Dear all,
Sorry for the delayed notification. We have submitted a paper with the
following title and abstract:
Title: "xMP: Selective Memory Protection for Kernel and User Space"
Abstract: Attackers leverage memory corruption vulnerabilities to
establish primitives for reading from or writing to the address space of
the vulnerable process. These primitives form the foundation for
code-reuse and data-oriented attacks. While various defenses against the
former class of attacks have proven effective, mitigation of the latter
remains an open problem. In this paper, we identify various shortcomings
of the x86 architecture regarding memory isolation, and leverage
virtualization to build an effective defense against data-oriented
attacks. We implement xMP, which consists of (in-guest) selective memory
protection primitives that equip VMs with the ability to isolate
sensitive data in user or kernel space into disjoint protection domains.
We interface the Xen altp2m subsystem with the Linux memory management
system, lending VMs the flexibility to define custom policies. Contrary
to conventional approaches, xMP takes advantage of virtualization
extensions, but after initialization, it does not require any hypervisor
intervention. To ensure the integrity of in-kernel management
information, and pointers to sensitive data within protection domains,
xMP protects pointers with HMACs bound to an immutable context, so that
integrity validation succeeds only in the right context. We have applied
xMP to fortify the page tables and process credentials of the Linux
kernel, as well as sensitive data in various user-space applications.
Overall, our evaluation shows that xMP introduces minimal overhead for
real-world workloads and applications, and offers effective protection
against data-oriented attacks.
Once this paper gets accepted, we will acknowledge SPARTA.
Best,
~Sergej
--
Sergej Proskurin, M.Sc.
Wissenschaftlicher Mitarbeiter
Technische Universität München
Fakultät für Informatik
Lehrstuhl für Sicherheit in der Informatik
Boltzmannstraße 3
85748 Garching (bei München)
Tel. +49 (0)89 289-18592
Fax +49 (0)89 289-18579
Dear all,
we plan to submit a paper to the ARES conference (3rd International
Workshop on Security and Forensics of IoT, dealine April 30, 2019). The
paper presents a secure Publish/Subscribe Protocol for Internet of
Things. Our proposal enhances the security and privacy of users using
MQTT-based services in IoT. Therefore, this paper is in line with WP6
that is focusing on security and privacy protection in IoT.
Please find a final version of our submission (for the first round of
double blind review) attached to this email.
Additional sensitive information in the final version is not expected.
Please let me know if
you have further questions.
Thank you very much!
Best regards,
Lukas Malina
(BUT, WP6 Task 6.5)
--
Ing. Lukáš Malina, Ph.D.
E-mail: malina(a)feec.vutbr.cz
Brno University of Technology
Faculty of Electrical Engineering and Communication
Department of Telecommunications
Technicka 12
616 00 Brno
Czech Republic
Dear all,
We have submitted the two papers attached for publication. If accepted we will acknowledge SPARTA.
Kind regards,
Miguel Correia
------------------------------
Miguel P. Correia
Instituto Superior Técnico / Universidade de Lisboa
INESC-ID
URL: http://www.gsd.inesc-id.pt/~mpc/
Rua Alves Redol, 9
1000-029 Lisboa
Portugal
Tel.: +351 213 100 278
Email: miguel.p.correia(a)tecnico.ulisboa.pt
------------------------------
Dear members of the Dissemination Committee,
Some partners have multiple people as part of this DC mailing list.
Given that research articles are sent to this list before being accepted for publication (quite often for double blind evaluation), and to minimize the probability of the influencing the evaluation, I kindly ask each partner to review their participation in the DC mailing list to minimize the number of people accessing information.
Kind regards,
Nelson
--
Nelson Escravana
Director
Communications & Cybersecurity
Member of the Board of Directors
INOV - INESC Inovação
Rua Alves Redol, nr. 9
1000-029 Lisboa
Portugal
Tel.: + 351 21 310 0476
Fax: + 351 21 310 0445
This e-mail and its attachments may contain confidential and/or privileged information. If you are not the intended recipient you must not use, distribute or reproduce this e-mail.
I try to read e-mail from once to four times every business day. If you need an urgent reply to a message, please contact me by phone.
Dear all,
We have submitted the attached paper to ETFA.
This paper is still under evaluation.
If it gets accepted, we will acknowledge SPARTA.
Best,
Vivek Nigam
--
fortiss · Landesforschungsinstitut des Freistaats Bayern
An-Institut Technische Universität München
Guerickestraße 25
80805 München
Germany
Tel.: +49 (89) 3603522 527
Fax: +49 (89) 3603522 50
E-Mail: nigam(a)fortiss.org
http://www.fortiss.org
Amtsgericht München: HRB: 176633
USt-IdNr.: DE263907002, Steuer-Nr.: 143/237/25900
Rechtsform: gemeinnützige GmbH
Sitz der Gesellschaft: München
Geschäftsführer: Dr. Harald Rueß, Thomas Vallon
Vorsitzender des Aufsichtsrats: Dr. Manfred Wolter