VeriFence: Lightweight and Precise Spectre Defenses for Untrusted Linux Kernel Extensions
Fuente:
arXiv
Saved in:
| Main Authors: | Gerhorst, Luis, Herzog, Henriette, Wägemann, Peter, Ott, Maximilian, Kapitza, Rüdiger, Hönig, Timo |
|---|---|
| Format: | Preprint |
| Published: |
2024
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Pomegranate: A Lightweight Compartmentalization Architecture using Virtualization Extensions
by: Raja, Shriram, et al.
Published: (2026)
by: Raja, Shriram, et al.
Published: (2026)
SafeBPF: Hardware-assisted Defense-in-depth for eBPF Kernel Extensions
by: Lim, Soo Yee, et al.
Published: (2024)
by: Lim, Soo Yee, et al.
Published: (2024)
LEMIX: Enabling Testing of Embedded Applications as Linux Applications (Extended Report)
by: Tanksalkar, Sai Ritvik, et al.
Published: (2025)
by: Tanksalkar, Sai Ritvik, et al.
Published: (2025)
Beyond Edge Coverage: Per-Task Data-Flow Extraction at Kernel Function Boundaries via LLVM
by: Kim, Yunseong
Published: (2026)
by: Kim, Yunseong
Published: (2026)
A Comprehensive Quantification of Inconsistencies in Memory Dumps
by: Oliveri, Andrea, et al.
Published: (2025)
by: Oliveri, Andrea, et al.
Published: (2025)
Blindfold: Confidential Memory Management by Untrusted Operating System
by: Li, Caihua, et al.
Published: (2024)
by: Li, Caihua, et al.
Published: (2024)
MOAT: Towards Safe BPF Kernel Extension
by: Lu, Hongyi, et al.
Published: (2023)
by: Lu, Hongyi, et al.
Published: (2023)
A TEE-Based Architecture for Confidential and Dependable Process Attestation in Authorship Verification
by: Condrey, David
Published: (2026)
by: Condrey, David
Published: (2026)
Rethinking Provenance Completeness with a Learning-Based Linux Scheduler
by: Mao, Jinsong, et al.
Published: (2025)
by: Mao, Jinsong, et al.
Published: (2025)
Case Study: Securing MMU-less Linux Using CHERI
by: Almatary, Hesham, et al.
Published: (2023)
by: Almatary, Hesham, et al.
Published: (2023)
Sandlock: Confining AI Agent Code with Unprivileged Linux Primitives
by: Wang, Cong, et al.
Published: (2026)
by: Wang, Cong, et al.
Published: (2026)
Improved Leakage Abuse Attacks in Searchable Symmetric Encryption with eBPF Monitoring
by: Dimobi, Chinecherem
Published: (2026)
by: Dimobi, Chinecherem
Published: (2026)
RX-INT: A Kernel Engine for Real-Time Detection and Analysis of In-Memory Threats
by: Juneja, Arjun
Published: (2025)
by: Juneja, Arjun
Published: (2025)
Beyond Control: Exploring Novel File System Objects for Data-Only Attacks on Linux Systems
by: Zhou, Jinmeng, et al.
Published: (2024)
by: Zhou, Jinmeng, et al.
Published: (2024)
Right to History: A Sovereignty Kernel for Verifiable AI Agent Execution
by: Zhang, Jing
Published: (2026)
by: Zhang, Jing
Published: (2026)
Breaking the Boundaries of Long-Context LLM Inference: Adaptive KV Management on a Single Commodity GPU
by: Sun, He, et al.
Published: (2025)
by: Sun, He, et al.
Published: (2025)
Securing Monolithic Kernels using Compartmentalization
by: Lim, Soo Yee, et al.
Published: (2024)
by: Lim, Soo Yee, et al.
Published: (2024)
BULKHEAD: Secure, Scalable, and Efficient Kernel Compartmentalization with PKS
by: Guo, Yinggang, et al.
Published: (2024)
by: Guo, Yinggang, et al.
Published: (2024)
Trust Nothing: RTOS Security without Run-Time Software TCB (Extended Version)
by: Ackermann, Eric, et al.
Published: (2026)
by: Ackermann, Eric, et al.
Published: (2026)
Physical Memory Attacks and a Memory Safe Management System for Memory Defense
by: Hillel-Tuch, Alon, et al.
Published: (2024)
by: Hillel-Tuch, Alon, et al.
Published: (2024)
User-space library rootkits revisited: Are user-space detection mechanisms futile?
by: Soriano-Salvador, Enrique, et al.
