Lune

MICRO2025Top-tier venue

Citadel: Rethinking Memory Allocation to Safeguard Against Inter-Domain Rowhammer Exploits

Anish Saxena, Walter Wang, Alexandros Daglis

2025Year
6Citations
4Top-tier citations

Abstract

Rowhammer is a hardware security vulnerability at the heart of every DRAM-based memory system.Despite its discovery a decade ago, comprehensive defenses in current systems remain elusive, while the probability of successful attacks grows with DRAM density.Hardware-based defenses have proven ineffective due to substantial cost, delays in commercial adoption, and repeated circumventions by attackers, while more flexible software-based solutions incur major performance and memory capacity overheads or offer only limited protection.Citadel is a new memory allocator design that prevents Rowhammer-initiated security exploits by addressing the vulnerability's root cause: physical adjacency of DRAM rows.It introduces flexible security domains and isolates them in physically disjoint memory regions, guaranteeing security by design.On a server system, Citadel supports thousands of security domains at a modest 7.2% average memory overhead and no performance loss, while remaining readily deployable across legacy, contemporary, and future platforms.In contrast, recent domain isolation schemes fail to support many workload scenarios due to excessive overhead and incur 4-6× higher overhead for supported scenarios.

Ask about this paper

Ask your agent about it.

Lune has read the top-tier papers around this one, so every answer names the papers it rests on.

Questions to start from

Your agent calls

Lunesearch_papers

Ask in Lune

Free to start. No credit card required.

lune papers get b2d5e2de-f2a0-44ed-a3bd-4697589b59e6

Cited by top-tier papers4

Ask how each one uses it

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines