{"id":"https://openalex.org/W4386764061","doi":"https://doi.org/10.1109/dac56929.2023.10247985","title":"Leaky MDU: ARM Memory Disambiguation Unit Uncovered and Vulnerabilities Exposed","display_name":"Leaky MDU: ARM Memory Disambiguation Unit Uncovered and Vulnerabilities Exposed","publication_year":2023,"publication_date":"2023-07-09","ids":{"openalex":"https://openalex.org/W4386764061","doi":"https://doi.org/10.1109/dac56929.2023.10247985"},"language":"en","primary_location":{"id":"doi:10.1109/dac56929.2023.10247985","is_oa":false,"landing_page_url":"http://dx.doi.org/10.1109/dac56929.2023.10247985","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 60th ACM/IEEE Design Automation Conference (DAC)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5102749847","display_name":"Chang Liu","orcid":"https://orcid.org/0000-0002-1834-4958"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Chang Liu","raw_affiliation_strings":["Tsinghua University,Beijing,China","Tsinghua University, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University,Beijing,China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Tsinghua University, Beijing, China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5058507537","display_name":"Yongqiang Lyu","orcid":"https://orcid.org/0000-0003-2573-963X"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yongqiang Lyu","raw_affiliation_strings":["Tsinghua University,Beijing,China","Tsinghua University, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University,Beijing,China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Tsinghua University, Beijing, China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100439432","display_name":"Haixia Wang","orcid":"https://orcid.org/0000-0002-8165-7009"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Haixia Wang","raw_affiliation_strings":["Tsinghua University,Beijing,China","Tsinghua University, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University,Beijing,China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Tsinghua University, Beijing, China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5048112931","display_name":"Pengfei Qiu","orcid":"https://orcid.org/0000-0001-6011-1210"},"institutions":[{"id":"https://openalex.org/I139759216","display_name":"Beijing University of Posts and Telecommunications","ror":"https://ror.org/04w9fbh59","country_code":"CN","type":"education","lineage":["https://openalex.org/I139759216"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Pengfei Qiu","raw_affiliation_strings":["Beijing University of Posts and Telecommunications,Beijing,China","Beijing University of Posts and Telecommunications, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Beijing University of Posts and Telecommunications,Beijing,China","institution_ids":["https://openalex.org/I139759216"]},{"raw_affiliation_string":"Beijing University of Posts and Telecommunications, Beijing, China","institution_ids":["https://openalex.org/I139759216"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5034735107","display_name":"Dapeng Ju","orcid":null},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Dapeng Ju","raw_affiliation_strings":["Tsinghua University,Beijing,China","Tsinghua University, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University,Beijing,China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Tsinghua University, Beijing, China","institution_ids":["https://openalex.org/I99065089"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5012474783","display_name":"Gang Qu","orcid":"https://orcid.org/0000-0001-6759-8949"},"institutions":[{"id":"https://openalex.org/I66946132","display_name":"University of Maryland, College Park","ror":"https://ror.org/047s2c258","country_code":"US","type":"education","lineage":["https://openalex.org/I66946132"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Gang Qu","raw_affiliation_strings":["University of Maryland,College Park,MD,USA","University of Maryland, College Park, MD, USA"],"affiliations":[{"raw_affiliation_string":"University of Maryland,College Park,MD,USA","institution_ids":["https://openalex.org/I66946132"]},{"raw_affiliation_string":"University of Maryland, College Park, MD, USA","institution_ids":["https://openalex.org/I66946132"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100450575","display_name":"Dongsheng Wang","orcid":"https://orcid.org/0000-0001-5779-9026"},"institutions":[{"id":"https://openalex.org/I99065089","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549","country_code":"CN","type":"education","lineage":["https://openalex.org/I99065089"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Dongsheng Wang","raw_affiliation_strings":["Tsinghua University,Beijing,China","Tsinghua University, Beijing, China","Zhongguancun Laboratory, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Tsinghua University,Beijing,China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Tsinghua University, Beijing, China","institution_ids":["https://openalex.org/I99065089"]},{"raw_affiliation_string":"Zhongguancun Laboratory, Beijing, China","institution_ids":[]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5102749847"],"corresponding_institution_ids":["https://openalex.org/I99065089"],"apc_list":null,"apc_paid":null,"fwci":0.892,"has_fulltext":false,"cited_by_count":5,"citation_normalized_percentile":{"value":0.7944344,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11614","display_name":"Cloud