作者
Kaveh Razavi, Ben Gras, Erik Bosman, Bart Preneel, Cristiano Giuffrida, Herbert Bos
发表日期
2016
研讨会论文
25th USENIX Security Symposium (USENIX Security 16)
页码范围
1-18
简介
We introduce Flip Feng Shui (FFS), a new exploitation vector which allows an attacker to induce bit flips over arbitrary physical memory in a fully controlled way. FFS relies on hardware bugs to induce bit flips over memory and on the ability to surgically control the physical memory layout to corrupt attacker-targeted data anywhere in the software stack. We show FFS is possible today with very few constraints on the target data, by implementing an instance using the Rowhammer bug and memory deduplication (an OS feature widely deployed in production). Memory deduplication allows an attacker to reverse-map any physical page into a virtual page she owns as long as the page’s contents are known. Rowhammer, in turn, allows an attacker to flip bits in controlled (initially unknown) locations in the target page.
引用总数
2015201620172018201920202021202220232024143538374236404128
学术搜索中的文章
K Razavi, B Gras, E Bosman, B Preneel, C Giuffrida… - 25th USENIX Security Symposium (USENIX Security …, 2016