Loading…
May 10-12 | Vancouver, British Columbia + Virtual
View More Details & Registration

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for Linux Security Summit North America 2023 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

Please note: This schedule is automatically displayed in Pacific Daylight Time (PDT), UTC-7. To see the schedule in your preferred timezone, select from the drop-down menu to the right, above "Filter by Date." 

The schedule is subject to change.

Wednesday, May 10 • 2:00pm - 2:45pm
HotBPF++: A More Powerful Memory Protection for the Linux Kernel - Zicheng Wang & Yueqi Chen, University of Colorado Boulder

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Feedback form is now closed.
The large time window between the disclosure and patching of kernel vulnerabilities leaves the system open for exploitation. In the LSS Europe 2022, we presented HotBPF designed against heap exploitation during this time window. While HotBPF received wide interest from industry leaders including Huawei and Meta, its capability is restricted to heap corruption without considering other error types. As such, we designed a more powerful protection - HotBPF++. It inherits all advantages that HotBPF has: automatic deployment, on-the-fly enabling, hardware-independence, and lightweight design. However, HotBPF++ goes beyond HotBPF by not only preventing corruptions in memory regions other than heap but also detecting the root cause of corruptions. In this talk, we will describe the core idea of HotBPF++. After this, we will delve into more details of protection policies already integrated into HotBPF++, which cover five most common errors that can be reported by state-of-the-art sanitizers. Finally, we will evaluate the performance/memory overhead and scalability of HotBPF++ using various benchmarks and demonstrate its security improvement using real-world vulnerabilities.

Speakers
ZW

Zicheng Wang

Professional Research Assistant, University of Colorado Boulder
Wang Zicheng is currently serving as a Research Assistant at the University of Colorado Boulder, he is also pursuing a Ph.D. in Computer Science at Nanjing University in China. With a deep interest in operating system security, Wang's ongoing research focuses on leveraging the power... Read More →
avatar for Yueqi Chen

Yueqi Chen

Assistant Professor, University of Colorado Boulder
Yueqi Chen is an Assistant Professor in the Department of Computer Science at CU Boulder. His research focuses on system security and software security. He is particularly interested in revolutionizing exploitation techniques, formalizing weird machine, and using outcomes of these... Read More →



Wednesday May 10, 2023 2:00pm - 2:45pm PDT
Room 212-214
  Refereed Presentations, Intermediate
  • Session Slides Attached Yes