A copy of this work was available on the public web and has been preserved in the Wayback Machine. The capture dates from 2021; you can also visit the original URL.
The file type is application/pdf
.
Donky: Domain Keys - Efficient In-Process Isolation for RISC-V and x86
2020
USENIX Security Symposium
Efficient and secure in-process isolation is in great demand, as evidenced in the shift towards JavaScript and the recent revival of memory protection keys. Yet, state-of-the-art systems do not offer strong security or struggle with frequent domain crossings and oftentimes intrusive kernel modifications. We propose Donky, an efficient hardware-software codesign for strong in-process isolation based on dynamic memory protection domains. The two components of our design are a secure software
dblp:conf/uss/SchrammelWSS0MG20
fatcat:f3rywxsejbdgbpomcyhhzre42q