论文标题
作为侧通道泄漏度量的最大泄漏的案例
A Case for Maximal Leakage as a Side Channel Leakage Metric
论文作者
论文摘要
侧渠道代表了广泛的安全漏洞,这些漏洞已被证明存在于许多应用中。由于完全消除侧渠道通常会导致高高的开销,因此需要在成本和泄漏之间进行原则上的权衡。在本文中,我们为使用最大泄漏来分析此类权衡。最大泄漏是设计用于侧通道的可解释的泄漏公制。我们介绍了先前工作中最大泄漏的最有用的理论特性,并从经验上证明,诸如相互信息和通道容量之类的常规指标低估了侧向通道构成的威胁,而最大泄漏则没有。我们还研究了使用最大泄漏作为优化问题的成本裂变权衡。我们证明,不仅可以将此问题表示为线性程序,而且还可以使用最多两个确定性方案的组合来实现最佳保护。
Side channels represent a broad class of security vulnerabilities that have been demonstrated to exist in many applications. Because completely eliminating side channels often leads to prohibitively high overhead, there is a need for a principled trade-off between cost and leakage. In this paper, we make a case for the use of maximal leakage to analyze such trade-offs. Maximal leakage is an operationally interpretable leakage metric designed for side channels. We present the most useful theoretical properties of maximal leakage from previous work and demonstrate empirically that conventional metrics such as mutual information and channel capacity underestimate the threat posed by side channels whereas maximal leakage does not. We also study the cost-leakage trade-off as an optimization problem using maximal leakage. We demonstrate that not only can this problem be represented as a linear program, but also that optimal protection can be achieved using a combination of at most two deterministic schemes.