Data Security Solutions","score":0.9761000275611877,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.948199987411499,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8618954420089722},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6605826020240784},{"id":"https://openalex.org/keywords/pipeline","display_name":"Pipeline (software)","score":0.5343607664108276},{"id":"https://openalex.org/keywords/cache","display_name":"Cache","score":0.5150120258331299},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.49653083086013794},{"id":"https://openalex.org/keywords/side-channel-attack","display_name":"Side channel attack","score":0.46622657775878906},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.42968618869781494},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.2853955030441284},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.2056502401828766},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.13581582903862}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8618954420089722},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6605826020240784},{"id":"https://openalex.org/C43521106","wikidata":"https://www.wikidata.org/wiki/Q2165493","display_name":"Pipeline (software)","level":2,"score":0.5343607664108276},{"id":"https://openalex.org/C115537543","wikidata":"https://www.wikidata.org/wiki/Q165596","display_name":"Cache","level":2,"score":0.5150120258331299},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.49653083086013794},{"id":"https://openalex.org/C49289754","wikidata":"https://www.wikidata.org/wiki/Q2267081","display_name":"Side channel attack","level":3,"score":0.46622657775878906},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.42968618869781494},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.2853955030441284},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.2056502401828766},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.13581582903862}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/dac56929.2023.10247985","is_oa":false,"landing_page_url":"http://dx.doi.org/10.1109/dac56929.2023.10247985","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 60th ACM/IEEE Design Automation Conference (DAC)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","score":0.6399999856948853,"id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"},{"id":"https://openalex.org/F4320322392","display_name":"Tsinghua University","ror":"https://ror.org/03cve4549"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":18,"referenced_works":["https://openalex.org/W1427174644","https://openalex.org/W2536548552","https://openalex.org/W2889508486","https://openalex.org/W2946772038","https://openalex.org/W2964281551","https://openalex.org/W3034004991","https://openalex.org/W3035655869","https://openalex.org/W3036557299","https://openalex.org/W3097736620","https://openalex.org/W3097783227","https://openalex.org/W3197795418","https://openalex.org/W3198158199","https://openalex.org/W4293262008","https://openalex.org/W6628261430","https://openalex.org/W6754306559","https://openalex.org/W6762600926","https://openalex.org/W6801391798","https://openalex.org/W7071262805"],"related_works":["https://openalex.org/W4323824501","https://openalex.org/W4200321003","https://openalex.org/W2355552010","https://openalex.org/W4236373173","https://openalex.org/W2136687465","https://openalex.org/W5280335","https://openalex.org/W4252980856","https://openalex.org/W3215861253","https://openalex.org/W3196561854","https://openalex.org/W3131321414"],"abstract_inverted_index":{"Memory":[0],"Disambiguation":[1],"Unit":[2],"(MDU)":[3],"is":[4,35],"widely":[5],"used":[6],"on":[7,25],"modern":[8],"processors":[9,27],"to":[10,31,67,78],"speculatively":[11],"execute":[12],"load":[13],"instructions":[14],"and":[15,90,96,119],"improve":[16],"pipeline":[17],"performance.":[18],"Given":[19],"that":[20,75,86],"the":[21,32,54,112,128],"MDU":[22],"design":[23],"details":[24],"ARM":[26,58],"are":[28,39,132],"not":[29],"available":[30],"public,":[33],"it":[34],"unclear":[36],"whether":[37],"there":[38],"any":[40],"security":[41,104],"vulnerabilities":[42],"associated":[43],"with":[44],"its":[45],"MDU.":[46],"In":[47],"this":[48],"paper,":[49],"we":[50,61],"first":[51],"reverse":[52],"engineer":[53],"undocumented":[55],"features":[56],"of":[57,94],"MDU,":[59],"then":[60],"discover":[62],"three":[63],"potential":[64],"user-privilege":[65],"attacks":[66,101,118,131],"leak":[68],"secret":[69],"data":[70],"via":[71],"MDU:":[72],"cross-process":[73],"attack":[74,85],"allows":[76],"users":[77],"communicate":[79],"through":[80],"a":[81,91],"convert":[82],"channel,":[83],"cross-domain":[84],"leaks":[87],"kernel":[88],"information":[89],"new":[92],"variant":[93],"inner-process":[95],"inter-processes":[97],"Spectre":[98],"attacks.":[99,124],"These":[100],"pose":[102],"serious":[103],"challenges":[105],"as":[106],"they":[107],"can":[108],"bypass":[109],"both":[110],"all":[111],"known":[113],"countermeasures":[114],"against":[115,121,127],"cache":[116],"side-channel":[117],"those":[120],"transient":[122],"execution":[123],"Potential":[125],"mitigation":[126],"proposed":[129],"MDU-based":[130],"also":[133],"discussed.":[134]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":1}],"updated_date":"2026-03-06T13:50:29.536080","created_date":"2025-10-10T00:00:00"}
