Manipulative Interference Attacks

S Mergendahl, S Fickas, B Norris… - Proceedings of the 2024 on …, 2024 - dl.acm.org
A μ-kernel is an operating system (OS) paradigm that facilitates a strong cybersecurity
posture for embedded systems. Unlike a monolithic OS such as Linux, a μ-kernel reduces …

SoK: Software Compartmentalization

H Lefeuvre, N Dautenhahn, D Chisnall… - arXiv preprint arXiv …, 2024 - arxiv.org
Decomposing large systems into smaller components with limited privileges has long been
recognized as an effective means to minimize the impact of exploits. Despite historical roots …

SoK: Understanding the Attack Surface in Device Driver Isolation Frameworks

Y Huang, K Huang, M Ennis, V Narayanan… - arXiv preprint arXiv …, 2024 - arxiv.org
Device driver isolation is a promising approach for protecting the kernel from faulty or
malicious drivers, but the actual security provided by such frameworks is often not well …

BULKHEAD: Secure, Scalable, and Efficient Kernel Compartmentalization with PKS

Y Guo, Z Wang, W Bai, Q Zeng, K Lu - arXiv preprint arXiv:2409.09606, 2024 - arxiv.org
The endless stream of vulnerabilities urgently calls for principled mitigation to confine the
effect of exploitation. However, the monolithic architecture of commodity OS kernels, like the …

[PDF][PDF] TOWARDS SAFE, FLEXIBLE, AND EASY SOFTWARE COMPARTMENTALISATION

H Lefeuvre - 2024 - research.manchester.ac.uk
Software is everywhere: healthcare, transportation, finance, energy, defence,
communications, agriculture, and more. Through this vast deployment, promised to go on in …