Tainted Secure Multi-Execution to Restrict Attacker Influence


연구 분야: Cryptography



학회: CCS '23: Proceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security


초록

Attackers can steal sensitive user information from web pages via third-party scripts. Prior work shows that secure multi-execution (SME) with declassification is useful for mitigating such attacks, but that attackers can leverage dynamic web features to declassify more than intended. The proposed solution of disallowing events from dynamic web elements to be declassified is too restrictive to be practical; websites that declassify events from dynamic elements cannot function correctly. In this paper, we present SMT(T), a new information flow monitor based on SME which uses taint tracking within each execution to remember what has been influenced by an attacker. The resulting monitor is more permissive than what was proposed by prior work and satisfies both knowledge- and influence-based definitions of security for confidentiality and integrity policies (respectively). We also show that robust declassification follows from our influence-based security condition, for free. Finally, we examine the performance impact of monitoring attacker influence with SME by implementing SMT(T) on top of Featherweight Firefox.


Author Profile
McKenna McCall

Carnegie Mellon University Pittsburgh PA USA

Panama
Author Profile
Abhishek Bichhawat

Indian Institute of Technology Gandhinagar Gandhinagar India

India
Author Profile
Limin Jia

Carnegie Mellon University Pittsburgh PA USA

Panama

📄 논문 정보

발행 연도 2023년
인용수 1
출판 국가 Panama, India
사이트 ACM
좋아요 수 0

연관 논문 목록 (44건)