{"id":"https://openalex.org/W3092493782","doi":"https://doi.org/10.1109/dac18072.2020.9218572","title":"A Formal Approach for Detecting Vulnerabilities to Transient Execution Attacks in Out-of-Order Processors","display_name":"A Formal Approach for Detecting Vulnerabilities to Transient Execution Attacks in Out-of-Order Processors","publication_year":2020,"publication_date":"2020-07-01","ids":{"openalex":"https://openalex.org/W3092493782","doi":"https://doi.org/10.1109/dac18072.2020.9218572","mag":"3092493782"},"language":"en","primary_location":{"id":"doi:10.1109/dac18072.2020.9218572","is_oa":false,"landing_page_url":"https://doi.org/10.1109/dac18072.2020.9218572","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 57th ACM/IEEE Design Automation Conference (DAC)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5056116323","display_name":"Mohammad Rahmani Fadiheh","orcid":"https://orcid.org/0000-0003-0214-2486"},"institutions":[{"id":"https://openalex.org/I153267046","display_name":"University of Kaiserslautern","ror":"https://ror.org/04zrf7b53","country_code":"DE","type":"education","lineage":["https://openalex.org/I153267046"]}],"countries":["DE"],"is_corresponding":true,"raw_author_name":"Mohammad Rahmani Fadiheh","raw_affiliation_strings":["TU Kaiserslautern, Germany"],"affiliations":[{"raw_affiliation_string":"TU Kaiserslautern, Germany","institution_ids":["https://openalex.org/I153267046"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5112703735","display_name":"Muller Johannes","orcid":null},"institutions":[{"id":"https://openalex.org/I153267046","display_name":"University of Kaiserslautern","ror":"https://ror.org/04zrf7b53","country_code":"DE","type":"education","lineage":["https://openalex.org/I153267046"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Johannes Muller","raw_affiliation_strings":["TU Kaiserslautern, Germany"],"affiliations":[{"raw_affiliation_string":"TU Kaiserslautern, Germany","institution_ids":["https://openalex.org/I153267046"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5027184441","display_name":"Raik Brinkmann","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Raik Brinkmann","raw_affiliation_strings":["OneSpin Solutions GmbH, Germany"],"affiliations":[{"raw_affiliation_string":"OneSpin Solutions GmbH, Germany","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5036312663","display_name":"Subhasish Mitra","orcid":"https://orcid.org/0000-0002-5572-5194"},"institutions":[{"id":"https://openalex.org/I97018004","display_name":"Stanford University","ror":"https://ror.org/00f54p054","country_code":"US","type":"education","lineage":["https://openalex.org/I97018004"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Subhasish Mitra","raw_affiliation_strings":["Stanford University, USA"],"affiliations":[{"raw_affiliation_string":"Stanford University, USA","institution_ids":["https://openalex.org/I97018004"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5047920654","display_name":"Dominik Stoffel","orcid":"https://orcid.org/0000-0002-8180-9738"},"institutions":[{"id":"https://openalex.org/I153267046","display_name":"University of Kaiserslautern","ror":"https://ror.org/04zrf7b53","country_code":"DE","type":"education","lineage":["https://openalex.org/I153267046"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Dominik Stoffel","raw_affiliation_strings":["TU Kaiserslautern, Germany"],"affiliations":[{"raw_affiliation_string":"TU Kaiserslautern, Germany","institution_ids":["https://openalex.org/I153267046"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5066184879","display_name":"Wolfgang Kunz","orcid":"https://orcid.org/0000-0002-6612-2946"},"institutions":[{"id":"https://openalex.org/I153267046","display_name":"University of Kaiserslautern","ror":"https://ror.org/04zrf7b53","country_code":"DE","type":"education","lineage":["https://openalex.org/I153267046"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Wolfgang Kunz","raw_affiliation_strings":["TU Kaiserslautern, Germany"],"affiliations":[{"raw_affiliation_string":"TU Kaiserslautern, Germany","institution_ids":["https://openalex.org/I153267046"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5056116323"],"corresponding_institution_ids":["https://openalex.org/I153267046"],"apc_list":null,"apc_paid":null,"fwci":2.4691,"has_fulltext":false,"cited_by_count":35,"citation_normalized_percentile":{"value":0.91324131,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":97,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10502","display_name":"Advanced Memory and Neural Computing","score":0.9567999839782715,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9555000066757202,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8275211453437805},{"id":"https://openalex.org/keywords/transient","display_name":"Transient (computer programming)","score":0.5859133005142212},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.5696901679039001},{"id":"https://openalex.org/keywords/model-checking","display_name":"Model checking","score":0.5575056076049805},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.543932318687439},{"id":"https://openalex.org/keywords/boom","display_name":"Boom","score":0.48086172342300415},{"id":"https://openalex.org/keywords/formal-methods","display_name":"Formal methods","score":0.47955915331840515},{"id":"https://openalex.org/keywords/state","display_name":"State (computer science)","score":0.477657675743103},{"id":"https://openalex.org/keywords/property","display_name":"Property (philosophy)","score":0.44667431712150574},{"id":"https://openalex.org/keywords/formal-verification","display_name":"Formal