A short note on the paper `Are Randomized Caches Really Random?'
In this paper, we analyse the results and claims presented in the paper `Are Randomized Caches Truly Random? Formal Analysis of Randomized Partitioned Caches', presented at HPCA conference 2023. In addition, we also analyse the applicability of `Bucket and Ball' analytical model presented in MIRAGE (Usenix Security 2021) for its security estimation. We put forth the fallacies in the original bucket and ball model and discuss its implications. Finally, we demonstrate a cache occupancy attack on MIRAGE with just 10% of total cache capacity and extend the framework to establish a covert channel and a template-based fingerprinting attack.
READ FULL TEXT