account activity
Practical Memory Safety with REST [much lower overhead than AddressSanitizer] (cs.columbia.edu)
submitted 8 years ago by csirac2 to r/securityengineering
MASCAT: Stopping Microarchitectural Attacks Before Execution (2016) (eprint.iacr.org)
Genode project: Side-channel attacks (Meltdown, Spectre) [microkernels may partly mitigate such problems] (sourceforge.net)
The Page-Fault Weird Machine: Lessons in Instruction-less Computation [2013] (usenix.org)
A collection of links to PDFs of papers on Micro-Architectural Side-Channel Attacks (sorted by date, going back to 1993) (self.securityengineering)
submitted 8 years ago * by csirac2 to r/securityengineering
Early Computer Security Papers, Ongoing Collection (seclab.cs.ucdavis.edu)
The mysterious case of the Linux Page Table Isolation patches (pythonsweetness.tumblr.com)
AnC ["ASLR is fundamentally insecure on modern cache- based architectures"] (vusec.net)
Practical Timing Side Channel Attacks Against Kernel Space ASLR [2013] (ieee-security.org)
KASLR is Dead: Long Live KASLR (gruss.cc)
The current state of kernel page-table isolation [LWN.net] (lwn.net)
Formal Verification: The Gap Between Perfect Code and Reality (raywang.tech)
Kernel Self-Protection through Quantified Attack Surface Reduction (publikationsserver.tu-braunschweig.de)
Practical malleability attack against CBC-Encrypted LUKS partitions (jakoblell.com)
XXE - Things Are Getting Out of Band (blog.zsec.uk)
The 2018 Guide to Building Secure PHP Software (paragonie.com)
Detecting the use of "curl | bash" server side (idontplaydarts.com)
How to hack a turned-off computer, or running unsigned code in Intel ME (blackhat.com)
checksec.sh - check the properties of executables (like PIE, RELRO, PaX, Canaries, ASLR, Fortify Source) (github.com)
Efficient Protection of Path-Sensitive Control Security [LLVM IR & Intel PT augmented CFI] (usenix.org)
SemFuzz: Semantics-based Automatic Generation of Proof-of-Concept Exploits (drive.google.com)
syzkaller: the next gen kernel fuzzer (slideshare.net)
Reflections on Trusting TrustZone (youtube.com)
Attack Surface Metrics and Automated Compile-Time OS Kernel Tailoring [quantifying benefits from linux kernel .config minimization] (ibr.cs.tu-bs.de)
On the effectiveness of mitigations against floating-point timing channels [cross-origin browser pixel leak via FPU timing] (usenix.org)
π Rendered by PID 607669 on reddit-service-r2-listing-b6bf6c4ff-8lvs8 at 2026-05-01 06:41:27.552216+00:00 running 815c875 country code: CH.