When eBPF Meets Machine Learning: On-the-fly OS Kernel Compartmentalization
Fuente:
arXiv
Gespeichert in:
| Hauptverfasser: | Wang, Zicheng, Chen, Tiejin, Dai, Qinrun, Chen, Yueqi, Wei, Hua, Zeng, Qingkai |
|---|---|
| Format: | Preprint |
| Veröffentlicht: |
2024
|
| Schlagworte: | |
| Online-Zugang: | |
| Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Ähnliche Einträge
BULKHEAD: Secure, Scalable, and Efficient Kernel Compartmentalization with PKS
von: Guo, Yinggang, et al.
Veröffentlicht: (2024)
von: Guo, Yinggang, et al.
Veröffentlicht: (2024)
SafeBPF: Hardware-assisted Defense-in-depth for eBPF Kernel Extensions
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024)
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024)
eBPF-PATROL: Protective Agent for Threat Recognition and Overreach Limitation using eBPF in Containerized and Virtualized Environments
von: Ghimire, Sangam, et al.
Veröffentlicht: (2025)
von: Ghimire, Sangam, et al.
Veröffentlicht: (2025)
MOAT: Towards Safe BPF Kernel Extension
von: Lu, Hongyi, et al.
Veröffentlicht: (2023)
von: Lu, Hongyi, et al.
Veröffentlicht: (2023)
Securing Monolithic Kernels using Compartmentalization
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024)
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024)
Bomfather: An eBPF-based Kernel-level Monitoring Framework for Accurate Identification of Unknown, Unused, and Dynamically Loaded Dependencies in Modern Software Supply Chains
von: Srinivasan, Naveen, et al.
Veröffentlicht: (2025)
von: Srinivasan, Naveen, et al.
Veröffentlicht: (2025)
Improved Leakage Abuse Attacks in Searchable Symmetric Encryption with eBPF Monitoring
von: Dimobi, Chinecherem
Veröffentlicht: (2026)
von: Dimobi, Chinecherem
Veröffentlicht: (2026)
SoK: Software Compartmentalization
von: Lefeuvre, Hugo, et al.
Veröffentlicht: (2024)
von: Lefeuvre, Hugo, et al.
Veröffentlicht: (2024)
FlexServe: A Fast and Secure LLM Serving System for Mobile Devices with Flexible Resource Isolation
von: Wu, Yinpeng, et al.
Veröffentlicht: (2026)
von: Wu, Yinpeng, et al.
Veröffentlicht: (2026)
Ringmaster: How to juggle high-throughput host OS system calls from TrustZone TEEs
von: Habeeb, Richard, et al.
Veröffentlicht: (2026)
von: Habeeb, Richard, et al.
Veröffentlicht: (2026)
ZeroOS: A Universal Modular Library OS for zkVMs
von: Zou, Guangxian, et al.
Veröffentlicht: (2025)
von: Zou, Guangxian, et al.
Veröffentlicht: (2025)
Concurrency Testing in the Linux Kernel via eBPF
von: Xu, Jiacheng, et al.
Veröffentlicht: (2025)
von: Xu, Jiacheng, et al.
Veröffentlicht: (2025)
SyzParam: Introducing Runtime Parameters into Kernel Driver Fuzzing
von: Sun, Yue, et al.
Veröffentlicht: (2025)
von: Sun, Yue, et al.
Veröffentlicht: (2025)
Analysis of Security in OS-Level Virtualization
von: Ketha, Krishna Sai, et al.
Veröffentlicht: (2025)
von: Ketha, Krishna Sai, et al.
Veröffentlicht: (2025)
Safe Sharing of Fast Kernel-Bypass I/O Among Nontrusting Applications
von: Beadle, Alan, et al.
Veröffentlicht: (2025)
von: Beadle, Alan, et al.
Veröffentlicht: (2025)
Pomegranate: A Lightweight Compartmentalization Architecture using Virtualization Extensions
von: Raja, Shriram, et al.
Veröffentlicht: (2026)
von: Raja, Shriram, et al.
Veröffentlicht: (2026)
The eBPF Runtime in the Linux Kernel
von: Gbadamosi, Bolaji, et al.
Veröffentlicht: (2024)
von: Gbadamosi, Bolaji, et al.
Veröffentlicht: (2024)
A Survey of Operating System Kernel Fuzzing
von: Xu, Jiacheng, et al.
Veröffentlicht: (2025)
von: Xu, Jiacheng, et al.
Veröffentlicht: (2025)
gpu_ext: Extensible OS Policies for GPUs via eBPF
von: Zheng, Yusheng, et al.
Veröffentlicht: (2025)
von: Zheng, Yusheng, et al.
Veröffentlicht: (2025)
Selective KV-Cache Sharing to Mitigate Timing Side-Channels in LLM Inference
von: Chu, Kexin, et al.
Veröffentlicht: (2025)
von: Chu, Kexin, et al.
Veröffentlicht: (2025)
NecoFuzz: Effective Fuzzing of Nested Virtualization via Fuzz-Harness Virtual Machines
von: Ishii, Reima, et al.
Veröffentlicht: (2025)
von: Ishii, Reima, et al.
