BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//Talks.cam//talks.cam.ac.uk//
X-WR-CALNAME:Talks.cam
BEGIN:VEVENT
SUMMARY:Antikernel: a decentralized secure hardware-software operating sys
 tem architecture - Andrew D. Zonenberg\, IOActive
DTSTART:20171215T160000Z
DTEND:20171215T163000Z
UID:TALK97102@talks.cam.ac.uk
CONTACT:Markus Kuhn
DESCRIPTION:The “kernel” model has been part of operating system archi
 tecture for decades\, but upon closer inspection it clearly violates the p
 rinciple of least required privilege. The kernel is a single entity which 
 provides many services (memory management\, interfacing to drivers\, conte
 xt switching\, IPC) which have no real relation to each other\, and has th
 e ability to observe or tamper with all state of the system. This work pre
 sents Antikernel\, a novel operating system architecture consisting of bot
 h hardware and software components and designed to be fundamentally more s
 ecure than the state of the art. To make formal verification easier\, and 
 improve parallelism\, the Antikernel system is highly modular and consists
  of many independent hardware state machines (one or more of which may be 
 a general-purpose CPU running application or systems software) connected b
 y a packet-switched network-on-chip (NoC). We create and verify an FPGA-ba
 sed prototype of the system.\n\nCHES 2016\, https://eprint.iacr.org/2016/5
 50
LOCATION:Computer Laboratory\, William Gates Building\, Room FW11
END:VEVENT
END:VCALENDAR
