Title :
Co-Processor Aided Attack on Embedded Multi-OS Environments
Author :
Schnarz, Pierre ; Wietzke, Joachim ; Stengel, Ingo
Author_Institution :
Dept. of Comput. Sci., Univ. of Appl. Sci. Darmstadt, Darmstadt, Germany
Abstract :
Within several domains of embedded computing, multi operating systems will be introduced in future. This is motivated by the need of fulfilling widespread requirements. Additionally, safety critical automotive domains add high demands on the security of such systems. Depending on the hardware architecture, it is possible to use several techniques to isolate systems. These are necessary for security reasons. Despite the state-of-the-art virtualization mechanisms, the idea of asymmetric-multiprocessing can be used to split a system´s hardware resources, which makes the virtualization of hardware obsolete. However, independent devices like co-processors might add potential security risks. In this paper an attack vector is shown, which utilizes a co-processor to break through the isolation of an operating system domain. Using a multi operating system environment, we manipulate a co-processor in order to circumvent isolation mechanisms on behalf of an attacking operating system. The attack demonstrates an architectural demand to extend the virtualization capabilities of autarkic devices like co- processors.
Keywords :
computer architecture; coprocessors; embedded systems; multiprocessing systems; operating systems (computers); security of data; virtualisation; asymmetric-multiprocessing; attack vector; attacking operating system; autarkic devices; coprocessor aided attack; embedded computing; embedded multiOS environments; hardware architecture; hardware virtualization; isolation mechanisms; multioperating system environment; operating system domain; safety critical automotive domains; security reasons; security risks; state-of-the-art virtualization mechanisms; system hardware resources; Automotive engineering; Hardware; Mobile communication; Operating systems; Security; Vectors; Virtualization;
Conference_Titel :
IT Convergence and Security (ICITCS), 2013 International Conference on
Conference_Location :
Macao
DOI :
10.1109/ICITCS.2013.6717818