Secure compilation to protected module architectures

69Citations
Citations of this article
28Readers
Mendeley users who have this article in their library.

Abstract

A fully abstract compiler prevents security features of the source language from being bypassed by an attacker operating at the target language level. Unfortunately, developing fully abstract compilers is very complex, and it is even more so when the target language is an untyped assembly language. To provide a fully abstract compiler that targets untyped assembly, it has been suggested to extend the target language with a protected module architecture-an assembly-level isolation mechanism which can be found in nextgeneration processors. This article provides a fully abstract compilation scheme whose source language is an object-oriented, high-level language and whose target language is such an extended assembly language. The source language enjoys features such as dynamic memory allocation and exceptions. Secure compilation of first-order method references, cross-package inheritance, and inner classes is also presented. Moreover, this article contains the formal proof of full abstraction of the compilation scheme. Measurements of the overhead introduced by the compilation scheme indicate that it is negligible.

Cite

CITATION STYLE

APA

Patrignani, M., Agten, P., Strackx, R., Jacobs, B., Clarke, D., & Piessens, F. (2015). Secure compilation to protected module architectures. ACM Transactions on Programming Languages and Systems, 37(2). https://doi.org/10.1145/2699503

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free