{"id":"https://openalex.org/W2532499458","doi":"https://doi.org/10.1145/2976749.2978356","title":"Prefetch Side-Channel Attacks","display_name":"Prefetch Side-Channel Attacks","publication_year":2016,"publication_date":"2016-10-24","ids":{"openalex":"https://openalex.org/W2532499458","doi":"https://doi.org/10.1145/2976749.2978356","mag":"2532499458"},"language":"en","primary_location":{"is_oa":false,"landing_page_url":"https://doi.org/10.1145/2976749.2978356","pdf_url":null,"source":{"id":"https://openalex.org/S4363608815","display_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},"type":"article","type_crossref":"proceedings-article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5066874310","display_name":"Daniel Gruss","orcid":"https://orcid.org/0000-0002-7977-3246"},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"funder","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Daniel Gruss","raw_affiliation_strings":["Graz University of Technology, Graz, Austria"],"affiliations":[{"raw_affiliation_string":"Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5013155428","display_name":"Cl\u00e9mentine Maurice","orcid":"https://orcid.org/0000-0002-8896-9494"},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"funder","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Cl\u00e9mentine Maurice","raw_affiliation_strings":["Graz University of Technology, Graz, Austria"],"affiliations":[{"raw_affiliation_string":"Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5041121396","display_name":"Anders Fogh","orcid":null},"institutions":[],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Anders Fogh","raw_affiliation_strings":["G DATA Advanced Analytics, Bochum, Germany"],"affiliations":[{"raw_affiliation_string":"G DATA Advanced Analytics, Bochum, Germany","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5056935116","display_name":"Moritz Lipp","orcid":null},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"funder","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Moritz Lipp","raw_affiliation_strings":["Graz University of Technology, Graz, Austria"],"affiliations":[{"raw_affiliation_string":"Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5015437576","display_name":"Stefan Mangard","orcid":"https://orcid.org/0000-0001-9650-8041"},"institutions":[{"id":"https://openalex.org/I4092182","display_name":"Graz University of Technology","ror":"https://ror.org/00d7xrm67","country_code":"AT","type":"funder","lineage":["https://openalex.org/I4092182"]}],"countries":["AT"],"is_corresponding":false,"raw_author_name":"Stefan Mangard","raw_affiliation_strings":["Graz University of Technology, Graz, Austria"],"affiliations":[{"raw_affiliation_string":"Graz University of Technology, Graz, Austria","institution_ids":["https://openalex.org/I4092182"]}]}],"institution_assertions":[],"countries_distinct_count":2,"institutions_distinct_count":1,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":8.959,"has_fulltext":true,"fulltext_origin":"ngrams","cited_by_count":176,"citation_normalized_percentile":{"value":0.999894,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":99,"max":100},"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9914,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9832,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/instruction-prefetch","display_name":"Instruction prefetch","score":0.7103649},{"id":"https://openalex.org/keywords/address-space","display_name":"Address space","score":0.6224748},{"id":"https://openalex.org/keywords/code-reuse","display_name":"Code reuse","score":0.5934717},{"id":"https://openalex.org/keywords/sysfs","display_name":"sysfs","score":0.57952565},{"id":"https://openalex.org/keywords/x86","display_name":"x86","score":0.52528846},{"id":"https://openalex.org/keywords/kernel","display_name":"Kernel (algebra)","score":0.43276066}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8753306},{"id":"https://openalex.org/C133588205","wikidata":"https://www.wikidata.org/wiki/Q28455645","display_name":"Instruction prefetch","level":3,"score":0.7103649},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.64103466},{"id":"https://openalex.org/C144240696","wikidata":"https://www.wikidata.org/wiki/Q367204","display_name":"Address space","level":2,"score":0.6224748},{"id":"https://openalex.org/C2778583558","wikidata":"https://www.wikidata.org/wiki/Q771245","display_name":"Code reuse","level":3,"score":0.5934717},{"id":"https://openalex.org/C90307666","wikidata":"https://www.wikidata.org/wiki/Q1932562","display_name":"sysfs","level":3,"score":0.57952565},{"id":"https://openalex.org/C553261973","wikidata":"https://www.wikidata.org/wiki/Q14579","display_name":"Linux kernel","level":2,"score":0.5455548},{"id":"https://openalex.org/C170723468","wikidata":"https://www.wikidata.org/wiki/Q182933","display_name":"x86","level":3,"score":0.52528846},{"id":"https://openalex.org/C25344961","wikidata":"https://www.wikidata.org/wiki/Q192726","display_name":"Virtual machine","level":2,"score":0.48418978},{"id":"https://openalex.org/C76399640","wikidata":"https://www.wikidata.org/wiki/Q189401","display_name":"Virtual memory","level":4,"score":0.44391963},{"id":"https://openalex.org/C74193536","wikidata":"https://www.wikidata.org/wiki/Q574844","display_name":"Kernel (algebra)","level":2,"score":0.43276066},{"id":"https://openalex.org/C544833334","wikidata":"https://www.wikidata.org/wiki/Q2005","display_name":"JavaScript","level":2,"score":0.4214772},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.38255405},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.34474927},{"id":"https://openalex.org/C176649486","wikidata":"https://www.wikidata.org/wiki/Q2308807","display_name":"Memory management","level":3,"score":0.1984568},{"id":"https://openalex.org/C115537543","wikidata":"https://www.wikidata.org/wiki/Q165596","display_name":"Cache","level":2,"score":0.17979833},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.16292986},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.15824506},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C114614502","wikidata":"https://www.wikidata.org/wiki/Q76592","display_name":"Combinatorics","level":1,"score":0.0},{"id":"https://openalex.org/C136085584","wikidata":"https://www.wikidata.org/wiki/Q910289","display_name":"Overlay","level":2,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"is_oa":false,"landing_page_url":"https://doi.org/10.1145/2976749.2978356","pdf_url":null,"source":{"id":"https://openalex.org/S4363608815","display_name":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},{"is_oa":false,"landing_page_url":"https://zenodo.org/record/3495544","pdf_url":null,"source":{"id":"https://openalex.org/S4306400562","display_name":"Zenodo (CERN European Organization for Nuclear Research)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I67311998","host_organization_name":"European Organization for Nuclear Research","host_organization_lineage":["https://openalex.org/I67311998"],"host_organization_lineage_names":["European Organization for Nuclear Research"],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, justice, and strong institutions","score":0.68}],"grants":[],"datasets":["https://openalex.org/W3208385864"],"versions":[],"referenced_works_count":40,"referenced_works":["https://openalex.org/W1275041561","https://openalex.org/W1427174644","https://openalex.org/W1447175589","https://openalex.org/W1488058190","https://openalex.org/W1494212869","https://openalex.org/W1503814339","https://openalex.org/W1555558540","https://openalex.org/W1592889082","https://openalex.org/W1605557845","https://openalex.org/W1613874182","https://openalex.org/W173413620","https://openalex.org/W1890449996","https://openalex.org/W1934458198","https://openalex.org/W1963947298","https://openalex.org/W1964281299","https://openalex.org/W1964389195","https://openalex.org/W1981260134","https://openalex.org/W1996007243","https://openalex.org/W2001759130","https://openalex.org/W2061354941","https://openalex.org/W2094916391","https://openalex.org/W2098010707","https://openalex.org/W2112968990","https://openalex.org/W2126132644","https://openalex.org/W2157116240","https://openalex.org/W2163563130","https://openalex.org/W2172060328","https://openalex.org/W2173153107","https://openalex.org/W2175157372","https://openalex.org/W2296391043","https://openalex.org/W2301588800","https://openalex.org/W2337480911","https://openalex.org/W2350778671","https://openalex.org/W2464738545","https://openalex.org/W2473598730","https://openalex.org/W2529582363","https://openalex.org/W2564856904","https://openalex.org/W2949382771","https://openalex.org/W3024062961","https://openalex.org/W4242926647"],"related_works":["https://openalex.org/W4214644412","https://openalex.org/W3033191713","https://openalex.org/W2942656648","https://openalex.org/W2538455664","https://openalex.org/W2532499458","https://openalex.org/W2467393770","https://openalex.org/W2380718268","https://openalex.org/W2152082095","https://openalex.org/W1851018411","https://openalex.org/W1447175589"],"abstract_inverted_index":{"Modern":[0],"operating":[1],"systems":[2,232],"use":[3],"hardware":[4],"support":[5],"to":[6,19,30,49,70,94,172,175,204,229],"protect":[7,230],"against":[8,41],"control-flow":[9],"hijacking":[10],"attacks":[11,43,52,83,140,213],"such":[12],"as":[13],"code-injection":[14],"attacks.":[15,184],"Typically,":[16],"write":[17],"access":[18,69],"executable":[20],"pages":[21,33],"is":[22,28,47],"prevented":[23],"and":[24,98,108,135,163,194,216],"kernel":[25,31,63,109,164,206,215,227],"mode":[26],"execution":[27],"restricted":[29],"code":[32],"only.":[34],"However,":[35],"current":[36],"CPUs":[37],"provide":[38],"no":[39],"protection":[40],"code-reuse":[42],"like":[44],"ROP.":[45],"ASLR":[46,207],"used":[48],"prevent":[50],"these":[51,142],"by":[53,104],"making":[54],"all":[55],"addresses":[56,130,174],"unpredictable":[57],"for":[58,128],"an":[59,148,234],"attacker.":[60],"Hence,":[61],"the":[62,101,126,152],"security":[64],"relies":[65],"fundamentally":[66],"on":[67,120,131,178,192,208,214],"preventing":[68],"address":[71,96],"information.":[72],"We":[73,137,185,220],"introduce":[74],"Prefetch":[75,111],"Side-Channel":[76],"Attacks,":[77],"a":[78,157,222],"new":[79,223],"class":[80],"of":[81,151,156,225,236],"generic":[82],"exploiting":[84,141],"major":[85],"weaknesses":[86],"in":[87],"prefetch":[88],"instructions.":[89],"This":[90],"allows":[91],"unprivileged":[92,189],"attackers":[93],"obtain":[95],"information":[97],"thus":[99],"compromise":[100],"entire":[102],"system":[103],"defeating":[105,159],"SMAP,":[106],"SMEP,":[107],"ASLR.":[110,166],"can":[112],"fetch":[113],"inaccessible":[114],"privileged":[115],"memory":[116],"into":[117],"various":[118],"caches":[119],"Intel":[121,133],"x86.":[122],"It":[123],"also":[124],"leaks":[125],"translation-level":[127],"virtual":[129,171,198],"both":[132,160],"x86":[134],"ARMv8-A.":[136],"build":[138],"three":[139],"properties.":[143],"Our":[144,167],"first":[145],"attack":[146,169],"retrieves":[147],"exact":[149],"image":[150],"full":[153],"paging":[154],"hierarchy":[155],"process,":[158],"user":[161,190],"space":[162,165],"second":[168],"resolves":[170],"physical":[173],"bypass":[176],"SMAP":[177],"64-bit":[179],"Linux":[180,193],"systems,":[181],"enabling":[182,211],"ret2dir":[183],"demonstrate":[186,202],"this":[187],"from":[188],"programs":[191],"inside":[195],"Amazon":[196],"EC2":[197],"machines.":[199],"Finally,":[200],"we":[201],"how":[203],"defeat":[205],"Windows":[209],"10,":[210],"ROP":[212],"driver":[217],"binary":[218],"code.":[219],"propose":[221],"form":[224],"strong":[226],"isolation":[228],"commodity":[231],"incuring":[233],"overhead":[235],"only":[237],"0.06-5.09%.":[238]},"abstract_inverted_index_v3":null,"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W2532499458","counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":16},{"year":2023,"cited_by_count":14},{"year":2022,"cited_by_count":19},{"year":2021,"cited_by_count":20},{"year":2020,"cited_by_count":24},{"year":2019,"cited_by_count":35},{"year":2018,"cited_by_count":25},{"year":2017,"cited_by_count":17},{"year":2016,"cited_by_count":5}],"updated_date":"2025-03-30T03:30:09.067236","created_date":"2016-10-28"}