{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,28]],"date-time":"2026-01-28T22:15:58Z","timestamp":1769638558310,"version":"3.49.0"},"reference-count":72,"publisher":"IEEE","license":[{"start":{"date-parts":[[2019,5,1]],"date-time":"2019-05-01T00:00:00Z","timestamp":1556668800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2019,5,1]],"date-time":"2019-05-01T00:00:00Z","timestamp":1556668800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-009"},{"start":{"date-parts":[[2019,5,1]],"date-time":"2019-05-01T00:00:00Z","timestamp":1556668800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-001"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019,5]]},"DOI":"10.1109\/sp.2019.00062","type":"proceedings-article","created":{"date-parts":[[2019,9,16]],"date-time":"2019-09-16T22:03:02Z","timestamp":1568671382000},"page":"435-452","source":"Crossref","is-referenced-by-count":32,"title":["The 9 Lives of Bleichenbacher's CAT: New Cache ATtacks on TLS Implementations"],"prefix":"10.1109","author":[{"given":"Eyal","family":"Ronen","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Robert","family":"Gillham","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Daniel","family":"Genkin","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Adi","family":"Shamir","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"David","family":"Wong","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yuval","family":"Yarom","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref72","doi-asserted-by":"publisher","DOI":"10.1145\/2660267.2660356"},{"key":"ref71","doi-asserted-by":"publisher","DOI":"10.1145\/2660267.2660356"},{"key":"ref70","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978360"},{"key":"ref39","doi-asserted-by":"crossref","DOI":"10.1145\/2714576.2714625","article-title":"Lucky 13 strikes back","author":"irazoqui","year":"2015","journal-title":"Asia CCS"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.42"},{"key":"ref33","article-title":"Flush + Flush: A fast and stealthy cache attack","author":"gruss","year":"2016","journal-title":"DIMVA"},{"key":"ref32","article-title":"Cache template attacks: Automating attacks on inclusive last-level caches","author":"gruss","year":"2015","journal-title":"USENIX SEC"},{"key":"ref31","article-title":"Drive-by key-extraction cache attacks from portable code","author":"genkin","year":"2018","journal-title":"ACNS"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134029"},{"key":"ref37","year":"2018","journal-title":"Speculative Execution Side Channel Mitigations"},{"key":"ref36","article-title":"Cache attacks enable bulk key recovery on the cloud","author":"inci","year":"2016","journal-title":"CHES"},{"key":"ref35","article-title":"Co-location detection on the cloud","author":"inci","year":"2016","journal-title":"COSADE"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1023\/A:1011214926272"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243775"},{"key":"ref62","author":"schmidt","year":"2015","journal-title":"Introducing s2n a new open source tls implementation"},{"key":"ref61","year":"2012","journal-title":"PKCS #1 v2 2 RSA Cryptography Standard"},{"key":"ref63","year":"2018","journal-title":"SageMath the Sage Mathematics Software System (Version 8 3)"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1145\/3265723.3265724"},{"key":"ref64","article-title":"Cryptanalysis of DES implemented on computers with cache","author":"tsunoo","year":"2003","journal-title":"CHES"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1007\/s13389-016-0141-6"},{"key":"ref65","article-title":"A placement vulnerability study in multi-tenant public clouds","author":"varadarajan","year":"2015","journal-title":"USENIX SEC"},{"key":"ref66","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134016"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978353"},{"key":"ref67","article-title":"Cache telepathy: Leveraging shared resource attacks to learn DNN architectures","volume":"abs 1808 4761","author":"yan","year":"2018","journal-title":"CoRR"},{"key":"ref68","author":"yarom","year":"2017","journal-title":"Mastik A Micro-Architectural Side-Channel Toolkit"},{"key":"ref69","article-title":"FLUSH + RELOAD: A high resolution, low noise, L3 cache side-channel attack","author":"yarom","year":"2014","journal-title":"USENIX SEC"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/1314466.1314469"},{"key":"ref1","year":"0","journal-title":"The ICSI Notary"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.17487\/rfc4346"},{"key":"ref22","article-title":"Prime + Abort: A timer-free high-precision L3 cache attack using intel TSX","author":"disselkoen","year":"2017","journal-title":"USENIX SEC"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.17487\/rfc5246"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1145\/2870636"},{"key":"ref23","author":"duong","year":"2011","journal-title":"Here Come the ? Ninjas"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/3173162.3173204"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/MICRO.2016.7783743"},{"key":"ref50","article-title":"CacheZoom: How SGX amplifies the power of cache attacks","author":"moghimi","year":"2017","journal-title":"CHES"},{"key":"ref51","year":"0","journal-title":"SSL handshake key exchange algorithm for full handshake"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1145\/359340.359342"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.1145\/1653662.1653687"},{"key":"ref57","article-title":"Cache missing for fun and profit","author":"percival","year":"2005","journal-title":"Proceedings of BSDCan"},{"key":"ref56","article-title":"Cache attacks and counter-measures: The case of AES","author":"osvik","year":"2006","journal-title":"CT-RSA"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813708"},{"key":"ref54","year":"0","journal-title":"RSA public encrypt"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1007\/s00145-002-0021-3"},{"key":"ref52","volume":"477","author":"nguyen","year":"2009","journal-title":"Public-Key Cryptanalysis ser Contemporary Mathematics"},{"key":"ref10","author":"bernstein","year":"2005","journal-title":"Cache-timing attacks on AES"},{"key":"ref11","article-title":"Chosen ciphertext attacks against protocols based on the RSA encryption standard PKCS #1","author":"bleichenbacher","year":"1998","journal-title":"Crypto"},{"key":"ref40","article-title":"Bleichenbacher&#x2019;s attack strikes again: Breaking PKCS#1 v1.5 in XML encryption","author":"jager","year":"2012","journal-title":"ESORICS"},{"key":"ref12","article-title":"Return of Bleichenbacher&#x2019;s oracle threat (ROBOT)","author":"b\u00f6ck","year":"2018","journal-title":"USENIX SEC"},{"key":"ref13","article-title":"Hardness of computing the most significant bits of secret keys in Diffie-Hellman and related schemes","author":"boneh","year":"1996","journal-title":"Crypto"},{"key":"ref14","article-title":"Software grand exposure: SGX cache attacks are practical","author":"brasser","year":"2017","journal-title":"WOOT"},{"key":"ref15","article-title":"Remote timing attacks are still practical","author":"brumley","year":"2011","journal-title":"ESORICS"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1145\/3152701.3152706"},{"key":"ref17","article-title":"Nemesis: Studying microarchitectural timing leaks in rudimentary CPU interrupt logic","author":"bulck","year":"2018","journal-title":"CCS"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978395"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.17487\/rfc2246"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813707"},{"key":"ref3","article-title":"New branch prediction vulnerabilities in OpenSSL and necessary software countermeasures","author":"acii\u00e7mez","year":"2007","journal-title":"IMA Int Conf"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/2991079.2991084"},{"key":"ref5","first-page":"526","article-title":"Lucky thirteen: Breaking the TLS and DTLS record protocols","author":"alfardan","year":"2013","journal-title":"IEEE SP"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/800061.808773"},{"key":"ref7","article-title":"Efficient padding oracle attacks on cryptographic hardware","author":"bardou","year":"2012","journal-title":"Crypto"},{"key":"ref49","article-title":"LURK extension version 1 for (D)TLS 1.2 authentication","author":"migault","year":"2018","journal-title":"IETF Internet-Draft draft-mglt-lurk-tls12-01"},{"key":"ref9","article-title":"Ooh aah&#x2026; just a little bit&#x201D;: A small amount of side channel can go a long way","author":"benger","year":"2014","journal-title":"CHES"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.43"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1007\/BF01457454"},{"key":"ref48","article-title":"Revisiting SSL\/TLS implementations: New Bleichenbacher side channels and attacks","author":"meyer","year":"2014","journal-title":"USENIX SEC"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-44647-8_14"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-45238-6_33"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813657"},{"key":"ref44","article-title":"Inferring fine-grained control flow inside SGX enclaves with branch shadowing","author":"lee","year":"2017","journal-title":"USENIX SEC"},{"key":"ref43","article-title":"Spectre attacks: Exploiting speculative execution","author":"kocher","year":"2019","journal-title":"IEEE SP"}],"event":{"name":"2019 IEEE Symposium on Security and Privacy (SP)","location":"San Francisco, CA, USA","start":{"date-parts":[[2019,5,19]]},"end":{"date-parts":[[2019,5,23]]}},"container-title":["2019 IEEE Symposium on Security and Privacy (SP)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8826229\/8835208\/08835216.pdf?arnumber=8835216","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,7,17]],"date-time":"2022-07-17T17:47:12Z","timestamp":1658080032000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/8835216\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,5]]},"references-count":72,"URL":"https:\/\/doi.org\/10.1109\/sp.2019.00062","relation":{},"subject":[],"published":{"date-parts":[[2019,5]]}}}