Veröffentlicht: (2025)
eBPF-mm: Userspace-guided memory management in Linux with eBPF
von: Mores, Konstantinos, et al.
Veröffentlicht: (2024)
von: Mores, Konstantinos, et al.
Veröffentlicht: (2024)
The HitchHiker's Guide to High-Assurance System Observability Protection with Efficient Permission Switches
von: Zhang, Chuqi, et al.
Veröffentlicht: (2024)
von: Zhang, Chuqi, et al.
Veröffentlicht: (2024)
bpftime: userspace eBPF Runtime for Uprobe, Syscall and Kernel-User Interactions
von: Zheng, Yusheng, et al.
Veröffentlicht: (2023)
von: Zheng, Yusheng, et al.
Veröffentlicht: (2023)
Rethinking Provenance Completeness with a Learning-Based Linux Scheduler
von: Mao, Jinsong, et al.
Veröffentlicht: (2025)
von: Mao, Jinsong, et al.
Veröffentlicht: (2025)
Governed MCP: Kernel-Level Tool Governance for AI Agents via Logit-Based Safety Primitives
von: Son, Daeyeon
Veröffentlicht: (2026)
von: Son, Daeyeon
Veröffentlicht: (2026)
TierBPF: Page Migration Admission Control for Tiered Memory via eBPF
von: Wang, Xi, et al.
Veröffentlicht: (2026)
von: Wang, Xi, et al.
Veröffentlicht: (2026)
Sharing is caring: Attestable and Trusted Workflows out of Distrustful Components
von: Sadi, Amir Al, et al.
Veröffentlicht: (2026)
von: Sadi, Amir Al, et al.
Veröffentlicht: (2026)
WebAssembly Based Portable and Secure Sensor Interface for Internet of Things
von: Ou, Botong, et al.
Veröffentlicht: (2026)
von: Ou, Botong, et al.
Veröffentlicht: (2026)
Contextualizing Security and Privacy of Software-Defined Vehicles: A Literature Review and Industry Perspectives
von: De Vincenzi, Marco, et al.
Veröffentlicht: (2024)
von: De Vincenzi, Marco, et al.
Veröffentlicht: (2024)
Plug. Play. Persist. Inside a Ready-to-Go Havoc C2 Infrastructure
von: Di Santo, Alessio
Veröffentlicht: (2025)
von: Di Santo, Alessio
Veröffentlicht: (2025)
B-Side: Binary-Level Static System Call Identification
von: Thévenon, Gaspard, et al.
Veröffentlicht: (2024)
von: Thévenon, Gaspard, et al.
Veröffentlicht: (2024)
The Android Platform Security Model (2023)
von: Mayrhofer, René, et al.
Veröffentlicht: (2019)
von: Mayrhofer, René, et al.
Veröffentlicht: (2019)
CAEC: Confidential, Attestable, and Efficient Inter-CVM Communication with Arm CCA
von: Abdollahi, Sina, et al.
Veröffentlicht: (2025)
von: Abdollahi, Sina, et al.
Veröffentlicht: (2025)
Case Study: Securing MMU-less Linux Using CHERI
von: Almatary, Hesham, et al.
Veröffentlicht: (2023)
von: Almatary, Hesham, et al.
Veröffentlicht: (2023)
UPSS: a User-centric Private Storage System with its applications
von: Bozorgi, Arastoo, et al.
Veröffentlicht: (2024)
von: Bozorgi, Arastoo, et al.
Veröffentlicht: (2024)
Automatic ISA analysis for Secure Context Switching
von: Kalani, Neelu S., et al.
Veröffentlicht: (2025)
von: Kalani, Neelu S., et al.
Veröffentlicht: (2025)
Retrofitting XoM for Stripped Binaries without Embedded Data Relocation
von: Luo, Chenke, et al.
Veröffentlicht: (2024)
von: Luo, Chenke, et al.
Veröffentlicht: (2024)
To Unpack or Not to Unpack: Living with Packers to Enable Dynamic Analysis of Android Apps
von: Asghari, Mohammad Hossein, et al.
Veröffentlicht: (2025)
von: Asghari, Mohammad Hossein, et al.
Veröffentlicht: (2025)
Beyond Control: Exploring Novel File System Objects for Data-Only Attacks on Linux Systems
von: Zhou, Jinmeng, et al.
Veröffentlicht: (2024)
von: Zhou, Jinmeng, et al.
Veröffentlicht: (2024)
Ähnliche Einträge
-
BULKHEAD: Secure, Scalable, and Efficient Kernel Compartmentalization with PKS
von: Guo, Yinggang, et al.
Veröffentlicht: (2024) -
SafeBPF: Hardware-assisted Defense-in-depth for eBPF Kernel Extensions
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024) -
eBPF-PATROL: Protective Agent for Threat Recognition and Overreach Limitation using eBPF in Containerized and Virtualized Environments
von: Ghimire, Sangam, et al.
Veröffentlicht: (2025) -
MOAT: Towards Safe BPF Kernel Extension
von: Lu, Hongyi, et al.
Veröffentlicht: (2023) -
Securing Monolithic Kernels using Compartmentalization
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024)