Recent and Upcoming Security Trends in Cloud Low-level Hardware Devices A Survey.pdf

编号:161461 PDF 19页 1.19MB 下载积分:VIP专享
下载报告请您先登录!

Recent and Upcoming Security Trends in Cloud Low-level Hardware Devices A Survey.pdf

1、This talk presents IOActives insights into the security of NVMe-based SSDs and SR-IOV-enabled cards,calling upon our extensive experience testing these devices in a Cloud setup.The talk begins with a comprehensive analysis and taxonomy of common vulnerabilities and threats associated with NVMe-based

2、 SSDs and SR-IOV-enabled cards.From there,we discuss the devices current security posture and the implications for Cloud security and highlight potential future trends,including emerging flaws and how to improve upon the state-of-the-art.Finally,we extrapolate a curated,archetypal threat model based

3、 on our hands-on experience and the concerns Cloud providers and vendors have expressedto us when security testing their devices.In the OCP S.A.F.E.context,this contribution can help hardware suppliers and Cloud providers alike,offering guidelines for defining secure development efforts as well as s

4、ecurity testing scope and approaches.Recent and Upcoming Security Trends in Cloud Low-level Hardware Devices:A SurveySean Rivera,Senior Security Consultant,IOActiveAlfredo Pironti,Director of Services,IOActiveRecent and Upcoming Security Trends in Cloud Low-level Hardware Devices:A SurveySECURITY AN

5、D DATA PROTECTIONSECURITYNVMe Attack Surface EvolutionCurrent Vulnerabilities&ImpactVulnerability AnalysisThreats in DesignThreats in ImplementationThreats in ProcessThreat ModelConclusionsContentsCloud security is about concealing shared resourcesMultiplexing underpins the Cloud and causes many iss

6、uesThe trend is to move virtualization down the abstraction stackCase in point:NVMe NVMe is a story in increasing capabilitiesMore capabilities means vulnerabilities NVMe Attack Surface EvolutionNVMe Released(2011)First NVMe Products(2014)NVMe-oF(2016)NVMe 1.4 Persistence(2019)CVE-2023-0122 Linux Is

友情提示

1、下载报告失败解决办法
2、PDF文件下载后,可能会被浏览器默认打开,此种情况可以点击浏览器菜单,保存网页到桌面,就可以正常下载了。
3、本站不支持迅雷下载,请使用电脑自带的IE浏览器,或者360浏览器、谷歌浏览器下载即可。
4、本站报告下载后的文档和图纸-无水印,预览文档经过压缩,下载后原文更清晰。

本文(Recent and Upcoming Security Trends in Cloud Low-level Hardware Devices A Survey.pdf)为本站 (张5G) 主动上传,三个皮匠报告文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知三个皮匠报告文库(点击联系客服),我们立即给予删除!

温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。
客服
商务合作
小程序
服务号
折叠