Title :
Dancing with Giants: Wimpy Kernels for On-Demand I/O Isolation
Author :
Zongwei Zhou ; Miao Yu ; Gligor, Virgil D.
Abstract :
To be trustworthy, security-sensitive applications must be small and simple--or wimpy. Because of their limited size and functions, they must securely compose with large, untrusted commodity systems--or giants--to survive. A security architecture based on a wimpy kernel can provide on-demand isolated I/O channels for wimp applications without bloating the underlying trusted computing base.
Keywords :
security of data; trusted computing; on-demand isolated I/O channels; security architecture; security-sensitive applications; trusted computing; untrusted commodity systems; wimpy kernels; Computer architecture; Computer security; Hardware; Kernel; Process control; Trust management; Universal Serial Bus; TCB reduction; export and mediate; on-demand I/O isolation; outsource and verify; trusted computing base; wimpy kernels;
Journal_Title :
Security & Privacy, IEEE
DOI :
10.1109/MSP.2015.26