Repository logo

Infoscience

  • English
  • French
Log In
Logo EPFL, École polytechnique fédérale de Lausanne

Infoscience

  • English
  • French
Log In
  1. Home
  2. Academic and Research Output
  3. Conferences, Workshops, Symposiums, and Seminars
  4. Creating Trust by Abolishing Hierarchies
 
conference paper

Creating Trust by Abolishing Hierarchies

Castes, Charly  
•
Ghosn, Adrien  
•
Kalani, Neelu S.  
Show more
2023
HOTOS '23: Proceedings of the 19th Workshop on Hot Topics in Operating SystemsJune 2023
19th Workshop on Hot Topics in Operating Systems (HOTOS '23)

Software is going through a trust crisis. Privileged code is no longer trusted and processes insufficiently protect user code from unverified libraries. While usually treated separately, confidential computing and program compartmentalization are both symptoms of the same problem, deeply rooted in hierarchical commodity systems: privileged software's monopoly over isolation. This paper proposes a separation of powers: to decouple trust and isolation from privilege hierarchies. It introduces an isolation monitor, which delivers verifiable isolation, confidentiality, and integrity to all software, independent of existing system abstractions and privilege hierarchies. Tyche, our prototype isolation monitor, runs on commodity hardware without relying on complex and emerging hardware security extensions. It enables any software component to create, compose, and nest isolation abstractions, including user and kernel sandboxes, enclaves, as well as confidential virtual machines.

  • Files
  • Details
  • Metrics
Type
conference paper
DOI
10.1145/3593856.3595900
Author(s)
Castes, Charly  
Ghosn, Adrien  
Kalani, Neelu S.  
Qian, Yuchen  
Kogias, Marios  
Payer, Mathias  
Bugnion, Edouard  
Date Issued

2023

Publisher

Association for Computing Machinery

Publisher place

New York, NY, United States

Published in
HOTOS '23: Proceedings of the 19th Workshop on Hot Topics in Operating SystemsJune 2023
ISBN of the book

979-8-4007-0195-5

Total of pages

7

Start page

231

End page

238

Subjects

Confidential Computing

•

Security Monitor

•

Isolation Monitor

•

Tyche

•

Remote Attestation

Editorial or Peer reviewed

REVIEWED

Written at

EPFL

EPFL units
DCSL  
Event nameEvent placeEvent date
19th Workshop on Hot Topics in Operating Systems (HOTOS '23)

Providence, RI, USA

June 22 - 24, 2023

Available on Infoscience
November 1, 2023
Use this identifier to reference this record
https://infoscience.epfl.ch/handle/20.500.14299/201994
Logo EPFL, École polytechnique fédérale de Lausanne
  • Contact
  • infoscience@epfl.ch

  • Follow us on Facebook
  • Follow us on Instagram
  • Follow us on LinkedIn
  • Follow us on X
  • Follow us on Youtube
AccessibilityLegal noticePrivacy policyCookie settingsEnd User AgreementGet helpFeedback

Infoscience is a service managed and provided by the Library and IT Services of EPFL. © EPFL, tous droits réservés