intel / ccc-linux-guest-hardening
Linux Security Hardening for Confidential Compute
☆66Updated 5 months ago
Alternatives and similar repositories for ccc-linux-guest-hardening:
Users that are interested in ccc-linux-guest-hardening are comparing it to the libraries listed below
- ☆36Updated this week
- ☆85Updated last week
- Calculate AMD SEV/SEV-ES/SEV-SNP measurement for confidential computing☆60Updated 9 months ago
- Breaking Confidential VMs with Malicious Interrupts (USENIX Security 2024)☆28Updated 10 months ago
- Using Malicious #VC Interrupts to Break AMD SEV-SNP (IEEE S&P 2024)☆24Updated 11 months ago
- Telling your secrets without page faults: Stealthy page table-based attacks on enclaved execution☆30Updated 6 years ago
- Compiler-based tool that protects Intel SGX applications against controlled-channel attacks☆27Updated 7 years ago
- AMD SEV Tool☆83Updated last year
- Microarchitectural attack development frameworks for prototyping attacks in native code (C, C++, ASM) and in the browser☆61Updated 2 years ago
- Trust Domain Extensions (TDX) is introducing new, architectural elements to help deploy hardware-isolated, virtual machines (VMs) called …☆55Updated 3 months ago
- ☆23Updated 4 months ago
- ☆28Updated last week
- Tool to Analyze Speculative Execution Attacks and Mitigations☆54Updated 3 years ago
- ☆40Updated last month
- ☆90Updated 11 months ago
- ☆13Updated 5 years ago
- Proof-of-concept implementation for the paper "CacheWarp: Software-based Fault Injection using Selective State Reset" (USENIX Security 20…☆60Updated 7 months ago
- Revizor - a fuzzer to search for microarchitectural leaks in CPUs☆122Updated last week
- ☆28Updated this week
- COCONUT-SVSM☆143Updated this week
- A rust implementation for DMTF SPDM protocol to support Confidential Computing☆27Updated last week
- Kasper: Scanning for Generalized Transient Execution Gadgets in the Linux Kernel☆57Updated 10 months ago
- ☆70Updated 2 years ago
- Code repository for the research paper "A Systematic Look at Ciphertext Side Channels on AMD SEV-SNP"☆13Updated 2 years ago
- Linux SVSM (Secure VM Service Module) for secure x86 virtualization in Rust☆128Updated last year
- Confidential Containers Shim Firmware☆107Updated this week
- Linux kernel source tree☆26Updated this week
- Documentation related to Intel's Confidential Computing offerings☆16Updated last week
- A library OS for Linux multi-process applications, with Intel TDX support (experimental)☆32Updated 5 months ago
- A tool for detecting Spectre vulnerabilities through fuzzing☆37Updated 3 years ago