Detail View
SITI-Wrap: Secure Integrity for Third-Party IOMMUs
Citations
WEB OF SCIENCE
Citations
SCOPUS
| DC Field | Value | Language |
|---|---|---|
| dc.contributor.author | McFarland, John | - |
| dc.contributor.author | Lee, Hyokeun | - |
| dc.contributor.author | Aysu, Aydin | - |
| dc.contributor.author | Awad, Amro | - |
| dc.date.accessioned | 2026-08-25T16:10:16Z | - |
| dc.date.available | 2026-08-25T16:10:16Z | - |
| dc.date.created | 2026-07-24 | - |
| dc.date.issued | 2026-09 | - |
| dc.identifier.issn | 0018-9340 | - |
| dc.identifier.uri | https://scholar.dgist.ac.kr/handle/20.500.11750/60673 | - |
| dc.description.abstract | As general-purpose processors continue to face scaling limitations, system-on-chip (SoC) designs grow in popularity due to their lower power consumption and smaller space complexity. For more flexible SoC designs, primary SoC manufacturers incorporate third-party intellectual property (IP) to satisfy system needs, leading to higher modularity. However, reliance on third-party IPs compromises the overall security of the design, as manufacturers can no longer fully guarantee its integrity. To protect the system against untrusted IPs, the I/O memory management unit (IOMMU) provides data isolation by virtualizing the memory address space through page table walks. Systems leveraging IOMMUs manufactured by untrusted vendors could become malicious or buggy, potentially compromising the data isolation and exposing the system to security vulnerabilities which may avoid detection from standard functional verification. In this work, we propose SITI-Wrap, a novel hardware design solution that allows SoCs to safely incorporate untrusted third-party IOMMUs. SITI-Wrap guarantees the integrity of translation requests and other critical operations by introducing a novel and secure hardware wrapper design which ensures correct IOMMU functionality without software modification. We accomplish this through the use of local hardware structures within the wrapper, responsible for verifying the various stages of all IOMMU operations. Our evaluation results show that SITI-Wrap adds negligible performance overhead on average (< 0.1%) for co-processed workloads by using minimally-sized data structures which maximize parallel operations. | - |
| dc.language | English | - |
| dc.publisher | IEEE COMPUTER SOC | - |
| dc.title | SITI-Wrap: Secure Integrity for Third-Party IOMMUs | - |
| dc.type | Article | - |
| dc.identifier.doi | 10.1109/TC.2026.3711504 | - |
| dc.identifier.wosid | 001848010100022 | - |
| dc.identifier.scopusid | 2-s2.0-105044358472 | - |
| dc.identifier.bibliographicCitation | IEEE TRANSACTIONS ON COMPUTERS, v.75, no.9, pp.3441 - 3453 | - |
| dc.description.isOpenAccess | FALSE | - |
| dc.subject.keywordAuthor | computer architecture | - |
| dc.subject.keywordAuthor | embedded systems | - |
| dc.subject.keywordAuthor | hardware security | - |
| dc.subject.keywordAuthor | IOMMU | - |
| dc.subject.keywordAuthor | SoC security | - |
| dc.citation.endPage | 3453 | - |
| dc.citation.number | 9 | - |
| dc.citation.startPage | 3441 | - |
| dc.citation.title | IEEE TRANSACTIONS ON COMPUTERS | - |
| dc.citation.volume | 75 | - |
| dc.description.journalRegisteredClass | scie | - |
| dc.description.journalRegisteredClass | scopus | - |
| dc.relation.journalResearchArea | Computer Science; Engineering | - |
| dc.relation.journalWebOfScienceCategory | Computer Science, Hardware & Architecture; Engineering, Electrical & Electronic | - |
| dc.type.docType | Article | - |
File Downloads
- There are no files associated with this item.
공유
Related Researcher
- Lee, Hyokeun이효근
-
Department of Electrical Engineering and Computer Science
Total Views & Downloads
???jsp.display-item.statistics.view???: , ???jsp.display-item.statistics.download???:
