-
公开(公告)号:US20190042747A1
公开(公告)日:2019-02-07
申请号:US16023160
申请日:2018-06-29
申请人: Intel Corporation
发明人: Vadim Sukhomlinov , Kshitij Doshi , Francesc Guim , Alex Nayshtut
摘要: The present disclosure is directed to systems and methods for mitigating or eliminating the effectiveness of a side channel attack, such as a Meltdown or Spectre type attack by selectively introducing a variable, but controlled, quantity of uncertainty into the externally accessible system parameters visible and useful to the attacker. The systems and methods described herein provide perturbation circuitry that includes perturbation selector circuitry and perturbation block circuitry. The perturbation selector circuitry detects a potential attack by monitoring the performance/timing data generated by the processor. Upon detecting an attack, the perturbation selector circuitry determines a variable quantity of uncertainty to introduce to the externally accessible system data. The perturbation block circuitry adds the determined uncertainty into the externally accessible system data. The added uncertainty may be based on the frequency or interval of the event occurrences indicative of an attack.
-
公开(公告)号:US11972291B2
公开(公告)日:2024-04-30
申请号:US16728865
申请日:2019-12-27
申请人: Intel Corporation
发明人: Francesc Guim , Karthik Kumar , Mustafa Hajeer , Tushar Gohad
CPC分类号: G06F9/5011 , G06F11/3409
摘要: An apparatus and method for conditional quality of service in a processor. For example, one embodiment of a processor comprises: a plurality of processor resources to be allocated to a plurality of executed processes in accordance with a set of quality of service (QoS) rules; and conditional quality of service (QoS) circuitry/logic to monitor usage of the plurality of processor resources by the plurality of processes and to responsively modify an allocation of a first processor resource for a first process in response to detecting a first threshold value being reached in a second resource allocated to the first process.
-
公开(公告)号:US10929535B2
公开(公告)日:2021-02-23
申请号:US16023160
申请日:2018-06-29
申请人: Intel Corporation
发明人: Vadim Sukhomlinov , Kshitij Doshi , Francesc Guim , Alex Nayshtut
摘要: The present disclosure is directed to systems and methods for mitigating or eliminating the effectiveness of a side channel attack, such as a Meltdown or Spectre type attack by selectively introducing a variable, but controlled, quantity of uncertainty into the externally accessible system parameters visible and useful to the attacker. The systems and methods described herein provide perturbation circuitry that includes perturbation selector circuitry and perturbation block circuitry. The perturbation selector circuitry detects a potential attack by monitoring the performance/timing data generated by the processor. Upon detecting an attack, the perturbation selector circuitry determines a variable quantity of uncertainty to introduce to the externally accessible system data. The perturbation block circuitry adds the determined uncertainty into the externally accessible system data. The added uncertainty may be based on the frequency or interval of the event occurrences indicative of an attack.
-
-