{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,26]],"date-time":"2025-12-26T07:08:44Z","timestamp":1766732924929,"version":"3.41.2"},"reference-count":36,"publisher":"World Scientific Pub Co Pte Ltd","issue":"02","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["J CIRCUIT SYST COMP"],"published-print":{"date-parts":[[2023,1,30]]},"abstract":"<jats:p> Cache side channel attacks have been used to extract users\u2019 sensitive information such as cryptographic keys. In particular, the reuse-based cache side channel attacks exploit the shared code or data between the attacker and the victim, which can steal the secret with high speed and precision. It has threatened not only the host level but also the cloud level severely. Previous defensive measures are either not flexible enough, or cause a high performance or storage overhead. In this work, we present a dynamic first access isolation cache that eliminates reuse-based cache side channel attacks by providing fine grained first access isolation to overcome these problems. First of all, there are [Formula: see text] bits in each cache line to record the access information and prevent the first time cache hit state brought by the victim from being utilized by the attacker while keeping data shared. Second, we use hierarchy security levels and domains to achieve flexible one way isolation between different domains, and the domains can be a group of processes, a single process, or even a fraction of code. Finally, the monitoring-driven dynamic scheduling mechanism can change the level of a domain at run time, which improves the robustness of this new design. The solution works at all the cache levels and defends against attackers running both on local and cloud. Our implementation in the Zsim simulator demonstrates that the performance overhead for standard performance evaluation corporation 2017 is less than 0.1%, and 0.21% for the multi-thread benchmarks. It performs better than the original first time miss design because of the one way isolation in our design. The only hardware modification is the [Formula: see text] bits per cache line, and several security registers per hardware context, which only brings 3.71% storage overhead. <\/jats:p>","DOI":"10.1142\/s0218126623500263","type":"journal-article","created":{"date-parts":[[2022,7,26]],"date-time":"2022-07-26T09:28:48Z","timestamp":1658827728000},"source":"Crossref","is-referenced-by-count":1,"title":["Dynamic First Access Isolation Cache to Eliminate Reuse-Based Cache Side Channel Attacks"],"prefix":"10.1142","volume":"32","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-5556-0342","authenticated-orcid":false,"given":"Chong","family":"Wang","sequence":"first","affiliation":[{"name":"National Digital Switching System Engineering and Technological Research Center, Information Engineering University, 7 Jianxuejie, Zhengzhou, He\u2019nan, P. R. China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hong","family":"Yu","sequence":"additional","affiliation":[{"name":"National Digital Switching System Engineering and Technological Research Center, Information Engineering University, 7 Jianxuejie, Zhengzhou, He\u2019nan, P. R. China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shuai","family":"Wei","sequence":"additional","affiliation":[{"name":"National Digital Switching System Engineering and Technological Research Center, Information Engineering University, 7 Jianxuejie, Zhengzhou, He\u2019nan, P. R. China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ke","family":"Song","sequence":"additional","affiliation":[{"name":"National Digital Switching System Engineering and Technological Research Center, Information Engineering University, 7 Jianxuejie, Zhengzhou, He\u2019nan, P. R. China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"219","published-online":{"date-parts":[[2022,8,19]]},"reference":[{"key":"S0218126623500263BIB001","first-page":"719","volume-title":"23rd USENIX Security Symp. (USENIX Security 14)","author":"Yarom Y.","year":"2014"},{"key":"S0218126623500263BIB002","doi-asserted-by":"crossref","first-page":"279","DOI":"10.1007\/978-3-319-40667-1_14","volume-title":"Int. Conf. Detection of Intrusions and Malware, and Vulnerability Assessment","author":"Gruss D.","year":"2016"},{"key":"S0218126623500263BIB003","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.43"},{"key":"S0218126623500263BIB005","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00002"},{"key":"S0218126623500263BIB006","doi-asserted-by":"crossref","first-page":"591","DOI":"10.1109\/SP.2015.42","volume-title":"2015 IEEE Symp. Security and Privacy","author":"Irazoqui G.","year":"2015"},{"key":"S0218126623500263BIB007","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-11379-1_15"},{"key":"S0218126623500263BIB008","doi-asserted-by":"crossref","first-page":"211","DOI":"10.1109\/TMSCS.2016.2550438","volume":"2","author":"Gulmezoglu B.","year":"2016","journal-title":"IEEE Trans. Multi Scale Comput. Syst."