ssrg-vt / libhermitMPK
Intra-Unikernel Isolation with Intel Memory Protection Keys
☆12Updated 5 years ago
Alternatives and similar repositories for libhermitMPK:
Users that are interested in libhermitMPK are comparing it to the libraries listed below
- Multilayered, Log-structured Secure Disk (MlsDisk) protects the disk I/O for TEEs☆16Updated 9 months ago
- ☆30Updated 3 years ago
- ☆11Updated 3 years ago
- Lists of must-read papers (mainly security papers)☆28Updated 7 months ago
- Artifacts for the paper "KSplit: Automating Device Driver Isolation"☆11Updated 2 years ago
- QEMU with support for CHERI☆58Updated last week
- ☆19Updated 3 years ago
- Loupe: Syscall Usage Analysis Tool☆32Updated this week
- The repo contains the SPMP architectural specification, which includes capabilities like access control of read/write/execute requests by…☆15Updated last week
- FlexOS: Towards Flexible OS Isolation (ASPLOS'22) Artifact Evaluation Repository☆16Updated 3 years ago
- Artifacts, including experiments and graphs, for the paper: "Unikraft: Fast, Specialized Unikernels the Easy Way" (EuroSys'21 - Best Pape…☆27Updated 3 years ago
- ☆16Updated last year
- A library OS for Linux multi-process applications, with Intel TDX support (experimental)☆36Updated 6 months ago
- Virtualisation platform using CHERI for isolation and sharing☆37Updated 10 months ago
- ☆120Updated 2 months ago
- A formally verified security module for AMD confidential VMs☆43Updated 3 weeks ago
- Proof-of-concept implementation for the paper "(M)WAIT for It: Bridging the Gap between Microarchitectural and Architectural Side Channel…☆25Updated last year
- CheriOS -- a minimal microkernel that demonstrates "clean-slate" CHERI memory protection and object capabilities☆40Updated 2 years ago
- ☆50Updated 2 years ago
- OZZ: Identifying Kernel Out-of-Order Concurrency Bugs with In-Vivo Memory Access Reordering☆35Updated 7 months ago
- Using Malicious #VC Interrupts to Break AMD SEV-SNP (IEEE S&P 2024)☆24Updated last year
- LFI: Practical, Efficient, and Secure Software-based Sandboxing☆67Updated this week
- Verification of BPF JIT compilers☆54Updated last year
- Hodor-PKU☆23Updated 3 years ago
- RedLeaf Operating System☆123Updated 2 years ago
- ☆13Updated 6 years ago
- A tool to enable fuzzing for Spectre vulnerabilities☆30Updated 5 years ago
- ☆21Updated 2 years ago
- Pedagogical Hypervisor, based on MIT JOS☆67Updated 7 years ago
- Microscope: Enabling Microarchitectural Replay Attacks☆19Updated 4 years ago