Indistinguishability Prevents Scheduler Side Channels in Real-Time Systems
Chien-Ying Chen, Debopam Sanyal, Sibin Mohan
Abstract
Scheduler side-channels can leak critical information in real-time systems, thus posing serious threats to many safety-critical applications. The main culprit is the inherent determinism in the runtime timing behavior of such systems, e.g., the (expected) periodic behavior of critical tasks. In this paper, we introduce the notion of "schedule indistinguishability/", inspired by work in differential privacy, that introduces diversity into the schedules of such systems while offering analyzable security guarantees. We achieve this by adding a sufficiently large (controlled) noise to the task schedules in order to break their deterministic execution patterns. An "epsilon-Scheduler" then implements schedule indistinguishability in real-time Linux. We evaluate our system using two real applications: (a) an autonomous rover running on a real hardware platform (Raspberry Pi) and (b) a video streaming application that sends data across large geographic distances. Our results show that the epsilon-Scheduler offers better protection against scheduler side-channel attacks in real-time systems while still maintaining good performance and quality-of-service(QoS) requirements.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext a7161c0f-c612-4d7a-b5c5-5d7025dafedaCited by top-tier papers1
Ask how each one uses itBuilds on2
- KeyDrown: Eliminating Software-Based Keystroke Timing Side-Channel AttacksMichael Schwarz, Moritz Lipp, Daniel Gruss, Samuel Weiser et al.NDSS 2018 · 68 citations
- Blinder: Partition-Oblivious Hierarchical SchedulingMan-Ki Yoon, Mengqi Liu, Hao Chen, Jung-Eun Kim et al.USENIX Security 2021 · 7 citations
Related papers
- O-TSN: Enabling Oblivious Traffic Switch for Time-Sensitive NetworkingBo Zhang, Helei Cui, Cong Wang, Xingliang Yuan et al.INFOCOM 2026
- A Framework for Differential Privacy Against Timing AttacksZachary Ratliff, Salil P. VadhanCCS 2024 · 3 citations
- Privacy-and-Utility-Aware Publishing of SchedulesMaike Basmer, Stephan A. Fahrenkrog-Petersen, Ali Kaan Tutak, Arik Senderovich et al.AAAI 2025
- NetShaper: A Differentially Private Network Side-Channel Mitigation SystemAmir Sabzi, Rut Vora, Swati Goswami, Margo I. Seltzer et al.USENIX Security 2024 · 7 citations
- Privacy Attacks on Schedule-Driven DataStephan A. Fahrenkrog-Petersen, Arik Senderovich, Alexandra Tichauer, Ali Kaan Tutak et al.AAAI 2023 · 2 citations
