{"id":"https://openalex.org/W2931679308","doi":"https://doi.org/10.1109/sp.2019.00047","title":"The Code That Never Ran: Modeling Attacks on Speculative Evaluation","display_name":"The Code That Never Ran: Modeling Attacks on Speculative Evaluation","publication_year":2019,"publication_date":"2019-05-01","ids":{"openalex":"https://openalex.org/W2931679308","doi":"https://doi.org/10.1109/sp.2019.00047","mag":"2931679308"},"language":"en","primary_location":{"is_oa":true,"landing_page_url":"https://doi.org/10.1109/sp.2019.00047","pdf_url":"https://ieeexplore.ieee.org/ielx7/8826229/8835208/08835248.pdf","source":{"id":"https://openalex.org/S4363606603","display_name":"2022 IEEE Symposium on Security and Privacy (SP)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true},"type":"article","type_crossref":"proceedings-article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"bronze","oa_url":"https://ieeexplore.ieee.org/ielx7/8826229/8835208/08835248.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5055403961","display_name":"Craig Disselkoen","orcid":"https://orcid.org/0000-0003-4358-2963"},"institutions":[{"id":"https://openalex.org/I36258959","display_name":"University of California, San Diego","ror":"https://ror.org/0168r3w48","country_code":"US","type":"education","lineage":["https://openalex.org/I36258959"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Craig Disselkoen","raw_affiliation_strings":["Mozilla Research Internship, University of California San Diego"],"affiliations":[{"raw_affiliation_string":"Mozilla Research Internship, University of California San Diego","institution_ids":["https://openalex.org/I36258959"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5108192878","display_name":"Radha Jagadeesan","orcid":null},"institutions":[{"id":"https://openalex.org/I118353179","display_name":"DePaul University","ror":"https://ror.org/04xtx5t16","country_code":"US","type":"education","lineage":["https://openalex.org/I118353179"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Radha Jagadeesan","raw_affiliation_strings":["DePaul University"],"affiliations":[{"raw_affiliation_string":"DePaul University","institution_ids":["https://openalex.org/I118353179"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5012868882","display_name":"Alan Jeffrey","orcid":"https://orcid.org/0000-0001-6342-0318"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Alan Jeffrey","raw_affiliation_strings":["Mozilla Research"],"affiliations":[{"raw_affiliation_string":"Mozilla Research","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5089477252","display_name":"James Riely","orcid":"https://orcid.org/0000-0002-8731-1463"},"institutions":[{"id":"https://openalex.org/I118353179","display_name":"DePaul University","ror":"https://ror.org/04xtx5t16","country_code":"US","type":"education","lineage":["https://openalex.org/I118353179"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"James Riely","raw_affiliation_strings":["DePaul University"],"affiliations":[{"raw_affiliation_string":"DePaul University","institution_ids":["https://openalex.org/I118353179"]}]}],"institution_assertions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.44,"has_fulltext":true,"fulltext_origin":"pdf","cited_by_count":26,"citation_normalized_percentile":{"value":0.836753,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":93,"max":94},"biblio":{"volume":null,"issue":null,"first_page":"1238","last_page":"1255"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9999,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9999,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10054","display_name":"Parallel Computing and Optimization Techniques","score":0.9882,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10502","display_name":"Advanced Memory and Neural Computing","score":0.9858,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/speculative-execution","display_name":"Speculative execution","score":0.596426},{"id":"https://openalex.org/keywords/information-flow","display_name":"Information flow","score":0.5299455},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.42433}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.86199254},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.72379684},{"id":"https://openalex.org/C169590947","wikidata":"https://www.wikidata.org/wiki/Q47506","display_name":"Compiler","level":2,"score":0.7119848},{"id":"https://openalex.org/C141331961","wikidata":"https://www.wikidata.org/wiki/Q2164465","display_name":"Speculative execution","level":2,"score":0.596426},{"id":"https://openalex.org/C115537543","wikidata":"https://www.wikidata.org/wiki/Q165596","display_name":"Cache","level":2,"score":0.555633},{"id":"https://openalex.org/C2779136372","wikidata":"https://www.wikidata.org/wiki/Q10283002","display_name":"Information flow","level":2,"score":0.5299455},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.42433},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.42055288},{"id":"https://openalex.org/C123657996","wikidata":"https://www.wikidata.org/wiki/Q12271","display_name":"Architecture","level":2,"score":0.4187712},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.2962672},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.27238166},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.09330627},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0},{"id":"https://openalex.org/C142362112","wikidata":"https://www.wikidata.org/wiki/Q735","display_name":"Art","level":0,"score":0.0},{"id":"https://openalex.org/C153349607","wikidata":"https://www.wikidata.org/wiki/Q36649","display_name":"Visual