{"id":"https://openalex.org/W2532499458","doi":"https://doi.org/10.1145/2976749.2978356","title":"Prefetch Side-Channel Attacks","display_name":"Prefetch Side-Channel Attacks","publication_year":2016,"publication_date":"2016-10-24","ids":{"openalex":"https://openalex.org/W2532499458","doi":"https://doi.org/10.1145/2976749.2978356","mag":"2532499458"},"language":"en","primary_location":{"id":"doi:10.1145/2976749.2978356","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2976749.2978356","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://zenodo.org/record/3495544","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5066874310","display_name":"Daniel Gruss","orcid":"https://orcid.org/0000-0002-7977-3246"},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"education","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":true,"raw_author_name":"Daniel Gruss","raw_affiliation_strings":["Graz University of Technology, Graz, Austria"],"affiliations":[{"raw_affiliation_string":"Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5013155428","display_name":"Cl\u00e9mentine Maurice","orcid":"https://orcid.org/0000-0002-8896-9494"},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"education","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Cl\u00e9mentine Maurice","raw_affiliation_strings":["Graz University of Technology, Graz, Austria"],"affiliations":[{"raw_affiliation_string":"Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5041121396","display_name":"Anders Fogh","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Anders Fogh","raw_affiliation_strings":["G DATA Advanced Analytics, Bochum, Germany"],"affiliations":[{"raw_affiliation_string":"G DATA Advanced Analytics, Bochum, Germany","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056935116","display_name":"Moritz Lipp","orcid":null},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"education","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Moritz Lipp","raw_affiliation_strings":["Graz University of Technology, Graz, Austria"],"affiliations":[{"raw_affiliation_string":"Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5015437576","display_name":"Stefan Mangard","orcid":"https://orcid.org/0000-0001-9650-8041"},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"education","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Stefan Mangard","raw_affiliation_strings":["Graz University of Technology, Graz, Austria"],"affiliations":[{"raw_affiliation_string":"Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5066874310"],"corresponding_institution_ids":["https://openalex.org/I4092182"],"apc_list":null,"apc_paid":null,"fwci":35.103,"has_fulltext":false,"cited_by_count":202,"citation_normalized_percentile":{"value":0.99702524,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":97,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"368","last_page":"379"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9914000034332275,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9832000136375427,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8753306269645691},{"id":"https://openalex.org/keywords/instruction-prefetch","display_name":"Instruction prefetch","score":0.7103648781776428},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.6410346627235413},{"id":"https://openalex.org/keywords/address-space","display_name":"Address space","score":0.6224747896194458},{"id":"https://openalex.org/keywords/code-reuse","display_name":"Code reuse","score":0.5934717059135437},{"id":"https://openalex.org/keywords/sysfs","display_name":"sysfs","score":0.5795256495475769},{"id":"https://openalex.org/keywords/linux-kernel","display_name":"Linux kernel","score":0.5455548167228699},{"id":"https://openalex.org/keywords/x86","display_name":"x86","score":0.525288462638855},{"id":"https://openalex.org/keywords/virtual-machine","display_name":"Virtual machine","score":0.4841897785663605},{"id":"https://openalex.org/keywords/virtual-memory","display_name":"Virtual memory","score":0.4439196288585663},{"id":"https://openalex.org/keywords/kernel","display_name":"Kernel (algebra)","score":0.43276065587997437},{"id":"https://openalex.org/keywords/javascript","display_name":"JavaScript","score":0.42147719860076904},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3825540542602539},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.3447492718696594},{"id":"https://openalex.org/keywords/memory-management","display_name":"Memory