Manipulative Interference Attacks
A μ-kernel is an operating system (OS) paradigm that facilitates a strong cybersecurity
posture for embedded systems. Unlike a monolithic OS such as Linux, a μ-kernel reduces …
posture for embedded systems. Unlike a monolithic OS such as Linux, a μ-kernel reduces …
SoK: Software Compartmentalization
Decomposing large systems into smaller components with limited privileges has long been
recognized as an effective means to minimize the impact of exploits. Despite historical roots …
recognized as an effective means to minimize the impact of exploits. Despite historical roots …
SoK: Understanding the Attack Surface in Device Driver Isolation Frameworks
Device driver isolation is a promising approach for protecting the kernel from faulty or
malicious drivers, but the actual security provided by such frameworks is often not well …
malicious drivers, but the actual security provided by such frameworks is often not well …
BULKHEAD: Secure, Scalable, and Efficient Kernel Compartmentalization with PKS
The endless stream of vulnerabilities urgently calls for principled mitigation to confine the
effect of exploitation. However, the monolithic architecture of commodity OS kernels, like the …
effect of exploitation. However, the monolithic architecture of commodity OS kernels, like the …
[PDF][PDF] TOWARDS SAFE, FLEXIBLE, AND EASY SOFTWARE COMPARTMENTALISATION
H Lefeuvre - 2024 - research.manchester.ac.uk
Software is everywhere: healthcare, transportation, finance, energy, defence,
communications, agriculture, and more. Through this vast deployment, promised to go on in …
communications, agriculture, and more. Through this vast deployment, promised to go on in …