ISOLATION ATTACKS GRAD SEC OCT 03 2017 TODAYS PAPERS ROWHAMMER - - PowerPoint PPT Presentation

isolation attacks
SMART_READER_LITE
LIVE PREVIEW

ISOLATION ATTACKS GRAD SEC OCT 03 2017 TODAYS PAPERS ROWHAMMER - - PowerPoint PPT Presentation

ISOLATION ATTACKS GRAD SEC OCT 03 2017 TODAYS PAPERS ROWHAMMER ROWHAMMER ROWHAMMER ROWHAMMER Bit Flip ROWHAMMER A hardware glitch Causes charge to leak in DRAM DRAM row activations cause bit flips ROWHAMMER + NACL ROWHAMMER +


slide-1
SLIDE 1

ISOLATION
 ATTACKS

GRAD SEC

OCT 03 2017

slide-2
SLIDE 2

TODAY’S PAPERS

slide-3
SLIDE 3

ROWHAMMER

slide-4
SLIDE 4

ROWHAMMER

slide-5
SLIDE 5

ROWHAMMER

slide-6
SLIDE 6

ROWHAMMER

Bit Flip

slide-7
SLIDE 7

ROWHAMMER

A hardware glitch Causes charge to leak in DRAM DRAM row activations cause bit flips

slide-8
SLIDE 8

ROWHAMMER + NACL

slide-9
SLIDE 9

ROWHAMMER + NACL

slide-10
SLIDE 10

ROWHAMMER + NACL

Insert ROP-like gadgets in your own code

slide-11
SLIDE 11

ROWHAMMER + MEMORY DEDUPLICATION

slide-12
SLIDE 12

ROWHAMMER + MEMORY DEDUPLICATION

slide-13
SLIDE 13

ROWHAMMER + MEMORY DEDUPLICATION

slide-14
SLIDE 14

ROWHAMMER + MEMORY DEDUPLICATION

slide-15
SLIDE 15

ROWHAMMER + MEMORY DEDUPLICATION

Copy-on-write (COW) ensures isolation

slide-16
SLIDE 16

ROWHAMMER + MEMORY DEDUPLICATION

slide-17
SLIDE 17

ROWHAMMER + MEMORY DEDUPLICATION

slide-18
SLIDE 18

ROWHAMMER + MEMORY DEDUPLICATION

Rowhammer breaks COW

slide-19
SLIDE 19

FLIP FENG SHUI

See the demo starting
 at about 17:00

https://www.usenix.org/conference/ usenixsecurity16/technical-sessions/ presentation/razavi Exploits memory deduplication
 + Rowhammer to attack a
 co-resident VM