A Cautionary Note on Building Multi-tenant Cloud-FPGA as a Secure Infrastructure

被引:0
|
作者
Luo, Yukui [1 ]
Zhang, Yuheng [1 ]
Duan, Shijin [1 ]
Xu, Xiaolin [1 ]
机构
[1] Northeastern Univ, Dept Elect & Comp Engn, Boston, MA 02115 USA
关键词
Security; Cloud-FPGA; Fault Injection; Communication Protocol; Memory;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Security concerns have been raised for multi-tenant cloud-FPGA in many recent works. While these existing works focused on studying the security of diverse cloud-FPGA applications, such as Advanced Encryption Standard (AES), the vulnerabilities associated with the inherent FPGA components are so far under-explored. For the first time, we investigate the robustness of a commonly used communication protocol for data exchange, Advanced eXtensible Interface (AXI), against fault injection attacks in a multi-tenant cloud-FPGA environment. We build an experimental setup with a commodity FPGA development kit and launch fault injection attacks on the shared power distribution network (PDN). To study the in-depth effects of such attacks, we characterize the voltage glitches of different attack patterns in a non-invasive manner, i.e., using electron magnetic measurement. We also mimic the real-world data transmissions using two crafted datasets with different statistical characteristics. The experimental results demonstrate the unique security vulnerabilities of the current AXI protocol in the context of a multi-tenant cloud-FPGA. Last, we discuss potential defense strategies against these vulnerabilities.
引用
收藏
页码:227 / 232
页数:6
相关论文
共 50 条
  • [1] Multi-tenant Isolation of What? Building a Secure Tenant Isolation Architecture for Cloud Networks
    Medeiros, Bruno
    Simplicio, Marcos A., Jr.
    Andrade, Ewerton R.
    PROCEEDINGS OF THE 2018 ACM SYMPOSIUM ON CLOUD COMPUTING (SOCC '18), 2018, : 518 - 518
  • [2] Building scalable, secure, multi-tenant cloud services on IBM Bluemix
    Kim, M.
    Mohindra, A.
    Muthusamy, V.
    Ranchal, R.
    Salapura, V.
    Slominski, A.
    Khalaf, R.
    IBM JOURNAL OF RESEARCH AND DEVELOPMENT, 2016, 60 (2-3)
  • [3] Optimal allocation of cloud multi-tenant platform infrastructure resources
    Ignatyev O.
    Int. J. Cloud Computing, 2019, 2 (117-139): : 117 - 139
  • [4] Trusted IP Solution in Multi-tenant Cloud FPGA Platform
    Ahmed, Muhammed Kawser
    Saha, Sujan Kumar
    Bobda, Christophe
    2022 IEEE 8TH WORLD FORUM ON INTERNET OF THINGS, WF-IOT, 2022,
  • [5] DeepShuffle: A Lightweight Defense Framework against Adversarial Fault Injection Attacks on Deep Neural Networks in Multi-Tenant Cloud-FPGA
    Luo, Yukui
    Rakin, Adnan Siraj
    Fan, Deliang
    Xu, Xiaolin
    45TH IEEE SYMPOSIUM ON SECURITY AND PRIVACY, SP 2024, 2024, : 3293 - 3310
  • [6] Engineering Scalable, Secure, Multi-tenant Cloud for Healthcare Data
    Dean, Daniel J.
    Ranchal, Rohit
    Gu, Yu
    Sailer, Anca
    Khan, Shakil
    Beaty, Kirk
    Bakthavachalam, Senthil
    Yu, Yichong
    Ruan, Yaoping
    Bastide, Paul
    2017 13TH IEEE WORLD CONGRESS ON SERVICES (SERVICES), 2017, : 21 - 29
  • [7] Multi-tenant SaaS Cloud
    Kulkarni, Gurudatt
    Khatawkar, Prasad
    Shelke, Rupali
    Solanke, Vikas
    Waghmare, Rani
    AFRICON, 2013, 2013,
  • [8] Multi-tenant SaaS Cloud
    Kulkarni, Gurudatt
    Shelke, Rupali
    Palwe, Rajnikant
    Khatawkar, Prasad
    Bhuse, Sadanand
    Bankar, Hemant
    2013 FOURTH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATIONS AND NETWORKING TECHNOLOGIES (ICCCNT), 2013,
  • [9] Accelerating Hybrid Quantized Neural Networks on Multi-tenant Cloud FPGA
    Kwadjo, Danielle Tchuinkou
    Tchinda, Erman Nghonda
    Mbongue, Joel Mandebi
    Bobda, Christophe
    2022 IEEE 40TH INTERNATIONAL CONFERENCE ON COMPUTER DESIGN (ICCD 2022), 2022, : 491 - 498
  • [10] A Multi-Tenant Rate Limiter on FPGA
    Guo, Yunfei
    Guo, Zhichuan
    Zhang, Mengting
    ELECTRONICS, 2025, 14 (06):