Published: (2025)
by: Soriano-Salvador, Enrique, et al.
Published: (2025)
Paths Not Taken: A Secure Computing Tutorial
by: Boebert, William Earl
Published: (2025)
by: Boebert, William Earl
Published: (2025)
SyzParam: Introducing Runtime Parameters into Kernel Driver Fuzzing
by: Sun, Yue, et al.
Published: (2025)
by: Sun, Yue, et al.
Published: (2025)
Extensions of pure C*-algebras
by: Perera, Francesc, et al.
Published: (2025)
by: Perera, Francesc, et al.
Published: (2025)
Safe Sharing of Fast Kernel-Bypass I/O Among Nontrusting Applications
by: Beadle, Alan, et al.
Published: (2025)
by: Beadle, Alan, et al.
Published: (2025)
RASP for LSASS: Preventing Mimikatz-Related Attacks
by: Revazova, Anna, et al.
Published: (2023)
by: Revazova, Anna, et al.
Published: (2023)
ALPC Is In Danger: ALPChecker Detects Spoofing and Blinding
by: Kropova, Anastasiia, et al.
Published: (2023)
by: Kropova, Anastasiia, et al.
Published: (2023)
Towards Deterministic Sub-0.5 us Response on Linux through Interrupt Isolation
by: Zhou, Zhouyi, et al.
Published: (2025)
by: Zhou, Zhouyi, et al.
Published: (2025)
vNV-Heap: An Ownership-Based Virtually Non-Volatile Heap for Embedded Systems
by: Gerber, Markus Elias, et al.
Published: (2025)
by: Gerber, Markus Elias, et al.
Published: (2025)
A Secure, Manifest-Based Framework for Delegated Privilege Promotion
by: Chowdhury, Rajarshi, et al.
Published: (2026)
by: Chowdhury, Rajarshi, et al.
Published: (2026)
Hardening the OSv Unikernel with Efficient Address Randomization: Design and Performance Evaluation
by: Wollman, Alex, et al.
Published: (2026)
by: Wollman, Alex, et al.
Published: (2026)
Rusty Linux: Advances in Rust for Linux Kernel Development
by: Panter, Shane K., et al.
Published: (2024)
by: Panter, Shane K., et al.
Published: (2024)
Extensions of the Hilbert-multi-norm in Hilbert $C^*$-modules
by: Abedi, Sajjad, et al.
Published: (2024)
by: Abedi, Sajjad, et al.
Published: (2024)
The continuous functional calculus in Lean
by: Dedecker, Anatole, et al.
Published: (2025)
by: Dedecker, Anatole, et al.
Published: (2025)
The noncommutative weak Extension Principle
by: Vignati, Alessandro, et al.
Published: (2025)
by: Vignati, Alessandro, et al.
Published: (2025)
A Survey of Operating System Kernel Fuzzing
by: Xu, Jiacheng, et al.
Published: (2025)
by: Xu, Jiacheng, et al.
Published: (2025)
Rhea: Detecting Privilege-Escalated Evasive Ransomware Attacks Using Format-Aware Validation in the Cloud
by: Kim, Beom Heyn, et al.
Published: (2026)
by: Kim, Beom Heyn, et al.
Published: (2026)
The Free Tangent Law
by: Ejsmont, Wiktor, et al.
Published: (2020)
by: Ejsmont, Wiktor, et al.
Published: (2020)
Concurrency Testing in the Linux Kernel via eBPF
by: Xu, Jiacheng, et al.
Published: (2025)
by: Xu, Jiacheng, et al.
Published: (2025)
Quantum deformations of the arc length metric
by: Hansen, Rasmus Hauge, et al.
Published: (2026)
by: Hansen, Rasmus Hauge, et al.
Published: (2026)
Similar Items
-
Pomegranate: A Lightweight Compartmentalization Architecture using Virtualization Extensions
by: Raja, Shriram, et al.
Published: (2026) -
SafeBPF: Hardware-assisted Defense-in-depth for eBPF Kernel Extensions
by: Lim, Soo Yee, et al.
Published: (2024) -
LEMIX: Enabling Testing of Embedded Applications as Linux Applications (Extended Report)
by: Tanksalkar, Sai Ritvik, et al.
Published: (2025) -
Beyond Edge Coverage: Per-Task Data-Flow Extraction at Kernel Function Boundaries via LLVM
by: Kim, Yunseong
Published: (2026) -
A Comprehensive Quantification of Inconsistencies in Memory Dumps
by: Oliveri, Andrea, et al.
Published: (2025)