verification","score":0.44529232382774353},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.40581753849983215},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.20534411072731018},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.06468653678894043}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8275211453437805},{"id":"https://openalex.org/C2780799671","wikidata":"https://www.wikidata.org/wiki/Q17087362","display_name":"Transient (computer programming)","level":2,"score":0.5859133005142212},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.5696901679039001},{"id":"https://openalex.org/C110251889","wikidata":"https://www.wikidata.org/wiki/Q1569697","display_name":"Model checking","level":2,"score":0.5575056076049805},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.543932318687439},{"id":"https://openalex.org/C141441539","wikidata":"https://www.wikidata.org/wiki/Q1970908","display_name":"Boom","level":2,"score":0.48086172342300415},{"id":"https://openalex.org/C75606506","wikidata":"https://www.wikidata.org/wiki/Q1049183","display_name":"Formal methods","level":2,"score":0.47955915331840515},{"id":"https://openalex.org/C48103436","wikidata":"https://www.wikidata.org/wiki/Q599031","display_name":"State (computer science)","level":2,"score":0.477657675743103},{"id":"https://openalex.org/C189950617","wikidata":"https://www.wikidata.org/wiki/Q937228","display_name":"Property (philosophy)","level":2,"score":0.44667431712150574},{"id":"https://openalex.org/C111498074","wikidata":"https://www.wikidata.org/wiki/Q173326","display_name":"Formal verification","level":2,"score":0.44529232382774353},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.40581753849983215},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.20534411072731018},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.06468653678894043},{"id":"https://openalex.org/C111472728","wikidata":"https://www.wikidata.org/wiki/Q9471","display_name":"Epistemology","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C87717796","wikidata":"https://www.wikidata.org/wiki/Q146326","display_name":"Environmental engineering","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/dac18072.2020.9218572","is_oa":false,"landing_page_url":"https://doi.org/10.1109/dac18072.2020.9218572","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2020 57th ACM/IEEE Design Automation Conference (DAC)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.7599999904632568,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":23,"referenced_works":["https://openalex.org/W2024977521","https://openalex.org/W2133996557","https://openalex.org/W2610653992","https://openalex.org/W2896496024","https://openalex.org/W2938066316","https://openalex.org/W2954241526","https://openalex.org/W2963311060","https://openalex.org/W2963739369","https://openalex.org/W2971539790","https://openalex.org/W2977528721","https://openalex.org/W2979633637","https://openalex.org/W2979849111","https://openalex.org/W3015465581","https://openalex.org/W3100164250","https://openalex.org/W4239383300","https://openalex.org/W4250728693","https://openalex.org/W4288086178","https://openalex.org/W4289105799","https://openalex.org/W6747544890","https://openalex.org/W6756645753","https://openalex.org/W6768104615","https://openalex.org/W6778035576","https://openalex.org/W6999016131"],"related_works":["https://openalex.org/W2006962382","https://openalex.org/W2149716943","https://openalex.org/W4312733571","https://openalex.org/W113732979","https://openalex.org/W161255303","https://openalex.org/W4315606162","https://openalex.org/W1544097700","https://openalex.org/W2340807904","https://openalex.org/W2333948626","https://openalex.org/W2037121848"],"abstract_inverted_index":{"Transient":[0],"execution":[1,59,100],"attacks,":[2,60,101],"such":[3],"as":[4,62],"Spectre":[5,154],"and":[6,11,31,35,45],"Meltdown,":[7],"create":[8],"a":[9,38,50,63,68,123,136],"new":[10],"serious":[12],"attack":[13],"surface":[14],"in":[15],"modern":[16],"processors.":[17,88],"In":[18,131],"spite":[19],"of":[20,29,42,53,109,117],"all":[21,96],"countermeasures":[22],"taken":[23],"during":[24],"recent":[25],"years,":[26],"the":[27,43,115,118],"cycles":[28],"alarm":[30],"patch":[32],"are":[33],"ongoing":[34],"call":[36],"for":[37,71],"better":[39],"formal":[40,51,69],"understanding":[41],"threat":[44],"possible":[46],"preventions.This":[47],"paper":[48],"introduces":[49],"definition":[52],"security":[54,72],"with":[55,125],"respect":[56],"to":[57,86,93,98,152],"transient":[58,99],"formulated":[61],"HW":[64,75],"property.":[65],"We":[66],"present":[67],"method":[70],"verification":[73],"by":[74],"property":[76],"checking":[77],"based":[78],"on":[79],"extending":[80],"Unique":[81],"Program":[82],"Execution":[83],"Checking":[84],"(UPEC)":[85],"out-of-order":[87],"UPEC":[89],"can":[90,149],"be":[91,150],"used":[92],"systematically":[94],"detect":[95],"vulnerabilities":[97,103],"including":[102],"unknown":[104,140],"so":[105,138],"far.":[106],"The":[107],"feasibility":[108],"our":[110,133],"approach":[111,134],"is":[112,122],"demonstrated":[113],"at":[114],"example":[116],"BOOM":[119,132],"processor,":[120],"which":[121],"design":[124],"more":[126],"than":[127],"650,000":[128],"state":[129],"bits.":[130],"detects":[135],"new,":[137],"far":[139],"vulnerability,":[141],"called":[142],"Spectre-STC,":[143],"indicating":[144],"that":[145],"also":[146],"single-threaded":[147],"processors":[148],"vulnerable":[151],"contention-based":[153],"attacks.":[155]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":6},{"year":2024,"cited_by_count":9},{"year":2023,"cited_by_count":5},{"year":2022,"cited_by_count":5},{"year":2021,"cited_by_count":8}],"updated_date":"2026-03-13T16:22:10.518609","created_date":"2025-10-10T00:00:00"}
