Results 11 to 20 of about 1,010 (196)
Comparing Security in eBPF and WebAssembly [PDF]
This paper examines the security of eBPF and WebAssembly (Wasm), two technologies that have gained widespread adoption in recent years, despite being designed for very different use cases and environments. While eBPF is a technology primarily used within operating system kernels such as Linux, Wasm is a binary instruction format designed for a stack ...
Jules Dejaeghere +3 more
openaire +5 more sources
The eBPF technology in the Linux kernel has been widely adopted for different applications, such as networking, tracing, and security, thanks to the programmability it provides. By allowing user-supplied eBPF programs to be executed directly in the kernel, it greatly increases the flexibility and efficiency of deploying customized logic.
Hsin-Wei Hung, Ardalan Amiri Sani
openaire +4 more sources
Understanding the Security of Linux eBPF Subsystem
Published ...
Mohamed Husain Noor Mohamed +2 more
openaire +4 more sources
eBPF-mm: Userspace-guided memory management in Linux with eBPF
ACM SRC@MICRO ...
Konstantinos Mores +2 more
openaire +4 more sources
Photonic‐assisted one‐third microwave frequency divider
Abstract A microwave photonic frequency divider to produce a frequency‐divided microwave signal with its frequency that is one‐third the frequency of the input microwave signal is proposed and experimentally demonstrated. The key novelty of the approach is that the phase control, a condition to realise the frequency division operation, is implemented ...
Yu Zhang +6 more
wiley +1 more source
Evidence-based practice is a salient solution that has been presented to address the persistent educational attainment gap linked to economic disadvantage.
Riikka Hofmann, Sonia Ilie
doaj +1 more source
Practical and Flexible Kernel CFI Enforcement using eBPF
Enforcing control flow integrity (CFI) in the kernel (kCFI) can prevent control-flow hijack attacks. Unfortunately, current kCFI approaches have high overhead or are inflexible and cannot support complex context-sensitive policies.
Williams, Dan +4 more
core +1 more source
Unleashing Unprivileged eBPF Potential with Dynamic Sandboxing [PDF]
For safety reasons, unprivileged users today have only limited ways to customize the kernel through the extended Berkeley Packet Filter (eBPF). This is unfortunate, especially since the eBPF framework itself has seen an increase in scope over the years ...
Han, Xueyuan +2 more
core +1 more source
Programmable System Call Security with eBPF
System call filtering is a widely used security mechanism for protecting a shared OS kernel against untrusted user applications. However, existing system call filtering techniques either are too expensive due to the context switch overhead imposed by userspace agents, or lack sufficient programmability to express advanced policies.
Jinghao Jia +9 more
openaire +3 more sources
Buzzy: An Unguided Smart-Strategy Generation-Based Blackbox Fuzzer for eBPF Technologies: Buzzy: Fuzz Testing eBPF Technologies [PDF]
eBPF is a groundbreaking technology in the Linux kernel. It facilitates programmers to load programs into the kernel that, after a verification step, can JIT compile and execute the eBPF program.
Jensen, Mikkel Tolstrup +1 more
core

