7 papers
It's a Feature, Not a Bug: Secure and Auditable State Rollback for Confidential Cloud Applications
Quinn Burke, Anjo Vahldiek-Oberwagner, Michael Swift +1
Replay and rollback attacks threaten cloud application integrity by reintroducing authentic yet stale data through an untrusted storage interface to compromise application decision…
LibIHT: A Hardware-Based Approach to Efficient and Evasion-Resistant Dynamic Binary Analysis
Changyu Zhao, Yohan Beugin, Jean-Charles Noirot Ferrand +3
Dynamic program analysis is invaluable for malware detection, debugging, and performance profiling. However, software-based instrumentation incurs high overhead and can be evaded b…
Efficient Storage Integrity in Adversarial Settings
Quinn Burke, Ryan Sheatsley, Yohan Beugin +4
Storage integrity is essential to systems and applications that use untrusted storage (e.g., public clouds, end-user devices). However, known methods for achieving storage integrit…
On Scalable Integrity Checking for Secure Cloud Disks
Quinn Burke, Ryan Sheatsley, Rachel King +3
Merkle hash trees are the standard method to protect the integrity and freshness of stored data. However, hash trees introduce additional compute and I/O costs on the I/O critical…
Securing Cloud File Systems with Trusted Execution
Quinn Burke, Yohan Beugin, Blaine Hoak +7
Cloud file systems offer organizations a scalable and reliable file storage solution. However, cloud file systems have become prime targets for adversaries, and traditional designs…
Secure IP Address Allocation at Cloud Scale
Eric Pauley, Kyle Domico, Blaine Hoak +5
Public clouds necessitate dynamic resource allocation and sharing. However, the dynamic allocation of IP addresses can be abused by adversaries to source malicious traffic, bypass…