DocumentCode :
573614
Title :
Stream cipher hash based execution monitoring (SCHEM) framework for intrusion detection on embedded processors
Author :
Chaudhari, Ameya ; Abraham, Jacob
Author_Institution :
Comput. Eng. Res. Center, Univ. of Texas at Austin, Austin, TX, USA
fYear :
2012
fDate :
27-29 June 2012
Firstpage :
162
Lastpage :
167
Abstract :
Hardware based execution monitoring of applications holds the promise for an effective and tamper-proof solution for intrusion detection on processor. This paper presents a practical hardware based intrusion detection framework which uses stream cipher based hashing techniques for runtime control flow and instruction integrity monitoring. This framework enables accurate monitoring of the control flow of a process with an instruction level granularity. Additional hardware required for implementation of our framework has very low power and area overheads which makes it possible to practically implement execution monitoring even on embedded processors. Our technique achieves an order of magnitude lower power overhead compared to other similar techniques. Furthermore, our implementation of the developed framework has a low intrusion detection latency, which enables us to verify the control flow integrity of the executing code before the violating control flow instructions are retired from the processor pipeline.
Keywords :
cryptography; embedded systems; microprocessor chips; pipeline processing; system monitoring; SCHEM framework; code execution; control flow instructions; control flow integrity verification; control flow monitoring; embedded processors; execution monitoring; hardware based execution monitoring; hardware based intrusion detection framework; instruction integrity monitoring; instruction level granularity; intrusion detection latency; low power overheads; pipeline processing; runtime control flow; stream cipher hash based execution monitoring; tamper-proof solution; Engines; Monitoring; Program processors; Registers; Runtime;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
On-Line Testing Symposium (IOLTS), 2012 IEEE 18th International
Conference_Location :
Sitges
Print_ISBN :
978-1-4673-2082-5
Type :
conf
DOI :
10.1109/IOLTS.2012.6313864
Filename :
6313864
Link To Document :
بازگشت