Fetching the paper…
Reading the bibliography…
With the alarming rate of security advisories and privacy concerns on connected devices, there is an urgent need for strong isolation guarantees in resource-constrained devices that demand very lightweight solutions.
Efficient software-based fault isolation
Robert Wahbe, Steven Lucco, Thomas E Anderson, and Susan L Graham · 1994
Earlier work this paper cites.
Composing high-performance memory allocators
Emery D Berger, Benjamin G Zorn, and Kathryn S McKinley · 2001
Earlier work this paper cites.
Linux security modules: General security support for the linux kernel
James Morris, Stephen Smalley, and Greg Kroah-Hartman · 2002
Earlier work this paper cites.
Preventing privilege escalation
Niels Provos, Markus Friedl, and Peter Honeyman · 2003
Earlier work this paper cites.
Privtrans: Automatically partitioning programs for privilege separation
David Brumley and Dawn Song · 2004
Earlier work this paper cites.
Making information flow explicit in histar
Nickolai Zeldovich, Silas Boyd-Wickizer, Eddie Kohler, and David Mazières · 2006
Earlier work this paper cites.
Information flow control for standard os abstractions
Maxwell Krohn, Alexander Yip, Micah Brodsky, Natan Cliffer, M Frans Kaashoek, Eddie Kohler, and Robert Morris · 2007
Earlier work this paper cites.
Wedge: Splitting applications into reduced-privilege compartments
Andrea Bittau, Petr Marchenko, Mark Handley, and Brad Karp · 2008
Earlier work this paper cites.
Laminar: Practical fine-grained decentralized information flow control
Indrajit Roy, Donald E Porter, Michael D Bond, Kathryn S McKinley, and Emmett Witchel · 2009
Earlier work this paper cites.
Adapting software fault isolation to contemporary cpu architectures
David Sehr, Robert Muth, Cliff L Biffle, Victor Khimenko, Egor Pasko, Bennet Yee, Karl Schimpf, and Brad Chen · 2010
Earlier work this paper cites.
Rethinking the library os from the top down
Donald E Porter, Silas Boyd-Wickizer, Jon Howell, Reuben Olinsky, and Galen C Hunt · 2011
Earlier work this paper cites.
Architecture reference manual
ARM ARM · 2012
Earlier work this paper cites.
Innovative technology for CPU based attestation and sealing
Ittai Anati, Shay Gueron, Simon Johnson, and Vincent Scarlata · 2013
Earlier work this paper cites.
Unikernels: Library operating systems for the cloud
Anil Madhavapeddy, Richard Mortier, Charalampos Rotsos, David Scott, Balraj Singh, Thomas Gazagnaire, Steven Smith, Steven Hand, and Jon Crowcroft · 2013
Earlier work this paper cites.
The matter of heartbleed
Zakir Durumeric, Frank Li, James Kasten, Johanna Amann, Jethro Beekman, Mathias Payer, Nicolas Weaver, David Adrian, Vern Paxson, Michael Bailey, et al · 2014
Earlier work this paper cites.
Armlock: Hardware-based fault isolation for arm
Yajin Zhou, Xiaoguang Wang, Yue Chen, and Zhi Wang · 2014
Earlier work this paper cites.
ARM®v8-M Security Extensions: requirements on development tools
ARM · 2015
Cited alongside, same era.
iris: Vetting private api abuse in ios applications
Zhui Deng, Brendan Saltaformaggio, Xiangyu Zhang, and Dongyan Xu · 2015
Cited alongside, same era.
Between mutual trust and mutual distrust: practical fine-grained privilege separation in multithreaded applications
Jun Wang, Xi Xiong, and Peng Liu · 2015
Cited alongside, same era.
Cheri: A hybrid capability-system architecture for scalable software compartmentalization
Robert NM Watson, Ben Laurie, Steven J Murdoch, Robert Norton, Michael Roe, Stacey Son, Munraj Vadera, Jonathan Woodruff, Peter G Neumann, Simon W Moore, et al · 2015
Cited alongside, same era.
Scone: Secure linux containers with intel sgx
Sergei Arnautov, Bohdan Trach, Franz Gregor, Thomas Knauth, Andre Martin, Christian Priebe, Joshua Lind, Divya Muthukumaran, Dan O’keeffe, Mark Stillwell, et al · 2016
Cited alongside, same era.
