کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
10342350 696042 2016 10 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Lest we forget: Cold-boot attacks on scrambled DDR3 memory
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
پیش نمایش صفحه اول مقاله
Lest we forget: Cold-boot attacks on scrambled DDR3 memory
چکیده انگلیسی
As hard disk encryption, RAM disks, persistent data avoidance technology and memory-only malware become more widespread, memory analysis becomes more important. Cold-boot attacks are a software-independent method for such memory acquisition. However, on newer Intel computer systems the RAM contents are scrambled to minimize undesirable parasitic effects of semiconductors. We present a descrambling attack that requires at most 128 bytes of known plaintext within the image in order to perform full recovery. We further refine this attack using the mathematical relationships within the key stream to at most 50 bytes of known plaintext for a dual memory channel system. We therefore enable cold-boot attacks on systems employing Intel's memory scrambling technology.
ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: Digital Investigation - Volume 16, Supplement, 29 March 2016, Pages S65-S74
نویسندگان
, , ,