Security graphs model attacks, defenses, mitigations, and vulnerabilities on computer networks and systems. With proper attributes, they provide security metrics using standard graph algorithms. A hyperflow graph is a register-transfer level (RTL) hardware security graph that facilitates security verification. A hyperflow graph models information flows and is annotated with attributes that allow security metrics to measure flow paths, flow conditions, and flow rates. Hyperflow graphs enable the understanding of hardware vulnerabilities related to confidentiality, integrity, and availability, as shown on the OpenTitan hardware root of trust under several threat models.
翻译:安全图模型的攻击、防御、缓解和计算机网络和系统的漏洞。通过适当的属性,他们使用标准图算法提供安全度量。超流图是一种硬件安全图,用于方便安全验证。超流图模拟信息流,并带有注释,允许安全度量测量流路径、流条件和流速。超流图使人们能够理解与机密性、完整性和可用性有关的硬件漏洞,如OpenTitan硬件信任根在多种威胁模型下显示的那样。