FireGuard: A Generalized Microarchitecture for Fine-Grained Security Analysis on OoO Superscalar Cores
Zhe Jiang, Sam Ainsworth, Timothy M. Jones
Abstract
High-performance security guarantees rely on hardware support. Generic programmable support for fine-grained instruction analysis has gained broad interest in the literature as a fundamental building block for the security of future processors. Yet, implementation in real out-of-order (OoO) superscalar processors presents tough challenges that cannot be explored in highly abstract simulators. We detail the challenges of implementing complex programmable pathways without critical paths or contention. We then introduce FireGuard, the first implementation of fine-grained instruction analysis on a real superscalar processor. We establish an end-to-end system, including microarchitecture, SoC, ISA and programming model. Experiments show that our solution simultaneously ensures both security and performance of the system, with parallel scalability. We examine the feasibility of building FireGuard into modern SoCs: Apple’s M1-Pro, Huawei’s Kirin-960, and Intel’s i7-12700F, where less than 1% silicon area is introduced. The Repo. of FireGuard’s source code: https://github.com/SEU-ACAL/reproduce-FireGuard-DAC-25.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 9d4f9453-53bb-4bca-85a4-50637b09c0f0Builds on3
- MineSweeper: a "clean sweep" for drop-in use-after-free preventionMárton Erdos, Sam Ainsworth, Timothy M. JonesASPLOS 2022 · 13 citations
- The Guardian Council: Parallel Programmable Hardware SecuritySam Ainsworth, Timothy M. JonesASPLOS 2020 · 6 citations
- BlueScale: a scalable memory architecture for predictable real-time computing on highly integrated SoCsZhe Jiang, Kecheng Yang, Neil C. Audsley, Nathan Fisher et al.DAC 2022 · 3 citations
Related papers
- Fractal: An Operating System Designed for Microarchitecture Reverse EngineeringJoseph Ravichandran, Mengjia YanS&P 2026
- A scalable symbolic simulation tool for low power embedded systemsSubhash Sethumurugan, Shashank Hegde, Hari Cherupalli, John SartoriDAC 2022 · 2 citations
- Interstellar: Fully Partitioned and Efficient Security Monitoring Hardware Near a Processor Core for Protecting Systems against Attacks on Privileged SoftwareYongho Song, Byeongsu Woo, Youngkwang Han, Brent ByungHoon KangCCS 2024 · 1 citation
- CrossFire: Fuzzing macOS Cross-XPU Memory on Apple SiliconJiaxun Zhu, Minghao Lin, Tingting Yin, Zechao Cai et al.CCS 2024 · 3 citations
- GuardNN: secure accelerator architecture for privacy-preserving deep learningWeizhe Hua, Muhammad Umar, Zhiru Zhang, G. Edward SuhDAC 2022 · 28 citations
