Backdoor attacks and countermeasures on deep learning: A comprehensive review

Y Gao, BG Doan, Z Zhang, S Ma, J Zhang, A Fu… - arxiv preprint arxiv …, 2020 - arxiv.org
This work provides the community with a timely comprehensive review of backdoor attacks
and countermeasures on deep learning. According to the attacker's capability and affected …

Timing side-channel attacks and countermeasures in CPU microarchitectures

J Zhang, C Chen, J Cui, K Li - ACM Computing Surveys, 2024 - dl.acm.org
Microarchitectural vulnerabilities, such as Meltdown and Spectre, exploit subtle
microarchitecture state to steal the user's secret data and even compromise the operating …

Sok: Sgx. fail: How stuff gets exposed

S Van Schaik, A Seto, T Yurek, A Batori… - … IEEE Symposium on …, 2024 - ieeexplore.ieee.org
Intel's Software Guard Extensions (SGX) promises an isolated execution environment,
protected from all software running on the machine. As such, numerous works have sought …

Branch history injection: On the effectiveness of hardware mitigations against {Cross-Privilege} spectre-v2 attacks

E Barberis, P Frigo, M Muench, H Bos… - 31st USENIX Security …, 2022 - usenix.org
Branch Target Injection (BTI or Spectre v2) is one of the most dangerous transient execution
vulnerabilities, as it allows an attacker to abuse indirect branch mispredictions to leak …

Crosstalk: Speculative data leaks across cores are real

H Ragab, A Milburn, K Razavi, H Bos… - … IEEE Symposium on …, 2021 - ieeexplore.ieee.org
Recent transient execution attacks have demonstrated that attackers may leak sensitive
information across security boundaries on a shared CPU core. Up until now, it seemed …

A survey of published attacks on Intel SGX

A Nilsson, PN Bideh, J Brorsson - arxiv preprint arxiv:2006.13598, 2020 - arxiv.org
Intel Software Guard Extensions (SGX) provides a trusted execution environment (TEE) to
run code and operate sensitive data. SGX provides runtime hardware protection where both …

Private web search with Tiptoe

A Henzinger, E Dauterman, H Corrigan-Gibbs… - Proceedings of the 29th …, 2023 - dl.acm.org
Tiptoe is a private web search engine that allows clients to search over hundreds of millions
of documents, while revealing no information about their search query to the search engine's …

[PDF][PDF] SGAxe: How SGX fails in practice

S Van Schaik, A Kwong, D Genkin, Y Yarom - 2020 - sgaxe.com
Intel's Software Guard Extensions (SGX) promises an isolated execution environment,
protected from all software running on the machine. A significant limitation of SGX is its lack …

Azure SQL database always encrypted

P Antonopoulos, A Arasu, KD Singh, K Eguro… - Proceedings of the …, 2020 - dl.acm.org
This paper presents Always Encrypted, a recently released feature of Microsoft SQL Server
that uses column granularity encryption to provide cryptographic data protection guarantees …

Ultimate {SLH}: Taking speculative load hardening to the next level

Z Zhang, G Barthe, C Chuengsatiansup… - 32nd USENIX Security …, 2023 - usenix.org
In this paper we revisit the Spectre v1 vulnerability and software-only countermeasures.
Specifically, we systematically investigate the performance penalty and security properties of …