Hyperflow: A processor architecture for nonmalleable, timing-safe information flow security
Andrew Ferraiuolo, Mark Zhao, Andrew C Myers, and G Edward Suh · 2018
Later among the works it cites.
Spectre attacks: Exploiting speculative execution
Paul Kocher, Daniel Genkin, Daniel Gruss, Werner Haas, Mike Hamburg, Moritz Lipp, Stefan Mangard, Thomas Prescher, Michael Schwarz, and Yuval Yarom · 2018
Later among the works it cites.
Moritz Lipp, Michael Schwarz, Daniel Gruss, Thomas Prescher, Werner Haas, Stefan Mangard, Paul Kocher, Daniel Genkin, Yuval Yarom, and Mike Hamburg · 2018
Later among the works it cites.
libmpk: Software abstraction for intel memory protection keys
Soyeon Park, Sangho Lee, Wen Xu, Hyungon Moon, and Taesoo Kim · 2018
Later among the works it cites.
https://github.com/netblue30/firejail
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
Yaohui Chen, Sebassujeen Reymondjohnson, Zhichuang Sun, and Long Lu · 2016
Cited alongside, same era.
Enforcing least privilege memory views for multithreaded applications
Terry Ching-Hsiang Hsu, Kevin Hoffman, Patrick Eugster, and Mathias Payer · 2016
Cited alongside, same era.
Efficient address translation for architectures with multiple page sizes
Guilherme Cox and Abhishek Bhattacharjee · 2017
Cited alongside, same era.
Jitguard: hardening just-in-time compilers with sgx
Tommaso Frassetto, David Gens, Christopher Liebchen, and Ahmad-Reza Sadeghi · 2017
Cited alongside, same era.
Trustshadow: Secure execution of unmodified applications with arm trustzone
Le Guan, Peng Liu, Xinyu Xing, Xinyang Ge, Shengzhi Zhang, Meng Yu, and Trent Jaeger · 2017
Cited alongside, same era.
No need to hide: Protecting safe regions on commodity hardware
Koen Koning, Xi Chen, Herbert Bos, Cristiano Giuffrida, and Elias Athanasopoulos · 2017
Cited alongside, same era.
Sandcrust: Automatic sandboxing of unsafe components in rust
Benjamin Lamowski, Carsten Weinhold, Adam Lackorzynski, and Hermann Härtig · 2017
Cited alongside, same era.
firejail · 2019
Later among the works it cites.
https://github.com/google/nsjail
nsjail · 2019
Later among the works it cites.
https://iot.eclipse.org/resources/iot-developer-survey/iot-developer-survey-2019.pdf , 2019
Iot developer survey 2019 · 2019
Later among the works it cites.
A fork () in the road
Andrew Baumann, Jonathan Appavoo, Orran Krieger, and Timothy Roscoe · 2019
Later among the works it cites.
Sok: Shining light on shadow stacks
Nathan Burow, Xinping Zhang, and Mathias Payer · 2019
Later among the works it cites.
Isolation and beyond: Challenges for system security
Tyler Hunt, Zhipeng Jia, Vance Miller, Christopher J Rossbach, and Emmett Witchel · 2019
Later among the works it cites.
Intel® 64 and ia-32 architectures software developer’s manual, 2019
Intel · 2019
Later among the works it cites.
Snmalloc: a message passing allocator
Paul Liétar, Theodore Butler, Sylvan Clebsch, Sophia Drossopoulou, Juliana Franco, Matthew J Parkinson, Alex Shamis, Christoph M Wintersteiger, and David Chisnall · 2019
Later among the works it cites.
Enclavedom: Privilege separation for large-tcb applications in trusted execution environments
Marcela S Melara, Michael J Freedman, and Mic Bowman · 2019
Later among the works it cites.
Finer grained memory protection on cortex-m3 mpus
tock · 2019
Later among the works it cites.
Introduction: Bugs in memory management code, 2019
Project Zero · 2019
Later among the works it cites.
https://www.cvedetails.com/cve/CVE-2004-1097/
Format string vulnerability in the cherokee · 2020
Closest in time.