},{"key":"S0218126623500263BIB009","first-page":"1","volume-title":"11th USENIX Workshop on Offensive Technologies","author":"Brasser F.","year":"2017"},{"key":"S0218126623500263BIB012","first-page":"737","volume-title":"2014 IEEE Fourth Int. Conf. Big Data and Cloud Computing","author":"Irazoqui G.","year":"2014"},{"key":"S0218126623500263BIB013","first-page":"549","volume-title":"25th USENIX Security Symp. (USENIX Security 16)","author":"Lipp M.","year":"2016"},{"key":"S0218126623500263BIB014","doi-asserted-by":"publisher","DOI":"10.1109\/MICRO.2014.28"},{"key":"S0218126623500263BIB015","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00042"},{"key":"S0218126623500263BIB016","doi-asserted-by":"publisher","DOI":"10.1109\/MICRO.2018.00068"},{"key":"S0218126623500263BIB017","doi-asserted-by":"publisher","DOI":"10.1145\/3307650.3322246"},{"key":"S0218126623500263BIB018","first-page":"1","volume-title":"Network and Distributed Systems Security Symp.","author":"Tan Q.","year":"2020"},{"key":"S0218126623500263BIB019","first-page":"675","volume-title":"28th USENIX Security Symp. (USENIX Security 19)","author":"Werner M.","year":"2019"},{"key":"S0218126623500263BIB021","first-page":"1","volume-title":"Proc. 53rd Annual Design Automation Conf.","author":"Wang Y.","year":"2016"},{"key":"S0218126623500263BIB022","first-page":"451","volume-title":"29th USENIX Security Symp. (USENIX Security 20)","author":"Dessouky G.","year":"2020"},{"key":"S0218126623500263BIB023","first-page":"57","volume-title":"Proc. 38th Annual Int. Symp. Computer Architecture","author":"Sanchez D.","year":"2011"},{"key":"S0218126623500263BIB024","doi-asserted-by":"crossref","first-page":"403","DOI":"10.1145\/3453688.3461481","volume-title":"Proc. 2021 on Great Lakes Symp. VLSI","author":"Guo Y.","year":"2021"},{"key":"S0218126623500263BIB025","first-page":"494","volume-title":"Proc. 34th Annual Int. Symp. Computer Architecture","author":"Wang Z.","year":"2007"},{"key":"S0218126623500263BIB026","doi-asserted-by":"crossref","first-page":"974","DOI":"10.1109\/MICRO.2018.00083","volume-title":"2018 51st Annual IEEE\/ACM Int. Symp. Microarchitecture (MICRO)","author":"Kiriansky V.","year":"2018"},{"key":"S0218126623500263BIB028","doi-asserted-by":"crossref","first-page":"406","DOI":"10.1109\/HPCA.2016.7446082","volume-title":"2016 IEEE Int. Symp. High Performance Computer Architecture (HPCA)","author":"Liu F.","year":"2016"},{"key":"S0218126623500263BIB029","first-page":"1","volume-title":"Proc. SYSTOR 2009: The Israeli Experimental Systems Conf.","author":"Jin K.","year":"2009"},{"key":"S0218126623500263BIB030","doi-asserted-by":"crossref","first-page":"15","DOI":"10.1145\/2287076.2287081","volume-title":"Proc. 21st Int. Symp. High-Performance Parallel and Distributed Computing","author":"Sharma P.","year":"2012"},{"key":"S0218126623500263BIB031","first-page":"83","volume-title":"26th USENIX Security Symp. (USENIX Security 17)","author":"Garc\u00eda C. P.","year":"2017"},{"key":"S0218126623500263BIB032","doi-asserted-by":"crossref","first-page":"137","DOI":"10.3233\/JCS-181136","volume":"27","author":"Blazy S.","year":"2019","journal-title":"J. Comput. Secur."},{"key":"S0218126623500263BIB033","first-page":"159","volume-title":"Int. Conf. Cryptology and Information Security in Latin America","author":"Bernstein D. J.","year":"2012"},{"key":"S0218126623500263BIB034","doi-asserted-by":"crossref","first-page":"623","DOI":"10.1109\/SP.2015.44","volume-title":"2015 IEEE Symp. Security and Privacy","author":"Andrysco M.","year":"2015"},{"key":"S0218126623500263BIB035","doi-asserted-by":"crossref","first-page":"1021","DOI":"10.1109\/SP40000.2020.00074","volume-title":"2020 IEEE Symp. Security and Privacy (SP)","author":"Daniel L.-A.","year":"2020"},{"key":"S0218126623500263BIB037","first-page":"1","volume-title":"49th Int. Conf. Parallel Processing","author":"Ramkrishnan K.","year":"2020"},{"key":"S0218126623500263BIB038","first-page":"375","volume-title":"2021 ACM\/IEEE 48th Annual Int. Symp. Computer Architecture (ISCA)","author":"Ojha D.","year":"2021"},{"key":"S0218126623500263BIB039","first-page":"648","volume-title":"2020 IEEE 38th Int. Conf. Computer Design (ICCD)","author":"Wang H.","year":"2020"},{"key":"S0218126623500263BIB040","first-page":"1","volume-title":"Proc. 15th European Conf. Computer Systems","author":"Lee D.","year":"2020"},{"key":"S0218126623500263BIB041","doi-asserted-by":"crossref","first-page":"83871","DOI":"10.1109\/ACCESS.2020.2988370","volume":"8","author":"Mushtaq M.","year":"2020","journal-title":"IEEE Access"},{"key":"S0218126623500263BIB042","doi-asserted-by":"publisher","DOI":"10.1109\/DDECS52668.2021.9417071"}],"container-title":["Journal of Circuits, Systems and Computers"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.worldscientific.com\/doi\/pdf\/10.1142\/S0218126623500263","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,1,6]],"date-time":"2023-01-06T02:39:04Z","timestamp":1672972744000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.worldscientific.com\/doi\/10.1142\/S0218126623500263"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,8,19]]},"references-count":36,"journal-issue":{"issue":"02","published-print":{"date-parts":[[2023,1,30]]}},"alternative-id":["10.1142\/S0218126623500263"],"URL":"https:\/\/doi.org\/10.1142\/s0218126623500263","relation":{},"ISSN":["0218-1266","1793-6454"],"issn-type":[{"type":"print","value":"0218-1266"},{"type":"electronic","value":"1793-6454"}],"subject":[],"published":{"date-parts":[[2022,8,19]]},"article-number":"2350026"}}