[SW Security] OBFSCURO: A Commodity Obfuscation Engine on Intel SGX, Network and Distributed System Security Symposium (NDSS), Feb. 2019

OBFSCURO: A Commodity Obfuscation Engine on Intel SGX, Network and Distributed System Security Symposium (NDSS), Feb. 2019


Adil Ahmad, Byunggill Joe, Yuan Xiao, Yinqian Zhang, Insik Shin, Byoungyoung Lee


본 논문은 Trusted Computing 환경인 SGX 위에서 이론적으로 안전한 프로그램 obfuscation 기술을 제안한다. 프로그램의 데이터플로우, 컨트롤플로우가 모두 Oblivious RAM을 통하여 동작하므로, 최근 알려진 각종 사이드체널 공격 (페이지폴트 기반, 캐쉬 기반, 브랜치 프리딕터 기반 등)에도 안전하다.

0
0

International Papers

SW Security Understanding Malvertising Through Ad-Injecting Browser Extensions, International Conference on World Wide Web (WWW), May 2015
Mobile Cloud Computing Precise Execution Offloading for Applications with Dynamic Behavior in Mobile Cloud Computing, Pervasive and Mobile Computing, Apr 2015
HW Security EXTRAX: Security Extention To Extract Cache Resident Information For Snoop-based External Monitors, Design Automation and Test in Europe Conference and Exhibition (DATE), Mar 2015 (Acceptance rate: 22.4%)
SW Security Preventing Use-after-free with Dangling Pointers Nullification, Network and Distributed System Security Symposium (NDSS), Feb 2015
HW Security Efficient Kernel Integrity Monitor Design for Commodity Mobile Application Processors, Journal of Semiconductor Technology and Science, JSTS-2014-035.R1, Feb 2015
Mobile Cloud Computing Reduction of Media Servers Overload with Energy-Saving Adaptive Streaming, Global IT Conference, Jan 2015
Mobile Cloud Computing Techniques to Minimize State Transfer Costs for Dynamic Execution Offloading in Mobile Cloud Computing, IEEE Transactions on Mobile Computing, Nov 2014
Software Optimization and Reconstruction Modulo Scheduler Implementation for VLIW Processor, International SoC Design Conference (ISOCC) Nov 2014
Application Specific Architectures A Study of Burst Transfer Generation, The 9th KIPS International Conference on Ubiquitous Information Technologies and Applications(CUTE), 2014
HW Security CPU Security Extensions to Eliminate Cache Effect for Snoop-based Kernel Integrity Monitor, 51st IEEE/ACM Design Automation Conference, DAC WIP'14, Jun 2014
SW Security From Zygote to Morula: Fortifying weakened ASLR on Android, IEEE Symposium on Security and Privacy (Oakland), May 2014
Mobile Cloud Computing CMcloud: Cloud Platform for Cost-Effective Offloading of Mobile Applications , 14th IEEE/ACM International Symposium on Cluster, Cloud and Grid Computing, May 2014 (Acceptance rate: 19%)
Application Specific Architectures Improving Performance of Loops on DIAM-based VLIW Architecture, Proceedings of the 2014 SIGPLAN/SIGBED Conference on Languages, Compilers and Tools for Embedded Systems(LCTES), May 2014
Application Specific Architectures Selective Validations for Efficient Protections on Coarse-Grained Reconfigurable Architectures, Proceedings of the 24th IEEE International Conference on Application-specific Systems, Architectures and Processors (ASAP), Jun 2013 (Acceptance rate: 19.2%)
Application Specific Architectures Architecture Customization of On-chip Reconfigurable Accelerators, ACM Transactions on Design Automation of Electronic Systems (TODAES), Oct 2013
HW Security KI-Mon: A Hardware-assisted Event-triggered Monitoring Platform for Mutable Kernel Object. , 22nd USENIX Security Symposium, Aug 2013 (Acceptance rate: 15.9%)
Application Specific Architectures Efficient Utilization of Burst Data Transfers of DMA, IEMEK Journal of Embedded Systems and Applications 8 (5), 255-264, Aug 2013
Mobile Cloud Computing Automatic Generation of Efficient Performance Predictors for Smartphone Applications, USENIX Annual Technical Conference(ATC), Jun 2013 (Acceptance rate: 14.16%) Best paper candidate
Mobile Cloud Computing Fast Dynamic Execution Offloading for Efficient Mobile Cloud Computing, IEEE International Conference on Pervasive Computing and Communication(PerCom), Mar 2013 (Acceptance rate: 11.2% = 19/170(full paper), 15.9% = 27/170(total))
Application Specific Architectures Reducing Instruction Bit-Width for Low-Power VLIW Architectures, ACM Transactions on Design Automation of Electronic Systems (TODAES), Mar 2013