{"id":"https://openalex.org/W4308632262","doi":"https://doi.org/10.1145/3548606.3560613","title":"Microarchitectural Leakage Templates and Their Application to Cache-Based Side Channels","display_name":"Microarchitectural Leakage Templates and Their Application to Cache-Based Side Channels","publication_year":2022,"publication_date":"2022-11-07","ids":{"openalex":"https://openalex.org/W4308632262","doi":"https://doi.org/10.1145/3548606.3560613"},"language":"en","primary_location":{"id":"doi:10.1145/3548606.3560613","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3548606.3560613","pdf_url":null,"source":{"id":"https://openalex.org/S4363608815","display_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["arxiv","crossref","datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://arxiv.org/pdf/2211.13958","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5043221140","display_name":"Ahmad Ibrahim","orcid":"https://orcid.org/0000-0002-4615-5759"},"institutions":[{"id":"https://openalex.org/I4210128801","display_name":"Helmholtz Center for Information Security","ror":"https://ror.org/02njgxr09","country_code":"DE","type":"facility","lineage":["https://openalex.org/I1305996414","https://openalex.org/I4210128801"]}],"countries":["DE"],"is_corresponding":true,"raw_author_name":"Ahmad Ibrahim","raw_affiliation_strings":["CISPA Helmholtz Center for Information Security, Saarbruecken, Germany"],"affiliations":[{"raw_affiliation_string":"CISPA Helmholtz Center for Information Security, Saarbruecken, Germany","institution_ids":["https://openalex.org/I4210128801"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5084522176","display_name":"Hamed Nemati","orcid":"https://orcid.org/0000-0001-9251-3679"},"institutions":[{"id":"https://openalex.org/I97018004","display_name":"Stanford University","ror":"https://ror.org/00f54p054","country_code":"US","type":"education","lineage":["https://openalex.org/I97018004"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Hamed Nemati","raw_affiliation_strings":["Stanford University &amp; CISPA Helmholtz Center for Information Security, Stanford, CA, USA"],"affiliations":[{"raw_affiliation_string":"Stanford University &amp; CISPA Helmholtz Center for Information Security, Stanford, CA, USA","institution_ids":["https://openalex.org/I97018004"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5017056949","display_name":"Till Schl\u00fcter","orcid":"https://orcid.org/0009-0003-0134-7946"},"institutions":[{"id":"https://openalex.org/I4210128801","display_name":"Helmholtz Center for Information Security","ror":"https://ror.org/02njgxr09","country_code":"DE","type":"facility","lineage":["https://openalex.org/I1305996414","https://openalex.org/I4210128801"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Till Schl\u00fcter","raw_affiliation_strings":["CISPA Helmholtz Center for Information Security, Saarbruecken, Germany"],"affiliations":[{"raw_affiliation_string":"CISPA Helmholtz Center for Information Security, Saarbruecken, Germany","institution_ids":["https://openalex.org/I4210128801"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5073540044","display_name":"Nils Ole Tippenhauer","orcid":"https://orcid.org/0000-0001-8424-2602"},"institutions":[{"id":"https://openalex.org/I4210128801","display_name":"Helmholtz Center for Information Security","ror":"https://ror.org/02njgxr09","country_code":"DE","type":"facility","lineage":["https://openalex.org/I1305996414","https://openalex.org/I4210128801"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Nils Ole Tippenhauer","raw_affiliation_strings":["CISPA Helmholtz Center for Information Security, Saarbruecken, Germany"],"affiliations":[{"raw_affiliation_string":"CISPA Helmholtz Center for Information Security, Saarbruecken, Germany","institution_ids":["https://openalex.org/I4210128801"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5033589837","display_name":"Christian Rossow","orcid":"https://orcid.org/0000-0003-2470-8444"},"institutions":[{"id":"https://openalex.org/I4210128801","display_name":"Helmholtz Center for Information Security","ror":"https://ror.org/02njgxr09","country_code":"DE","type":"facility","lineage":["https://openalex.org/I1305996414","https://openalex.org/I4210128801"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Christian