SafeBPF: Hardware-assisted Defense-in-depth for eBPF Kernel Extensions
Fuente:
arXiv
Gespeichert in:
| Hauptverfasser: | Lim, Soo Yee, Prasad, Tanya, Han, Xueyuan, Pasquier, Thomas |
|---|---|
| Format: | Preprint |
| Veröffentlicht: |
2024
|
| Schlagworte: | |
| Online-Zugang: | |
| Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Ähnliche Einträge
MOAT: Towards Safe BPF Kernel Extension
von: Lu, Hongyi, et al.
Veröffentlicht: (2023)
von: Lu, Hongyi, et al.
Veröffentlicht: (2023)
eBPF-PATROL: Protective Agent for Threat Recognition and Overreach Limitation using eBPF in Containerized and Virtualized Environments
von: Ghimire, Sangam, et al.
Veröffentlicht: (2025)
von: Ghimire, Sangam, et al.
Veröffentlicht: (2025)
When eBPF Meets Machine Learning: On-the-fly OS Kernel Compartmentalization
von: Wang, Zicheng, et al.
Veröffentlicht: (2024)
von: Wang, Zicheng, et al.
Veröffentlicht: (2024)
Securing Monolithic Kernels using Compartmentalization
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024)
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024)
Improved Leakage Abuse Attacks in Searchable Symmetric Encryption with eBPF Monitoring
von: Dimobi, Chinecherem
Veröffentlicht: (2026)
von: Dimobi, Chinecherem
Veröffentlicht: (2026)
Bomfather: An eBPF-based Kernel-level Monitoring Framework for Accurate Identification of Unknown, Unused, and Dynamically Loaded Dependencies in Modern Software Supply Chains
von: Srinivasan, Naveen, et al.
Veröffentlicht: (2025)
von: Srinivasan, Naveen, et al.
Veröffentlicht: (2025)
Concurrency Testing in the Linux Kernel via eBPF
von: Xu, Jiacheng, et al.
Veröffentlicht: (2025)
von: Xu, Jiacheng, et al.
Veröffentlicht: (2025)
eBPF-mm: Userspace-guided memory management in Linux with eBPF
von: Mores, Konstantinos, et al.
Veröffentlicht: (2024)
von: Mores, Konstantinos, et al.
Veröffentlicht: (2024)
The eBPF Runtime in the Linux Kernel
von: Gbadamosi, Bolaji, et al.
Veröffentlicht: (2024)
von: Gbadamosi, Bolaji, et al.
Veröffentlicht: (2024)
TierBPF: Page Migration Admission Control for Tiered Memory via eBPF
von: Wang, Xi, et al.
Veröffentlicht: (2026)
von: Wang, Xi, et al.
Veröffentlicht: (2026)
bpftime: userspace eBPF Runtime for Uprobe, Syscall and Kernel-User Interactions
von: Zheng, Yusheng, et al.
Veröffentlicht: (2023)
von: Zheng, Yusheng, et al.
Veröffentlicht: (2023)
Cache is King: Smart Page Eviction with eBPF
von: Zussman, Tal, et al.
Veröffentlicht: (2025)
von: Zussman, Tal, et al.
Veröffentlicht: (2025)
Physical Memory Attacks and a Memory Safe Management System for Memory Defense
von: Hillel-Tuch, Alon, et al.
Veröffentlicht: (2024)
von: Hillel-Tuch, Alon, et al.
Veröffentlicht: (2024)
gpu_ext: Extensible OS Policies for GPUs via eBPF
von: Zheng, Yusheng, et al.
Veröffentlicht: (2025)
von: Zheng, Yusheng, et al.
Veröffentlicht: (2025)
Safe Sharing of Fast Kernel-Bypass I/O Among Nontrusting Applications
von: Beadle, Alan, et al.
Veröffentlicht: (2025)
von: Beadle, Alan, et al.
Veröffentlicht: (2025)
Wasm-bpf: Streamlining eBPF Deployment in Cloud Environments with WebAssembly
von: Zheng, Yusheng, et al.
Veröffentlicht: (2024)
von: Zheng, Yusheng, et al.
Veröffentlicht: (2024)
Adaptive and Efficient Dynamic Memory Management for Hardware Enclaves
von: Dhanraj, Vijay, et al.
Veröffentlicht: (2025)
von: Dhanraj, Vijay, et al.
Veröffentlicht: (2025)
Fight Hardware with Hardware: System-wide Detection and Mitigation of Side-Channel Attacks using Performance Counters
von: Carnà, Stefano, et al.
Veröffentlicht: (2024)
von: Carnà, Stefano, et al.
Veröffentlicht: (2024)
AgentSight: System-Level Observability for AI Agents Using eBPF
von: Zheng, Yusheng, et al.
Veröffentlicht: (2025)
von: Zheng, Yusheng, et al.
Veröffentlicht: (2025)
BULKHEAD: Secure, Scalable, and Efficient Kernel Compartmentalization with PKS
von: Guo, Yinggang, et al.
Veröffentlicht: (2024)
von: Guo, Yinggang, et al.
Veröffentlicht: (2024)
Grimlock: Guarding High-Agency Systems with eBPF and Attested Channels
von: Wu, Qiancheng, et al.
