From Colocation to Exfiltration: Practical Cache Side-Channel Attacks in the Modern Public Cloud

Research output: Contribution to journalArticlepeer-review

Abstract

Sharing resources among tenants is fundamental to public clouds, enhancing efficiency but also creating opportunities for microarchitectural side-channel attacks. However, cloud vendors remain skeptical about the practicality of these attacks, particularly regarding the ability to colocate attacker and victim, and to overcome system noise. In this work, we develop a series of techniques for each step of the attack and, for the first time, demonstrate cross-tenant information leakage on the public Google Cloud Run, refuting the belief that such attacks are impractical. Our findings highlight the need to secure public clouds against side-channel attacks.

Original languageEnglish (US)
Pages (from-to)95-102
Number of pages8
JournalIEEE Micro
Volume45
Issue number4
DOIs
StatePublished - 2025

ASJC Scopus subject areas

  • Software
  • Hardware and Architecture
  • Electrical and Electronic Engineering

Fingerprint

Dive into the research topics of 'From Colocation to Exfiltration: Practical Cache Side-Channel Attacks in the Modern Public Cloud'. Together they form a unique fingerprint.

Cite this