Skip to main content

Athena: Analyzing and Quantifying Side Channels of Transport Layer Protocols

Publication ,  Conference
Yu, F; Zhou, Q; Hussain, SR; Zhang, D
Published in: Proceedings of the 33rd Usenix Security Symposium
January 1, 2024

Recent research has shown a growing number of side-channel vulnerabilities in transport layer protocols, such as TCP and UDP. Those side channels can be exploited by adversaries to launch nefarious attacks. In this paper, we present Athena, an automated tool for detecting, quantifying and explaining side-channel vulnerabilities in vanilla implementations of transport layer protocols. Unlike prior tools, Athena adopts a novel graph-based analysis, making it scalable enough to be the first side-channel analysis tool that can comprehensively analyze the TCP and UDP implementations in several operating systems with significantly higher coverage than the state-of-the-art. Moreover, Athena uses an entropy-based algorithm to identify the most important vulnerabilities. Evaluation on several benchmarks including Linux, FreeBSD, OpenBSD and two open-source IPv4 implementations suggests that Athena can narrow down critical side channels to a single digit (among over 1000 candidates) with a low false positive rate. Besides covering known side channels, Athena also discovers 30 new potential attack surfaces.

Duke Scholars

Published In

Proceedings of the 33rd Usenix Security Symposium

Publication Date

January 1, 2024

Start / End Page

3117 / 3133
 

Citation

APA
Chicago
ICMJE
MLA
NLM
Yu, F., Zhou, Q., Hussain, S. R., & Zhang, D. (2024). Athena: Analyzing and Quantifying Side Channels of Transport Layer Protocols. In Proceedings of the 33rd Usenix Security Symposium (pp. 3117–3133).
Yu, F., Q. Zhou, S. R. Hussain, and D. Zhang. “Athena: Analyzing and Quantifying Side Channels of Transport Layer Protocols.” In Proceedings of the 33rd Usenix Security Symposium, 3117–33, 2024.
Yu F, Zhou Q, Hussain SR, Zhang D. Athena: Analyzing and Quantifying Side Channels of Transport Layer Protocols. In: Proceedings of the 33rd Usenix Security Symposium. 2024. p. 3117–33.
Yu, F., et al. “Athena: Analyzing and Quantifying Side Channels of Transport Layer Protocols.” Proceedings of the 33rd Usenix Security Symposium, 2024, pp. 3117–33.
Yu F, Zhou Q, Hussain SR, Zhang D. Athena: Analyzing and Quantifying Side Channels of Transport Layer Protocols. Proceedings of the 33rd Usenix Security Symposium. 2024. p. 3117–3133.

Published In

Proceedings of the 33rd Usenix Security Symposium

Publication Date

January 1, 2024

Start / End Page

3117 / 3133