Tufts University The main problem stems from the fact that tidbits of useful information can leak out from one component to others nearby, just like neighbors often know what’s going on in each other’s houses without asking. A dedicated observer could, for instance, notice that your home’s lights go on and off at a particular times each workday and infer your family’s work schedules. This sort of indirect approach, using an apparently harmless type of data to infer a useful conclusion, is often called a “side-channel attack.” These vulnerabilities are particularly significant because they exploit weaknesses designers didn’t think to secure – and may not have thought of at all. Also, attacks like this are hardware problems, so they cannot be easily patched with a software update. Security researchers have found that certain types of internet traffic , temperature changes , radio emissions or electricity usage can provide similar clues to what electronic components are doing. These are external clues revealing information the home’s residents – or the device’s users – never intended to share. Even a little information can be enough to reveal important secrets such as users’ passwords. Many – perhaps even most – of these information leaks are the accidental results of chip designers’ efforts to speed up processing. One example was the nearly universal practice of letting a piece of software read data from the computer’s memory before checking whether that program had permission to do so. As other commentators have pointed out, this is much like a security guard letting someone into a building while still checking their credentials. These are serious problems with no clear – or simple – answers, but I’m confident they’ll be solved. About 15 years ago, the microprocessor architecture research community faced another seemingly insurmountable challenge and found solutions within a few years – just a few product generations. At that time, the challenge was that the amount of power microchips consumed was climbing rapidly as components got ever smaller. That made cooling incredibly difficult. Dire charts were presented at major professional conferences comparing the problem of cooling microprocessors to the challenges of preventing nuclear reactors from overheating. The industry responded by focusing on power consumption. It’s true that early designs that were more power efficient did computations more slowly than their power-hungry predecessors. But that was only because the initial focus was on redesigning basic functions to save power.