arts","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"is_oa":true,"landing_page_url":"https://doi.org/10.1109/sp.2019.00047","pdf_url":"https://ieeexplore.ieee.org/ielx7/8826229/8835208/08835248.pdf","source":{"id":"https://openalex.org/S4363606603","display_name":"2022 IEEE Symposium on Security and Privacy (SP)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true}],"best_oa_location":{"is_oa":true,"landing_page_url":"https://doi.org/10.1109/sp.2019.00047","pdf_url":"https://ieeexplore.ieee.org/ielx7/8826229/8835208/08835248.pdf","source":{"id":"https://openalex.org/S4363606603","display_name":"2022 IEEE Symposium on Security and Privacy (SP)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true},"sustainable_development_goals":[],"grants":[],"datasets":[],"versions":[],"referenced_works_count":50,"referenced_works":["https://openalex.org/W1488349677","https://openalex.org/W1595974273","https://openalex.org/W1981404622","https://openalex.org/W199538813","https://openalex.org/W2008197313","https://openalex.org/W2043801088","https://openalex.org/W204416592","https://openalex.org/W2057503672","https://openalex.org/W206169478","https://openalex.org/W2091085450","https://openalex.org/W2093200590","https://openalex.org/W2095840868","https://openalex.org/W2097833793","https://openalex.org/W2099137371","https://openalex.org/W2102097307","https://openalex.org/W2104932676","https://openalex.org/W2106004932","https://openalex.org/W2117550587","https://openalex.org/W2122049982","https://openalex.org/W2138074470","https://openalex.org/W2152885346","https://openalex.org/W2158126684","https://openalex.org/W2158196184","https://openalex.org/W2167004912","https://openalex.org/W2174737314","https://openalex.org/W2293159724","https://openalex.org/W2492446575","https://openalex.org/W2531502343","https://openalex.org/W2564852534","https://openalex.org/W2595350342","https://openalex.org/W2738891045","https://openalex.org/W2751989915","https://openalex.org/W2779780123","https://openalex.org/W2810584084","https://openalex.org/W2888771744","https://openalex.org/W2896496024","https://openalex.org/W2904129921","https://openalex.org/W2914127544","https://openalex.org/W2963311060","https://openalex.org/W2987907651","https://openalex.org/W3099159815","https://openalex.org/W3146075203","https://openalex.org/W4234066571","https://openalex.org/W4236770701","https://openalex.org/W4236991443","https://openalex.org/W4250728693","https://openalex.org/W4255833381","https://openalex.org/W4298447450","https://openalex.org/W4312825855","https://openalex.org/W867008410"],"related_works":["https://openalex.org/W4312814274","https://openalex.org/W4285370786","https://openalex.org/W3207760230","https://openalex.org/W3083271878","https://openalex.org/W2904129921","https://openalex.org/W2536018345","https://openalex.org/W2296488620","https://openalex.org/W17155033","https://openalex.org/W1590307681","https://openalex.org/W1496222301"],"abstract_inverted_index":{"This":[0],"paper":[1],"studies":[2],"information":[3,21,119],"flow":[4,22,120],"caused":[5],"by":[6],"speculation":[7],"mechanisms":[8],"in":[9],"hardware":[10],"and":[11,34,52,91,104,106,131,137],"software.":[12],"The":[13,78,110],"Spectre":[14,103],"attack":[15],"shows":[16],"that":[17],"there":[18],"are":[19,43],"practical":[20],"attacks":[23,57,100],"which":[24,71,127],"use":[25],"an":[26],"interaction":[27],"of":[28,40,117],"dynamic":[29],"security":[30],"checks,":[31],"speculative":[32,76],"evaluation":[33],"cache":[35],"timing.":[36],"Previous":[37],"formal":[38],"models":[39],"program":[41],"execution":[42],"designed":[44,73],"to":[45,74,84,97],"capture":[46,56],"computer":[47],"architecture,":[48],"rather":[49],"than":[50],"micro-architecture,":[51],"so":[53],"do":[54],"not":[55],"such":[58,88,101,125],"as":[59,89,102],"Spectre.":[60],"In":[61],"this":[62],"paper,":[63],"we":[64],"propose":[65],"a":[66],"model":[67,75,79,111],"based":[68],"on":[69],"pomsets":[70],"is":[72,80,94],"evaluation.":[77],"abstract":[81],"with":[82],"respect":[83],"specific":[85],"micro-architectural":[86],"features,":[87],"caches":[90],"pipelines,":[92],"yet":[93],"powerful":[95],"enough":[96],"express":[98],"known":[99],"Prime+Abort,":[105],"verify":[107],"their":[108],"countermeasures.":[109],"also":[112],"allows":[113],"for":[114],"the":[115],"prediction":[116],"new":[118],"attacks.":[121],"We":[122],"derive":[123],"two":[124],"attacks,":[126],"exploit":[128],"compiler":[129],"optimizations,":[130],"validate":[132],"these":[133],"experimentally":[134],"against":[135],"gcc":[136],"clang.":[138]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W2931679308","counts_by_year":[{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":4},{"year":2021,"cited_by_count":7},{"year":2020,"cited_by_count":11},{"year":2018,"cited_by_count":1}],"updated_date":"2024-12-10T23:40:25.155052","created_date":"2019-04-11"}