论文标题
用于硬件安全的新学说
A New Doctrine for Hardware Security
论文作者
论文摘要
在本文中,我们宣传了一个想法,即硬件安全方面的近期困境不是因为缺乏技术解决方案,而是因为市场力量和激励措施阻止了那些能够解决问题的能力的人。问题的根源是硬件安全性是有代价的事实。硬件安全性中的当前问题可以看作是硬件安全性游戏中玩家找到避免支付此费用的方法的结果。我们将这个想法提出为安全学说,即共同负担的学说。三个案例研究 - 绳锤,幽灵和崩溃 - 通过该学说的镜头来解释。我们的学说阐明了为什么这些问题和存在以及可以对它们做什么。
In this paper, we promote the idea that recent woes in hardware security are not because of a lack of technical solutions but rather because market forces and incentives prevent those with the ability to fix problems from doing so. At the root of the problem is the fact that hardware security comes at a cost; Present issues in hardware security can be seen as the result of the players in the game of hardware security finding ways of avoiding paying this cost. We formulate this idea into a doctrine of security, namely the Doctrine of Shared Burdens. Three cases studies---Rowhammer, Spectre, and Meltdown---are interpreted though the lens of this doctrine. Our doctrine illuminates why these problems and exist and what can be done about them.