management","score":0.1984567940235138},{"id":"https://openalex.org/keywords/cache","display_name":"Cache","score":0.17979833483695984},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.16292986273765564},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.1582450568675995}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8753306269645691},{"id":"https://openalex.org/C133588205","wikidata":"https://www.wikidata.org/wiki/Q28455645","display_name":"Instruction prefetch","level":3,"score":0.7103648781776428},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.6410346627235413},{"id":"https://openalex.org/C144240696","wikidata":"https://www.wikidata.org/wiki/Q367204","display_name":"Address space","level":2,"score":0.6224747896194458},{"id":"https://openalex.org/C2778583558","wikidata":"https://www.wikidata.org/wiki/Q771245","display_name":"Code reuse","level":3,"score":0.5934717059135437},{"id":"https://openalex.org/C90307666","wikidata":"https://www.wikidata.org/wiki/Q1932562","display_name":"sysfs","level":3,"score":0.5795256495475769},{"id":"https://openalex.org/C553261973","wikidata":"https://www.wikidata.org/wiki/Q14579","display_name":"Linux kernel","level":2,"score":0.5455548167228699},{"id":"https://openalex.org/C170723468","wikidata":"https://www.wikidata.org/wiki/Q182933","display_name":"x86","level":3,"score":0.525288462638855},{"id":"https://openalex.org/C25344961","wikidata":"https://www.wikidata.org/wiki/Q192726","display_name":"Virtual machine","level":2,"score":0.4841897785663605},{"id":"https://openalex.org/C76399640","wikidata":"https://www.wikidata.org/wiki/Q189401","display_name":"Virtual memory","level":4,"score":0.4439196288585663},{"id":"https://openalex.org/C74193536","wikidata":"https://www.wikidata.org/wiki/Q574844","display_name":"Kernel (algebra)","level":2,"score":0.43276065587997437},{"id":"https://openalex.org/C544833334","wikidata":"https://www.wikidata.org/wiki/Q2005","display_name":"JavaScript","level":2,"score":0.42147719860076904},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3825540542602539},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.3447492718696594},{"id":"https://openalex.org/C176649486","wikidata":"https://www.wikidata.org/wiki/Q2308807","display_name":"Memory management","level":3,"score":0.1984567940235138},{"id":"https://openalex.org/C115537543","wikidata":"https://www.wikidata.org/wiki/Q165596","display_name":"Cache","level":2,"score":0.17979833483695984},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.16292986273765564},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.1582450568675995},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C136085584","wikidata":"https://www.wikidata.org/wiki/Q910289","display_name":"Overlay","level":2,"score":0.0},{"id":"https://openalex.org/C114614502","wikidata":"https://www.wikidata.org/wiki/Q76592","display_name":"Combinatorics","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/2976749.2978356","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2976749.2978356","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},{"id":"pmh:oai:zenodo.org:3495544","is_oa":true,"landing_page_url":"https://zenodo.org/record/3495544","pdf_url":null,"source":{"id":"https://openalex.org/S4306400562","display_name":"Zenodo (CERN European Organization for Nuclear Research)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I67311998","host_organization_name":"European Organization for Nuclear Research","host_organization_lineage":["https://openalex.org/I67311998"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"info:eu-repo/semantics/conferencePaper"}],"best_oa_location":{"id":"pmh:oai:zenodo.org:3495544","is_oa":true,"landing_page_url":"https://zenodo.org/record/3495544","pdf_url":null,"source":{"id":"https://openalex.org/S4306400562","display_name":"Zenodo (CERN European Organization for Nuclear Research)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I67311998","host_organization_name":"European Organization for Nuclear