科研成果详情

题名Analysis of mitigation measures for timing attacks in mobile-cloud offloading systems
作者
发表日期2016
会议名称18th International GI/ITG Conference on Measurement, Modelling and Evaluation of Computing Systems and Dependability and Fault Tolerance
会议录名称Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
ISSN0302-9743
卷号9629
页码168-182
会议日期4 April 2016- 6 April 2016
会议地点Munster
摘要

Mobile cloud offloading has been proposed to migrate complex computations from mobile devices to powerful servers. While this may be beneficial from the performance and energy perspective, it certainly exhibits new challenges in terms of security due to increased data transmission over networks with potentially unknown threats. Among possible security issues are timing attacks which are not prevented by traditional cryptographic security. Usually random delays are introduced in such systems as a popular countermeasure. Random delays are easily deployed even if the source code of the application is not at hand. While the benefits are obvious, a random delay introduces a penalty that should be minimized. The challenge is to select the distribution from which to draw the random delays and to set mean and variance in a suitable way such that the system security is maximized and the overhead is minimized. To tackle this problem, we have implemented a prototype that allows us to compare the impact of different random distributions on the expected success of timing attacks. Based on our model, the effect of random delay padding on the performance and security perspective of offloading systems is analyzed in terms of response time and optimal rekeying rate. We found that the variance of random delays is the primary influencing factor to the mitigation effect. Based on our approach, the system performance and security can be improved as follows. Starting from the mission time of a computing job one can select a desired padding policy. From this the optimal rekeying interval can be determined for the offloading system.

关键词Mobile cloud offloading Random delays Security attributes Timing side-channels
DOI10.1007/978-3-319-31559-1_14
URL查看来源
语种英语English
Scopus入藏号2-s2.0-84962322651
引用统计
文献类型会议论文
条目标识符https://repository.uic.edu.cn/handle/39GCC9TT/12269
专题个人在本单位外知识产出
通讯作者Meng, Tianhui
作者单位
Department of Mathematics and Computer Science,Freie Universität Berlin,Berlin,Takustr. 9,14195,Germany
推荐引用方式
GB/T 7714
Meng, Tianhui,Wolter, Katinka. Analysis of mitigation measures for timing attacks in mobile-cloud offloading systems[C], 2016: 168-182.
条目包含的文件
条目无相关文件。
个性服务
查看访问统计
谷歌学术
谷歌学术中相似的文章
[Meng, Tianhui]的文章
[Wolter, Katinka]的文章
百度学术
百度学术中相似的文章
[Meng, Tianhui]的文章
[Wolter, Katinka]的文章
必应学术
必应学术中相似的文章
[Meng, Tianhui]的文章
[Wolter, Katinka]的文章
相关权益政策
暂无数据
收藏/分享
所有评论 (0)
暂无评论
 

除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。