论文标题
建筑攻击的调查:统一分类和攻击模型
Survey on Architectural Attacks: A Unified Classification and Attack Model
论文作者
论文摘要
根据世界经济论坛,网络攻击被认为是全球公司和机构最重要的风险来源之一。攻击可以针对网络,软件和/或硬件。在过去的几年中,已经发展了许多知识来了解和减轻网络攻击。但是,近年来,有关利用硬件漏洞的软件攻击的新威胁。我们将这些攻击定义为建筑攻击。如今,行业和学院都对建筑攻击的理解有限,这代表了未来系统设计的关键问题。为此,这项工作提出了一种新的分类法,新的攻击模型以及对现有建筑攻击的完整调查。结果,我们的研究提供了深入了解建筑攻击并开始构建更好设计以及保护机制的工具。
According to the World Economic Forum, cyber attacks are considered as one of the most important sources of risk to companies and institutions worldwide. Attacks can target the network, software, and/or hardware. During the past years, much knowledge has been developed to understand and mitigate cyberattacks. However, new threats have appeared in recent years regarding software attacks that exploit hardware vulnerabilities. We define these attacks as architectural attacks. Today, both industry and academy have only limited comprehension of architectural attacks, which represents a critical issue for the design of future systems. To this end, this work proposes a new taxonomy, a new attack model, and a complete survey of existing architectural attacks. As a result, our study provides the tools to understand the Architectural Attacks deeply and start building better designs as well as protection mechanisms.