Matches in SemOpenAlex for { <https://semopenalex.org/work/W2994326626> ?p ?o ?g. }
Showing items 1 to 94 of
94
with 100 items per page.
- W2994326626 abstract "Rowhammer exploits frequently access specific DRAM rows (i.e., hammer rows) to induce bit flips in their adjacent rows (i.e., victim rows), thus allowing an attacker to gain the privilege escalation or steal the private data. A key requirement of all such attacks is that an attacker must have access to at least part of a hammer row adjacent to sensitive victim rows. We refer to these rowhammer attacks as PeriHammer. The state-of-the-art software-only defences against PeriHammer attacks is to make such hammer rows inaccessible to the attacker. In this paper, we question the necessity of the above requirement and propose a new class of rowhammer attacks, termed as TeleHammer. It is a paradigm shift in rowhammer attacks since it crosses memory boundary to stealthily rowhammer an inaccessible row by virtue of freeloading inherent features of modern hardware and/or software. We propose a generic model to rigorously formalize the necessary conditions to initiate TeleHammer and PeriHammer, respectively. Compared to PeriHammer, TeleHammer can defeat the advanced software-only defenses, stealthy in hiding itself and hard to mitigate. To demonstrate the practicality of TeleHammer and its advantages, we have created a TeleHammer's instance, called PThammer, which leverages the address-translation feature of modern processors. We observe that a memory access can induce a fetch of a Level-1 page-table entry (PTE) from memory and thus cause hammering the PTE once. To achieve a high hammer-frequency, we flush relevant TLB and cache effectively and efficiently. To this end, PThammer can cross user-kernel boundary to rowhammer rows occupied by Level-1 PTEs and induce bit flips in adjacent victim rows that also host Level-1 PTEs. We have exploited PThammer to defeat advanced software-only defenses in bare-metal systems." @default.
- W2994326626 created "2019-12-13" @default.
- W2994326626 creator A5004490190 @default.
- W2994326626 creator A5034398529 @default.
- W2994326626 creator A5036016529 @default.
- W2994326626 creator A5047799795 @default.
- W2994326626 creator A5082256444 @default.
- W2994326626 date "2019-12-06" @default.
- W2994326626 modified "2023-09-27" @default.
- W2994326626 title "TeleHammer : A Stealthy Cross-Boundary Rowhammer Technique" @default.
- W2994326626 cites W1934458198 @default.
- W2994326626 cites W1954144304 @default.
- W2994326626 cites W1964281299 @default.
- W2994326626 cites W2049403384 @default.
- W2994326626 cites W2061354941 @default.
- W2994326626 cites W2296602564 @default.
- W2994326626 cites W2420049379 @default.
- W2994326626 cites W2491829854 @default.
- W2994326626 cites W2516668814 @default.
- W2994326626 cites W2537014044 @default.
- W2994326626 cites W2612454599 @default.
- W2994326626 cites W2788557368 @default.
- W2994326626 cites W2795222486 @default.
- W2994326626 cites W2886541648 @default.
- W2994326626 cites W2899469948 @default.
- W2994326626 cites W2926775434 @default.
- W2994326626 cites W2964118667 @default.
- W2994326626 hasPublicationYear "2019" @default.
- W2994326626 type Work @default.
- W2994326626 sameAs 2994326626 @default.
- W2994326626 citedByCount "2" @default.
- W2994326626 countsByYear W29943266262020 @default.
- W2994326626 countsByYear W29943266262021 @default.
- W2994326626 crossrefType "posted-content" @default.
- W2994326626 hasAuthorship W2994326626A5004490190 @default.
- W2994326626 hasAuthorship W2994326626A5034398529 @default.
- W2994326626 hasAuthorship W2994326626A5036016529 @default.
- W2994326626 hasAuthorship W2994326626A5047799795 @default.
- W2994326626 hasAuthorship W2994326626A5082256444 @default.
- W2994326626 hasConcept C111919701 @default.
- W2994326626 hasConcept C116007543 @default.
- W2994326626 hasConcept C127413603 @default.
- W2994326626 hasConcept C135598885 @default.
- W2994326626 hasConcept C165696696 @default.
- W2994326626 hasConcept C199360897 @default.
- W2994326626 hasConcept C26517878 @default.
- W2994326626 hasConcept C2777904410 @default.
- W2994326626 hasConcept C38652104 @default.
- W2994326626 hasConcept C41008148 @default.
- W2994326626 hasConcept C41036726 @default.
- W2994326626 hasConcept C7366592 @default.
- W2994326626 hasConcept C9390403 @default.
- W2994326626 hasConcept C98986596 @default.
- W2994326626 hasConceptScore W2994326626C111919701 @default.
- W2994326626 hasConceptScore W2994326626C116007543 @default.
- W2994326626 hasConceptScore W2994326626C127413603 @default.
- W2994326626 hasConceptScore W2994326626C135598885 @default.
- W2994326626 hasConceptScore W2994326626C165696696 @default.
- W2994326626 hasConceptScore W2994326626C199360897 @default.
- W2994326626 hasConceptScore W2994326626C26517878 @default.
- W2994326626 hasConceptScore W2994326626C2777904410 @default.
- W2994326626 hasConceptScore W2994326626C38652104 @default.
- W2994326626 hasConceptScore W2994326626C41008148 @default.
- W2994326626 hasConceptScore W2994326626C41036726 @default.
- W2994326626 hasConceptScore W2994326626C7366592 @default.
- W2994326626 hasConceptScore W2994326626C9390403 @default.
- W2994326626 hasConceptScore W2994326626C98986596 @default.
- W2994326626 hasLocation W29943266261 @default.
- W2994326626 hasOpenAccess W2994326626 @default.
- W2994326626 hasPrimaryLocation W29943266261 @default.
- W2994326626 hasRelatedWork W2329308213 @default.
- W2994326626 hasRelatedWork W2491829854 @default.
- W2994326626 hasRelatedWork W2505343551 @default.
- W2994326626 hasRelatedWork W2559093667 @default.
- W2994326626 hasRelatedWork W2763467770 @default.
- W2994326626 hasRelatedWork W2788557368 @default.
- W2994326626 hasRelatedWork W2795139041 @default.
- W2994326626 hasRelatedWork W2801268510 @default.
- W2994326626 hasRelatedWork W2886541648 @default.
- W2994326626 hasRelatedWork W2899469948 @default.
- W2994326626 hasRelatedWork W2921566567 @default.
- W2994326626 hasRelatedWork W2926775434 @default.
- W2994326626 hasRelatedWork W2953300605 @default.
- W2994326626 hasRelatedWork W2969173255 @default.
- W2994326626 hasRelatedWork W3015685940 @default.
- W2994326626 hasRelatedWork W3042498843 @default.
- W2994326626 hasRelatedWork W3045999013 @default.
- W2994326626 hasRelatedWork W3104711117 @default.
- W2994326626 hasRelatedWork W3131080843 @default.
- W2994326626 hasRelatedWork W3201935495 @default.
- W2994326626 isParatext "false" @default.
- W2994326626 isRetracted "false" @default.
- W2994326626 magId "2994326626" @default.
- W2994326626 workType "article" @default.