Sok: Runtime integrity

M Ammar, A Caulfield, IDO Nunes - arxiv preprint arxiv:2408.10200, 2024 - arxiv.org
This paper provides a systematic exploration of Control Flow Integrity (CFI) and Control Flow
Attestation (CFA) mechanisms, examining their differences and relationships. It addresses …

Sok: Integrity, attestation, and auditing of program execution

M Ammar, A Caulfield, IDO Nunes - 2025 IEEE Symposium on …, 2024 - computer.org
This paper provides a systematic exploration of Control Flow Integrity (CFI) and Control Flow
Attestation (CFA) mechanisms, examining their differences and relationships. It addresses …

Your firmware has arrived: A study of firmware update vulnerabilities

Y Wu, J Wang, Y Wang, S Zhai, Z Li, Y He… - 33rd USENIX Security …, 2024 - usenix.org
Embedded devices are increasingly ubiquitous in our society. Firmware updates are one of
the primary mechanisms to mitigate vulnerabilities in embedded systems. However, the …

On bridging the gap between control flow integrity and attestation schemes

M Ammar, A Abdelraoof, S Vlasceanu - 33rd USENIX Security …, 2024 - usenix.org
Control-flow hijacking attacks are still a major challenge in software security. Several means
of protection and detection have been proposed but gaps still exist. To bridge such gaps …

One for all and all for one: Gnn-based control-flow attestation for embedded devices

M Chilese, R Mitev, M Orenbach… - … IEEE Symposium on …, 2024 - ieeexplore.ieee.org
Control-Flow Attestation (CFA) is a security service that allows an entity (verifier) to verify the
integrity of code execution on a remote computer system (prover). Existing CFA schemes …

Secure and timely gpu execution in cyber-physical systems

J Wang, Y Wang, N Zhang - Proceedings of the 2023 ACM SIGSAC …, 2023 - dl.acm.org
Graphics Processing Units (GPU) are increasingly deployed on Cyber-physical Systems
(CPSs), frequently used to perform real-time safety-critical functions, such as object …

An empirical study of performance interference: Timing violation patterns and impacts

A Li, J Wang, S Baruah, B Sinopoli… - 2024 IEEE 30th Real …, 2024 - ieeexplore.ieee.org
Multi-core platforms are becoming increasingly prevalent in cyber-physical systems such as
automobiles and robots. However, contention for shared resources makes it chal-lenging to …

InsectACIDE: Debugger-based holistic asynchronous CFI for embedded system

Y Wang, CL Mack, X Tan, N Zhang… - 2024 IEEE 30th Real …, 2024 - ieeexplore.ieee.org
Real-time and embedded systems are predominantly written in C, a language that is
notoriously not memory safe. This has led to widespread memory-corruption vulnerabilities …

Teamwork makes tee work: open and resilient remote attestation on decentralized trust

X Zhang, K Qin, S Qu, T Wang, C Zhang… - arxiv preprint arxiv …, 2024 - arxiv.org
Remote Attestation (RA) enables the integrity and authenticity of applications in Trusted
Execution Environment (TEE) to be verified. Existing TEE RA designs employ a centralized …

Speccfa: Enhancing control flow attestation/auditing via application-aware sub-path speculation

A Caulfield, L Tyler, IDO Nunes - arxiv preprint arxiv:2409.18403, 2024 - arxiv.org
At the edge of modern cyber-physical systems, Micro-Controller Units (MCUs) are
responsible for safety-critical sensing/actuation. However, MCU cost constraints rule out the …