Rossow","raw_affiliation_strings":["CISPA Helmholtz Center for Information Security, Saarbruecken, Germany"],"affiliations":[{"raw_affiliation_string":"CISPA Helmholtz Center for Information Security, Saarbruecken, Germany","institution_ids":["https://openalex.org/I4210128801"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5043221140"],"corresponding_institution_ids":["https://openalex.org/I4210128801"],"apc_list":null,"apc_paid":null,"fwci":0.4174,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":{"value":0.58956015,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"1489","last_page":"1503"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9911999702453613,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.991100013256073,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7988919019699097},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.7786458730697632},{"id":"https://openalex.org/keywords/side-channel-attack","display_name":"Side channel attack","score":0.769556999206543},{"id":"https://openalex.org/keywords/cache","display_name":"Cache","score":0.6237565279006958},{"id":"https://openalex.org/keywords/leakage","display_name":"Leakage (economics)","score":0.6022729277610779},{"id":"https://openalex.org/keywords/template","display_name":"Template","score":0.5541505217552185},{"id":"https://openalex.org/keywords/information-leakage","display_name":"Information leakage","score":0.516869068145752},{"id":"https://openalex.org/keywords/leak","display_name":"Leak","score":0.46571898460388184},{"id":"https://openalex.org/keywords/branch-predictor","display_name":"Branch predictor","score":0.4366288483142853},{"id":"https://openalex.org/keywords/component","display_name":"Component (thermodynamics)","score":0.4360731840133667},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.43285125494003296},{"id":"https://openalex.org/keywords/parallel-computing","display_name":"Parallel computing","score":0.3496227264404297},{"id":"https://openalex.org/keywords/distributed-computing","display_name":"Distributed computing","score":0.3246542811393738},{"id":"https://openalex.org/keywords/computer-architecture","display_name":"Computer architecture","score":0.3236581087112427},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.25141751766204834},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.23748421669006348},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.22869879007339478},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.11972224712371826},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.09382966160774231}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7988919019699097},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.7786458730697632},{"id":"https://openalex.org/C49289754","wikidata":"https://www.wikidata.org/wiki/Q2267081","display_name":"Side channel attack","level":3,"score":0.769556999206543},{"id":"https://openalex.org/C115537543","wikidata":"https://www.wikidata.org/wiki/Q165596","display_name":"Cache","level":2,"score":0.6237565279006958},{"id":"https://openalex.org/C2777042071","wikidata":"https://www.wikidata.org/wiki/Q6509304","display_name":"Leakage (economics)","level":2,"score":0.6022729277610779},{"id":"https://openalex.org/C82714645","wikidata":"https://www.wikidata.org/wiki/Q438331","display_name":"Template","level":2,"score":0.5541505217552185},{"id":"https://openalex.org/C2779201187","wikidata":"https://www.wikidata.org/wiki/Q2775060","display_name":"Information leakage","level":2,"score":0.516869068145752},{"id":"https://openalex.org/C2780378346","wikidata":"https://www.wikidata.org/wiki/Q1349983","display_name":"Leak","level":2,"score":0.46571898460388184},{"id":"https://openalex.org/C168522837","wikidata":"https://www.wikidata.org/wiki/Q679552","display_name":"Branch predictor","level":2,"score":0.4366288483142853},{"id":"https://openalex.org/C168167062","wikidata":"https://www.wikidata.org/wiki/Q1117970","display_name":"Component (thermodynamics)","level":2,"score":0.4360731840133667},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.43285125494003296},{"id":"https://openalex.org/C173608175","wikidata":"https://www.wikidata.org/wiki/Q232661","display_name":"Parallel computing","level":1,"score":0.3496227264404297},{"id":"https://openalex.org/C120314980","wikidata":"https://www.wikidata.org/wiki/Q180634","display_name":"Distributed computing","level":1,"score":0.3246542811393738},{"id":"https://openalex.org/C118524514","wikidata":"https://www.wikidata.org/wiki/Q173212","display_name":"Computer architecture","level":1,"score":0.3236581087112427},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.25141751766204834},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.23748421669006348},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.22869879007339478},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.11972224712371826},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.09382966160774231},{"id":"https://openalex.org/C97355855","wikidata":"https://www.wikidata.org/wiki/Q11473","display_name":"Thermodynamics","level":1,"score":0.0},{"id":"https://openalex.org/C139719470","wikidata":"https://www.wikidata.org/wiki/Q39680","display_name":"Macroeconomics","level":1,"score":0.0},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0},{"id":"https://openalex.org/C87717796","wikidata":"https://www.wikidata.org/wiki/Q146326","display_name":"Environmental engineering","level":1,"score":0.0}],"mesh":[],"locations_count":4,"locations":[{"id":"doi:10.1145/3548606.3560613","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3548606.3560613","pdf_url":null,"source":{"id":"https://openalex.org/S4363608815","display_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},{"id":"pmh:oai:arXiv.org:2211.13958","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2211.13958","pdf_url":"https://arxiv.org/pdf/2211.13958","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},{"id":"pmh:oai:figshare.com:article/24614436","is_oa":true,"landing_page_url":"https://figshare.com/articles/conference_contribution/Microarchitectural_Leakage_Templates_and_Their_Application_to_Cache-Based_Side_Channels/24614436","pdf_url":null,"source":{"id":"https://openalex.org/S4377196282","display_name":"Figshare","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4210132348","host_organization_name":"Figshare (United Kingdom)","host_organization_lineage":["https://openalex.org/I4210132348"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Text"},{"id":"doi:10.60882/cispa.24614436.v1","is_oa":true,"landing_page_url":"https://doi.org/10.60882/cispa.24614436.v1","pdf_url":null,"source":{"id":"https://openalex.org/S7407050916","display_name":"CISPA Helmholtz Center","issn_l":null,"issn":[],"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"article"}],"best_oa_location":{"id":"pmh:oai:arXiv.org:2211.13958","is_oa":true,"landing_page_url":"http://arxiv.org/abs/2211.13958","pdf_url":"https://arxiv.org/pdf/2211.13958","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"text"},"sustainable_development_goals":[{"display_name":"Industry, innovation and infrastructure","score":0.5099999904632568,"id":"https://metadata.un.org/sdg/9"}],"awards":[{"id":"https://openalex.org/G352791218","display_name":null,"funder_award_id":"(BMBF)","funder_id":"https://openalex.org/F4320321114","funder_display_name":"Bundesministerium f\u00fcr Bildung und Forschung"},{"id":"https://openalex.org/G4838704522","display_name":null,"funder_award_id":"in part","funder_id":"https://openalex.org/F4320321114","funder_display_name":"Bundesministerium f\u00fcr Bildung und Forschung"},{"id":"https://openalex.org/G623747552","display_name":null,"funder_award_id":"CISPA","funder_id":"https://openalex.org/F4320321114","funder_display_name":"Bundesministerium f\u00fcr Bildung und Forschung"},{"id":"https://openalex.org/G7225624288","display_name":null,"funder_award_id":"This work was","funder_id":"https://openalex.org/F4320321114","funder_display_name":"Bundesministerium f\u00fcr Bildung und Forschung"}],"funders":[{"id":"https://openalex.org/F4320321114","display_name":"Bundesministerium f\u00fcr Bildung und Forschung","ror":"https://ror.org/04pz7b180"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":45,"referenced_works":["https://openalex.org/W565790143","https://openalex.org/W1427174644","https://openalex.org/W1488058190","https://openalex.org/W1494212869","https://openalex.org/W1555558540","https://openalex.org/W1590649805","https://openalex.org/W1821583647","https://openalex.org/W1934458198","https://openalex.org/W1992291252","https://openalex.org/W1996007243","https://openalex.org/W2029577083","https://openalex.org/W2036500156","https://openalex.org/W2050143636","https://openalex.org/W2050937543","https://openalex.org/W2103289002","https://openalex.org/W2126132644","https://openalex.org/W2144057789","https://openalex.org/W2156509923","https://openalex.org/W2163563130","https://openalex.org/W2337480911","https://openalex.org/W2474699623","https://openalex.org/W2511473180","https://openalex.org/W2532499458","https://openalex.org/W2586555532","https://openalex.org/W2612454599","https://openalex.org/W2775990858","https://openalex.org/W2891854691","https://openalex.org/W2900761640","https://openalex.org/W2904129921","https://openalex.org/W2912675049","https://openalex.org/W2954241526","https://openalex.org/W2963311060","https://openalex.org/W2995049436","https://openalex.org/W3007037833","https://openalex.org/W3021358986","https://openalex.org/W3037927977","https://openalex.org/W3038013038","https://openalex.org/W3046515513","https://openalex.org/W3112409568","https://openalex.org/W3130297174","https://openalex.org/W3171088241","https://openalex.org/W3187569413","https://openalex.org/W4239035626","https://openalex.org/W4287753023","https://openalex.org/W6720296912"],"related_works":["https://openalex.org/W2022533428","https://openalex.org/W2580249689","https://openalex.org/W2103519941","https://openalex.org/W2769734684","https://openalex.org/W2969678054","https://openalex.org/W2903787673","https://openalex.org/W3028997697","https://openalex.org/W2583594538","https://openalex.org/W2777343049","https://openalex.org/W3158338108"],"abstract_inverted_index":{"The":[0],"complexity":[1],"of":[2,25,40,48,69,117,130,183],"modern":[3],"processor":[4],"architectures":[5],"has":[6],"given":[7],"rise":[8],"to":[9,30,33,72,92,105,126,169],"sophisticated":[10],"interactions":[11,16],"among":[12],"their":[13,80],"components.":[14],"Such":[15],"may":[17],"result":[18],"in":[19,23,82,166,191],"potential":[20],"attack":[21],"vectors":[22],"terms":[24],"side":[26,42,76],"channels,":[27],"possibly":[28],"available":[29],"userland":[31],"exploits":[32],"leak":[34],"secret":[35],"data.":[36],"Exploitation":[37],"and":[38,78,87,123,133,163,176],"countering":[39],"such":[41,53],"channels":[43,77],"requires":[44],"a":[45,90,115,146,188],"detailed":[46,54],"understanding":[47],"the":[49,67,94,181],"target":[50],"component.":[51],"However,":[52],"information":[55],"is":[56],"commonly":[57],"unpublished":[58],"for":[59],"many":[60],"CPUs.":[61],"In":[62],"this":[63],"paper,":[64],"we":[65,151],"introduce":[66],"concept":[68],"Leakage":[70,96,158,184],"Templates":[71,97,159,185],"abstractly":[73],"describe":[74],"specific":[75],"identify":[79],"occurrences":[81],"binary":[83],"applications.":[84],"We":[85,179],"design":[86],"implement":[88],"PLUMBER,":[89],"framework":[91],"derive":[93,134],"generic":[95],"from":[98],"individual":[99],"code":[100,139],"sequences":[101],"that":[102,141],"are":[103],"known":[104],"cause":[106],"leakage":[107,154],"(e.g.,":[108],"found":[109],"by":[110,186,196],"prior":[111],"work).":[112],"PLUMBER":[113,150],"uses":[114],"combination":[116],"instruction":[118],"fuzzing,":[119],"instructions'":[120],"operand":[121],"mutation":[122],"statistical":[124],"analysis":[125],"explore":[127],"undocumented":[128],"behavior":[129],"microarchitectural":[131],"optimizations":[132],"sufficient":[135],"conditions":[136],"on":[137,157],"vulnerable":[138],"inputs":[140],"if":[142],"hold":[143],"can":[144],"trigger":[145],"distinguishing":[147],"behavior.":[148,178],"Using":[149],"identified":[152],"novel":[153],"primitives":[155],"based":[156],"(for":[160],"ARM":[161],"Cortex-A53":[162],"-A72":[164],"cores),":[165],"particular":[167],"related":[168],"previction":[170],"(a":[171],"new":[172],"premature":[173],"cache":[174],"eviction),":[175],"prefetching":[177],"show":[180],"utility":[182],"re-identifying":[187],"prefetcher-based":[189],"vulnerability":[190],"OpenSSL":[192],"1.1.0g":[193],"first":[194],"reported":[195],"Shin":[197],"et":[198],"al.":[199],"[40].":[200]},"counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":3}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2022-11-13T00:00:00"}
