Bridge: A Leak-Free Hardware-Software Architecture for Parallel Embedded Systems

Gongqi Huang, Leon Schuermann, Amit Levy

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

Embedded and Internet of Things (IoT) devices are increasingly ubiquitous and process increasingly sensitive data. As a result, such devices must uphold security in addition to functional safety to avoid unintended information leaks. To react this change of environment, developers deploy conventional mechanisms such as memory isolation and priority scheduling to achieve aforementioned goals. While such techniques are resilient against attacks that endanger a device’s functional safety, they are less effective in maintaining security as they ignore information leaks through timing channels, such as through scheduling policy and implicit microarchitectural state. Recent advances in timing-safe systems, in turn, limit themselves to time-shared systems without parallelism. This is problematic in the face of responsiveness and real-time constraints which are often found in embedded devices. This paper explores timing-safety in the space of parallel systems. We introduce Bridge, a new system architecture featuring multiple tasks with different security concerns that can execute in parallel without leaking information due to timing interference.

Original languageAmerican English
Title of host publicationKISV 2024 - Proceedings of the 2nd Workshop on Kernel Isolation, Safety and Verification
PublisherAssociation for Computing Machinery, Inc
Pages16-22
Number of pages7
ISBN (Electronic)9798400713019
DOIs
StatePublished - Nov 4 2024
Event2nd Workshop on Kernel Isolation, Safety and Verification, KISV 2024 - Austin, United States
Duration: Nov 3 2024Nov 3 2024

Publication series

NameKISV 2024 - Proceedings of the 2nd Workshop on Kernel Isolation, Safety and Verification

Conference

Conference2nd Workshop on Kernel Isolation, Safety and Verification, KISV 2024
Country/TerritoryUnited States
CityAustin
Period11/3/2411/3/24

ASJC Scopus subject areas

  • Computer Networks and Communications

Fingerprint

Dive into the research topics of 'Bridge: A Leak-Free Hardware-Software Architecture for Parallel Embedded Systems'. Together they form a unique fingerprint.

Cite this