Lune

USENIX Security2016Top-tier venue

Sanctum: Minimal Hardware Extensions for Strong Software Isolation

Victor Costan, Ilia A. Lebedev, Srinivas Devadas

2016Year
649Citations
118Top-tier citations

Abstract

Sanctum offers the same promise as SGX, namely strong provable isolation of software modules running concurrently and sharing resources, but protects against an important class of additional software attacks that infer private information from a program's memory access patterns. We follow a principled approach to eliminating entire attack surfaces through isolation, rather than plugging attack-specific privacy leaks.

Sanctum demonstrates that strong software isolation is achievable with a surprisingly small set of minimally invasive hardware changes, and a very reasonable overhead. Sanctum does not change any major CPU building block. Instead, we add hardware at the interfaces between building blocks, without impacting cycle time.

Our prototype shows a 2% area increase in a Rocket RISC-V core. Over a set of benchmarks, Sanctum's worst observed overhead for isolated execution is 15.1% over an idealized insecure baseline, and 2.7% average overhead over a representative insecure baseline.

Ask about this paper

Ask your agent about it.

Lune has read the top-tier papers around this one, so every answer names the papers it rests on.

Questions to start from

Your agent calls

Lunesearch_papers

Ask in Lune

Free to start. No credit card required.

lune papers get f08135ca-45e5-4fda-a6de-868616d1161f

Cited by top-tier papers118

Ask how each one uses it

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines