Applied Sciences (Feb 2020)

Real-Time Detection for Cache Side Channel Attack using Performance Counter Monitor

  • Jonghyeon Cho,
  • Taehun Kim,
  • Soojin Kim,
  • Miok Im,
  • Taehyun Kim,
  • Youngjoo Shin

DOI
https://doi.org/10.3390/app10030984
Journal volume & issue
Vol. 10, no. 3
p. 984

Abstract

Read online

Cache side channel attacks extract secret information by monitoring the cache behavior of a victim. Normally, this attack targets an L3 cache, which is shared between a spy and a victim. Hence, a spy can obtain secret information without alerting the victim. To resist this attack, many detection techniques have been proposed. However, these approaches have limitations as they do not operate in real time. This article proposes a real-time detection method against cache side channel attacks. The proposed technique performs the detection of cache side channel attacks immediately after observing a variation of the CPU counters. For this, Intel PCM (Performance Counter Monitor) and machine learning algorithms are used to measure the value of the CPU counters. Throughout the experiment, several PCM counters recorded changes during the attack. From these observations, a detecting program was implemented by using these counters. The experimental results show that the proposed detection technique displays good performance for real-time detection in various environments.

Keywords