References:
The Last Mile: An empirical study of timing channels on seL4,
Leakage in Trustworthy Systems, by David Cock, August 2014.
Side channel data collection.
seL4 on Exynos4412 platform:
serverl timing channels on seL4 based system with their defenses with low overhead.
Do not consider noise-adding solutions (due to their overhead);
Only consider black box techniques (require no insight into the internals of software running on seL4, as retrofitting security into complex software is generally impossible);
Only on some example cases, not a comprenhensive converage of timing channels;
Two vulnerabilities:
If you could revise
the fundmental principles of
computer system design
to improve security...
... what would you change?