Veröffentlicht: (2026)
von: Wu, Qiancheng, et al.
Veröffentlicht: (2026)
SyzParam: Introducing Runtime Parameters into Kernel Driver Fuzzing
von: Sun, Yue, et al.
Veröffentlicht: (2025)
von: Sun, Yue, et al.
Veröffentlicht: (2025)
VeriFence: Lightweight and Precise Spectre Defenses for Untrusted Linux Kernel Extensions
von: Gerhorst, Luis, et al.
Veröffentlicht: (2024)
von: Gerhorst, Luis, et al.
Veröffentlicht: (2024)
Leveraging eBPF and AI for Ransomware Nose Out
von: Sekar, Arjun, et al.
Veröffentlicht: (2024)
von: Sekar, Arjun, et al.
Veröffentlicht: (2024)
Heimdall: Formally Verified Automated Migration of Legacy eBPF Programs to Rust
von: Dasu, Vishnu Asutosh, et al.
Veröffentlicht: (2026)
von: Dasu, Vishnu Asutosh, et al.
Veröffentlicht: (2026)
Yaksha-Prashna: Understanding eBPF Bytecode Network Function Behavior
von: Singh, Animesh, et al.
Veröffentlicht: (2026)
von: Singh, Animesh, et al.
Veröffentlicht: (2026)
SmartX Intelligent Sec: A Security Framework Based on Machine Learning and eBPF/XDP
von: Farasat, Talaya, et al.
Veröffentlicht: (2024)
von: Farasat, Talaya, et al.
Veröffentlicht: (2024)
A Survey of Operating System Kernel Fuzzing
von: Xu, Jiacheng, et al.
Veröffentlicht: (2025)
von: Xu, Jiacheng, et al.
Veröffentlicht: (2025)
Automatic ISA analysis for Secure Context Switching
von: Kalani, Neelu S., et al.
Veröffentlicht: (2025)
von: Kalani, Neelu S., et al.
Veröffentlicht: (2025)
ZeroOS: A Universal Modular Library OS for zkVMs
von: Zou, Guangxian, et al.
Veröffentlicht: (2025)
von: Zou, Guangxian, et al.
Veröffentlicht: (2025)
Securing Cloud File Systems with Trusted Execution
von: Burke, Quinn, et al.
Veröffentlicht: (2023)
von: Burke, Quinn, et al.
Veröffentlicht: (2023)
Saflo: eBPF-Based MPTCP Scheduler for Mitigating Traffic Analysis Attacks in Cellular Networks
von: Lee, Sangwoo, et al.
Veröffentlicht: (2025)
von: Lee, Sangwoo, et al.
Veröffentlicht: (2025)
Governed MCP: Kernel-Level Tool Governance for AI Agents via Logit-Based Safety Primitives
von: Son, Daeyeon
Veröffentlicht: (2026)
von: Son, Daeyeon
Veröffentlicht: (2026)
Contextualizing Security and Privacy of Software-Defined Vehicles: A Literature Review and Industry Perspectives
von: De Vincenzi, Marco, et al.
Veröffentlicht: (2024)
von: De Vincenzi, Marco, et al.
Veröffentlicht: (2024)
SoK: Software Compartmentalization
von: Lefeuvre, Hugo, et al.
Veröffentlicht: (2024)
von: Lefeuvre, Hugo, et al.
Veröffentlicht: (2024)
B-Side: Binary-Level Static System Call Identification
von: Thévenon, Gaspard, et al.
Veröffentlicht: (2024)
von: Thévenon, Gaspard, et al.
Veröffentlicht: (2024)
UPSS: a User-centric Private Storage System with its applications
von: Bozorgi, Arastoo, et al.
Veröffentlicht: (2024)
von: Bozorgi, Arastoo, et al.
Veröffentlicht: (2024)
Retrofitting XoM for Stripped Binaries without Embedded Data Relocation
von: Luo, Chenke, et al.
Veröffentlicht: (2024)
von: Luo, Chenke, et al.
Veröffentlicht: (2024)
The HitchHiker's Guide to High-Assurance System Observability Protection with Efficient Permission Switches
von: Zhang, Chuqi, et al.
Veröffentlicht: (2024)
von: Zhang, Chuqi, et al.
Veröffentlicht: (2024)
Beyond Control: Exploring Novel File System Objects for Data-Only Attacks on Linux Systems
von: Zhou, Jinmeng, et al.
Veröffentlicht: (2024)
von: Zhou, Jinmeng, et al.
Veröffentlicht: (2024)
Ähnliche Einträge
-
MOAT: Towards Safe BPF Kernel Extension
von: Lu, Hongyi, et al.
Veröffentlicht: (2023) -
eBPF-PATROL: Protective Agent for Threat Recognition and Overreach Limitation using eBPF in Containerized and Virtualized Environments
von: Ghimire, Sangam, et al.
Veröffentlicht: (2025) -
When eBPF Meets Machine Learning: On-the-fly OS Kernel Compartmentalization
von: Wang, Zicheng, et al.
Veröffentlicht: (2024) -
Securing Monolithic Kernels using Compartmentalization
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024) -
Improved Leakage Abuse Attacks in Searchable Symmetric Encryption with eBPF Monitoring
von: Dimobi, Chinecherem
Veröffentlicht: (2026)