Promptcare: Prompt copyright protection by watermark injection and verification

H Yao, J Lou, Z Qin, K Ren - 2024 IEEE Symposium on Security …, 2024 - ieeexplore.ieee.org
Large language models (LLMs) have witnessed a meteoric rise in popularity among the
general public users over the past few months, facilitating diverse downstream tasks with …

You shall not (by) pass! practical, secure, and fast pku-based sandboxing

A Voulimeneas, J Vinck, R Mechelinck… - Proceedings of the …, 2022 - dl.acm.org
Memory Protection Keys for Userspace (PKU) is a recent hardware feature that allows
programs to assign virtual memory pages to protection domains, and to change domain …

Ultimate {SLH}: Taking speculative load hardening to the next level

Z Zhang, G Barthe, C Chuengsatiansup… - 32nd USENIX Security …, 2023 - usenix.org
In this paper we revisit the Spectre v1 vulnerability and software-only countermeasures.
Specifically, we systematically investigate the performance penalty and security properties of …

Vdom: Fast and unlimited virtual domains on multiple architectures

Z Yuan, S Hong, R Chang, Y Zhou, W Shen… - Proceedings of the 28th …, 2023 - dl.acm.org
Hardware memory domain primitives, such as Intel MPK and ARM Memory Domain, have
been used for efficient in-process memory isolation. However, they can only provide a …

Capacity: Cryptographically-enforced in-process capabilities for modern arm architectures

K Dinh Duy, K Cho, T Noh, H Lee - Proceedings of the 2023 ACM …, 2023 - dl.acm.org
In-process compartmentalization and access control have been actively explored to provide
in-place and efficient isolation of in-process security domains. Many works have proposed …

Panic: Pan-assisted intra-process memory isolation on arm

J Xu, M **e, C Wu, Y Zhang, Q Li, X Huang… - Proceedings of the …, 2023 - dl.acm.org
Intra-process memory isolation is a well-known technique to enforce least privilege within a
process. In this paper, we propose a generic and efficient intra-process memory isolation …

SoK: Software Compartmentalization

H Lefeuvre, N Dautenhahn, D Chisnall… - arxiv preprint arxiv …, 2024 - arxiv.org
Decomposing large systems into smaller components with limited privileges has long been
recognized as an effective means to minimize the impact of exploits. Despite historical roots …

Rewind & Discard: Improving software resilience using isolated domains

M Gülmez, T Nyman, C Baumann… - 2023 53rd Annual …, 2023 - ieeexplore.ieee.org
Well-known defenses exist to detect and mitigate common faults and memory safety
vulnerabilities in software. Yet, many of these mitigations do not address the challenge of …

Friend or foe inside? exploring in-process isolation to maintain memory safety for unsafe rust

M Gülmez, T Nyman, C Baumann… - 2023 IEEE Secure …, 2023 - ieeexplore.ieee.org
Rust is a popular memory-safe systems programming language. In order to interact with
hardware or call into non-Rust libraries, Rust provides unsafe language features that shift …

ThreadLock: Native Principal Isolation Through Memory Protection Keys

W Blair, W Robertson, M Egele - Proceedings of the 2023 ACM Asia …, 2023 - dl.acm.org
Inter-process isolation has been deployed in operating systems for decades, but secure intra-
process isolation remains an active research topic. Achieving secure intra-process isolation …