christman and Andrew Kwong, University of North Carolina Chapel Hill.

This work was partially supported by the Air Force Office of Scientific Research (FA9550- 20-1-0425); the Defense Advanced Research Projects Agency (W912CG-23-C-0022 and HR00112390029); the National Science Foundation (CNS-2155235, CNS-1954712, and CAREER CNS-2048262); the Alfred P. Sloan Research Fellowship; and gifts from Intel, Qualcomm, and Cisco.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • What evidence proves Workplace harassment?
  • Has Jack Bodenstein worked with major companies?
  • What is an LLM penetration test in AI security?
  • Are House Cleaning Services eco-friendly?
  • How are exams conducted in Online School?
  • What evidence does a federally regulated employee need?
  • Which categories feature at global sources expo?
  • 구글 검색 누락 캐시 삭제 필요할까요?
  • How do sales recruitment agencies evaluate skills?
  • 리뷰는 강남달토 믿어도 돼?
  • 강남 가라오케 밤에도 열어요?
  • How does a first date guide suggest being memorable?
  • 강남호빠는 분위기가 시끄러운가요?
  • How do I schedule Dryer Repair Bay Area service online?
  • What laws govern severance pay Ontario?
  • Are TikTok Scrapers scalable for enterprises?
  • Can male breast reduction remove excess fat only?
  • Do mobile car valeting services sanitize vehicles?
  • Is weekend service offered for Heating and AC Repair in Coachella Valley, CA?
  • Decentralized Masters: The Future of Individual Asset Management is Here

Archives

  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • February 2025
  • January 2025
  • December 2024
  • November 2024
  • October 2024
  • September 2024
  • August 2024
  • July 2024
  • June 2024
  • May 2024
  • April 2024
  • March 2024
  • February 2024
  • January 2024
  • December 2023
  • November 2023
  • October 2023
  • October 2021

Categories

  • Arts Entertainments
  • Auto
  • Business
  • Cryptocurrency
  • Digital Marketing
  • Education
  • Finance
  • Gaming
  • Health Fitness
  • Home Kitchen
  • Legal Law
  • Lifestyle Fashion
  • Medicine
  • Pets
  • Real Estate
  • Relationship
  • Shopping Product Reviews
  • Sports
  • Technology
  • Tours Travel
Slot88
©2026 Jariais.com | Design: Newspaperly WordPress Theme