A study of hardware architecture based attacks to bypass operating system security. Issue 4 (11th June 2019)
- Record Type:
- Journal Article
- Title:
- A study of hardware architecture based attacks to bypass operating system security. Issue 4 (11th June 2019)
- Main Title:
- A study of hardware architecture based attacks to bypass operating system security
- Authors:
- Lokhande, Vaibhav G.
Vidyarthi, Deepti - Abstract:
- Abstract: Malware target a vulnerability, bug or loophole in software to exploit the system, escalate privileges, extract inaccessible data, or execute code for malicious purpose. We can assert that over the period of time, both hardware and software have evolved and so are their vulnerabilities. But most of the vulnerabilities identified or researched are software oriented. On similar lines, there can be vulnerabilities in the hardware architecture that can be exploited, hidden from upper layer securities like operating system (OS) reference monitor, antivirus, etc. It is difficult to trace the vulnerabilities in the hardware primarily due to complex architecture and difficulties to observe the effects of operations performed across the system. Just like the software, the hardware architecture can also be exploited to develop malware and to gain access to sensitive data. This paper discusses the attacks that exploit the operations performed at the hardware level. We have discussed the different exploits that use the hardware architecture to extract data, their limitations and the future of hardware architecture based exploits. At the end, the data extraction process is validated through our implementation of one of the hardware architecture based exploits. We question about the impact on system security if the hardware architecture is exploited.
- Is Part Of:
- Security and privacy. Volume 2:Issue 4(2019)
- Journal:
- Security and privacy
- Issue:
- Volume 2:Issue 4(2019)
- Issue Display:
- Volume 2, Issue 4 (2019)
- Year:
- 2019
- Volume:
- 2
- Issue:
- 4
- Issue Sort Value:
- 2019-0002-0004-0000
- Page Start:
- n/a
- Page End:
- n/a
- Publication Date:
- 2019-06-11
- Subjects:
- architectural vulnerability -- hardware attacks -- micro‐architectural attacks -- side channel
Computer security -- Periodicals
Data protection -- Periodicals
Cyberterrorism -- Periodicals
005.8 - Journal URLs:
- https://onlinelibrary.wiley.com/journal/24756725 ↗
http://onlinelibrary.wiley.com/ ↗ - DOI:
- 10.1002/spy2.81 ↗
- Languages:
- English
- ISSNs:
- 2475-6725
- Deposit Type:
- Legaldeposit
- View Content:
- Available online (eLD content is only available in our Reading Rooms) ↗
- Physical Locations:
- British Library DSC - 8217.148805
British Library DSC - BLDSS-3PM
British Library HMNTS - ELD Digital store - Ingest File:
- 11012.xml