A Case for Maximal Leakage as a Side Channel Leakage Metric
Benjamin Wu, Aaron B. Wagner, G. Edward Suh

TL;DR
This paper advocates for using maximal leakage as a practical and accurate metric to evaluate and optimize the security trade-offs in side channel defenses, outperforming traditional metrics.
Contribution
It introduces maximal leakage as a suitable metric for side channel analysis, demonstrating its theoretical advantages and practical application in cost-leakage optimization.
Findings
Maximal leakage better estimates side channel threat than mutual information.
The cost-leakage trade-off can be formulated as a linear program.
Optimal protection schemes involve at most two deterministic strategies.
Abstract
Side channels represent a broad class of security vulnerabilities that have been demonstrated to exist in many applications. Because completely eliminating side channels often leads to prohibitively high overhead, there is a need for a principled trade-off between cost and leakage. In this paper, we make a case for the use of maximal leakage to analyze such trade-offs. Maximal leakage is an operationally interpretable leakage metric designed for side channels. We present the most useful theoretical properties of maximal leakage from previous work and demonstrate empirically that conventional metrics such as mutual information and channel capacity underestimate the threat posed by side channels whereas maximal leakage does not. We also study the cost-leakage trade-off as an optimization problem using maximal leakage. We demonstrate that not only can this problem be represented as a…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsSecurity and Verification in Computing · Cryptographic Implementations and Security · Advanced Malware Detection Techniques