Research","host_organization_lineage":["https://openalex.org/I67311998"],"host_organization_lineage_names":[],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"info:eu-repo/semantics/conferencePaper"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.6800000071525574,"display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":40,"referenced_works":["https://openalex.org/W173413620","https://openalex.org/W1275041561","https://openalex.org/W1427174644","https://openalex.org/W1447175589","https://openalex.org/W1488058190","https://openalex.org/W1494212869","https://openalex.org/W1503814339","https://openalex.org/W1555558540","https://openalex.org/W1592889082","https://openalex.org/W1605557845","https://openalex.org/W1613874182","https://openalex.org/W1890449996","https://openalex.org/W1934458198","https://openalex.org/W1963947298","https://openalex.org/W1964281299","https://openalex.org/W1964389195","https://openalex.org/W1981260134","https://openalex.org/W1996007243","https://openalex.org/W2001759130","https://openalex.org/W2061354941","https://openalex.org/W2094916391","https://openalex.org/W2098010707","https://openalex.org/W2112968990","https://openalex.org/W2126132644","https://openalex.org/W2157116240","https://openalex.org/W2163563130","https://openalex.org/W2172060328","https://openalex.org/W2173153107","https://openalex.org/W2175157372","https://openalex.org/W2296391043","https://openalex.org/W2301588800","https://openalex.org/W2337480911","https://openalex.org/W2350778671","https://openalex.org/W2464738545","https://openalex.org/W2473598730","https://openalex.org/W2529582363","https://openalex.org/W2564856904","https://openalex.org/W2949382771","https://openalex.org/W3024062961","https://openalex.org/W4242926647"],"related_works":["https://openalex.org/W2467393770","https://openalex.org/W2152082095","https://openalex.org/W3033191713","https://openalex.org/W2538455664","https://openalex.org/W2380718268","https://openalex.org/W1447175589","https://openalex.org/W1851018411","https://openalex.org/W2942656648","https://openalex.org/W4214644412","https://openalex.org/W2532499458"],"abstract_inverted_index":{"Modern":[0],"operating":[1],"systems":[2,232],"use":[3],"hardware":[4],"support":[5],"to":[6,19,30,49,70,94,172,175,204,229],"protect":[7,230],"against":[8,41],"control-flow":[9],"hijacking":[10],"attacks":[11,43,52,83,140,213],"such":[12],"as":[13],"code-injection":[14],"attacks.":[15,184],"Typically,":[16],"write":[17],"access":[18,69],"executable":[20],"pages":[21,33],"is":[22,28,47],"prevented":[23],"and":[24,98,108,135,163,194,216],"kernel":[25,31,63,109,164,206,215,227],"mode":[26],"execution":[27],"restricted":[29],"code":[32],"only.":[34],"However,":[35],"current":[36],"CPUs":[37],"provide":[38],"no":[39],"protection":[40],"code-reuse":[42],"like":[44],"ROP.":[45],"ASLR":[46,207],"used":[48],"prevent":[50],"these":[51,142],"by":[53,104],"making":[54],"all":[55],"addresses":[56,130,174],"unpredictable":[57],"for":[58,128],"an":[59,148,234],"attacker.":[60],"Hence,":[61],"the":[62,101,126,152],"security":[64],"relies":[65],"fundamentally":[66],"on":[67,120,131,178,192,208,214],"preventing":[68],"address":[71,96],"information.":[72],"We":[73,137,185,220],"introduce":[74],"Prefetch":[75,111],"Side-Channel":[76],"Attacks,":[77],"a":[78,157,222],"new":[79,223],"class":[80],"of":[81,151,156,225,236],"generic":[82],"exploiting":[84,141],"major":[85],"weaknesses":[86],"in":[87],"prefetch":[88],"instructions.":[89],"This":[90],"allows":[91],"unprivileged":[92,189],"attackers":[93],"obtain":[95],"information":[97],"thus":[99],"compromise":[100],"entire":[102],"system":[103],"defeating":[105,159],"SMAP,":[106],"SMEP,":[107],"ASLR.":[110,166],"can":[112],"fetch":[113],"inaccessible":[114],"privileged":[115],"memory":[116],"into":[117],"various":[118],"caches":[119],"Intel":[121,133],"x86.":[122],"It":[123],"also":[124],"leaks":[125],"translation-level":[127],"virtual":[129,171,198],"both":[132,160],"x86":[134],"ARMv8-A.":[136],"build":[138],"three":[139],"properties.":[143],"Our":[144,167],"first":[145],"attack":[146,169],"retrieves":[147],"exact":[149],"image":[150],"full":[153],"paging":[154],"hierarchy":[155],"process,":[158],"user":[161,190],"space":[162,165],"second":[168],"resolves":[170],"physical":[173],"bypass":[176],"SMAP":[177],"64-bit":[179],"Linux":[180,193],"systems,":[181],"enabling":[182,211],"ret2dir":[183],"demonstrate":[186,202],"this":[187],"from":[188],"programs":[191],"inside":[195],"Amazon":[196],"EC2":[197],"machines.":[199],"Finally,":[200],"we":[201],"how":[203],"defeat":[205],"Windows":[209],"10,":[210],"ROP":[212],"driver":[217],"binary":[218],"code.":[219],"propose":[221],"form":[224],"strong":[226],"isolation":[228],"commodity":[231],"incuring":[233],"overhead":[235],"only":[237],"0.06-5.09%.":[238]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":26},{"year":2024,"cited_by_count":16},{"year":2023,"cited_by_count":14},{"year":2022,"cited_by_count":21},{"year":2021,"cited_by_count":19},{"year":2020,"cited_by_count":27},{"year":2019,"cited_by_count":35},{"year":2018,"cited_by_count":22},{"year":2017,"cited_by_count":15},{"year":2016,"cited_by_count":6}],"updated_date":"2026-03-25T14:56:36.534964","created_date":"2025-10-10T00:00:00"}
