Commercial hypervisor-based task sandboxing mechanisms are unsecured? But we can fix it!

نویسندگان

چکیده

Cyber–Physical–Social Systems are frequently prescribed for providing valuable information on personalized services. The foundation of these services is big data which must be trustily collected and efficiently processed. Though High Performance Computing Communication technique makes great contributions to addressing the issue processing, its effectiveness still relies veracity generated from Internet Things (IoT) devices. Nevertheless, IoT devices, as basic production facilities ensure data’s security, unable deploy expensive security extensions. Consequently, it causes implementation task sandboxing, fundamental mechanism in Real-Time Operating (RTOSs), much simpler more vulnerable. In this paper, we take ARM Mbed uVisor an example system, utilizing hypervisor-based sandboxing mechanisms, presents three new findings: First, discover vulnerabilities against can exploited compromise system-maintained structure manipulate any tasks’ data. Second, present LIPS (Lightweight Intra-Mode Privilege Separation), building a special protection domain isolate particular structures. Finally, thorough evaluation experimental tests show efficiency defeat attacks, with small runtime overheads good portability.

برای دانلود باید عضویت طلایی داشته باشید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

How medicine is broken, and how we can fix it.

Now welcome, the most inspiring book today from a very professional writer in the world, bad pharma how medicine is broken and how we can fix it. This is the book that many people in the world waiting for to publish. After the announced of this book, the book lovers are really curious to see how this book is actually. Are you one of them? That's very proper. You may not be regret now to seek fo...

متن کامل

Creeping Failure - How We Broke the Internet and What We Can Do to Fix It (updated)

That's it, a book to wait for in this month. Even you have wanted for long time for releasing this book creeping failure how we broke the internet and what we can do to fix it; you may not be able to get in some stress. Should you go around and seek fro the book until you really get it? Are you sure? Are you that free? This condition will force you to always end up to get a book. But now, we ar...

متن کامل

We Can, but Should We?

We can, but should we? After recently reflecting upon our profession as pediatric critical care physicians , I concluded that this one complex question gets asked many times throughout the day – or at least it should. A recent report discussed an emerging paradigm in pediatric critical care medicine (1). With more and more chronic patients filling our pediatric intensive care unit (PICU), perha...

متن کامل

Why Methods for Genomic Data Privacy Fail and How We Can Fix It

The increasing integration of patient-specific genomic data into clinical practice and research raises serious privacy concerns. Various privacy enhancing techniques that “de-identify” the data through the removal of explicit identifiers, such as name or Social Security number, have been proposed and deployed. While advocates of these systems have the best of intentions, they are fundamentally ...

متن کامل

The Failure of Environmental Education (and How We Can Fix It)

May 2007 | Volume 5 | Issue 5 | e120 On April 22, 1970, one of us (Blumstein) went down to the notoriously foul Schuylkill River and collected a water sample for a display highlighting air and water pollution in Philadelphia’s Rittenhouse Square. Blumstein remembers being surprised that polluted water could be clear. On that fi rst Earth Day, pollution was rampant, and environmental literacy wa...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

ژورنال

عنوان ژورنال: Journal of Systems Architecture

سال: 2021

ISSN: ['1383-7621', '1873-6165']

DOI: https://doi.org/10.1016/j.sysarc.2021.102114