{"id":"https://openalex.org/W4381611552","doi":"https://doi.org/10.1145/3593856.3595892","title":"Kernel extension verification is untenable","display_name":"Kernel extension verification is untenable","publication_year":2023,"publication_date":"2023-06-22","ids":{"openalex":"https://openalex.org/W4381611552","doi":"https://doi.org/10.1145/3593856.3595892"},"language":"en","primary_location":{"id":"doi:10.1145/3593856.3595892","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3593856.3595892","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 19th Workshop on Hot Topics in Operating Systems","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://vtechworks.lib.vt.edu/bitstreams/2b9415a6-40b0-4a58-879b-40a8c0193c9b/download","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5024597600","display_name":"Jinghao Jia","orcid":"https://orcid.org/0009-0005-0837-4677"},"institutions":[{"id":"https://openalex.org/I157725225","display_name":"University of Illinois Urbana-Champaign","ror":"https://ror.org/047426m28","country_code":"US","type":"education","lineage":["https://openalex.org/I157725225"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Jinghao Jia","raw_affiliation_strings":["Department of Computer Science, University of Illinois Urbana-Champaign, Urbana, IL, United States of America"],"raw_orcid":"https://orcid.org/0009-0005-0837-4677","affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Illinois Urbana-Champaign, Urbana, IL, United States of America","institution_ids":["https://openalex.org/I157725225"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5010451479","display_name":"Raj Sahu","orcid":"https://orcid.org/0000-0001-5160-0362"},"institutions":[{"id":"https://openalex.org/I859038795","display_name":"Virginia Tech","ror":"https://ror.org/02smfhw86","country_code":"US","type":"education","lineage":["https://openalex.org/I859038795"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Raj Sahu","raw_affiliation_strings":["Department of Computer Science, Virginia Tech, Blacksburg, VA, United States of America"],"raw_orcid":"https://orcid.org/0000-0001-5160-0362","affiliations":[{"raw_affiliation_string":"Department of Computer Science, Virginia Tech, Blacksburg, VA, United States of America","institution_ids":["https://openalex.org/I859038795"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5011473102","display_name":"A. Oswald","orcid":"https://orcid.org/0009-0002-1310-547X"},"institutions":[{"id":"https://openalex.org/I859038795","display_name":"Virginia Tech","ror":"https://ror.org/02smfhw86","country_code":"US","type":"education","lineage":["https://openalex.org/I859038795"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Adam Oswald","raw_affiliation_strings":["Department of Computer Science, Virginia Tech, Blacksburg, VA, USA"],"raw_orcid":"https://orcid.org/0009-0002-1310-547X","affiliations":[{"raw_affiliation_string":"Department of Computer Science, Virginia Tech, Blacksburg, VA, USA","institution_ids":["https://openalex.org/I859038795"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5045373894","display_name":"Dan Williams","orcid":"https://orcid.org/0000-0003-1537-0525"},"institutions":[{"id":"https://openalex.org/I859038795","display_name":"Virginia Tech","ror":"https://ror.org/02smfhw86","country_code":"US","type":"education","lineage":["https://openalex.org/I859038795"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Dan Williams","raw_affiliation_strings":["Department of Computer Science, Virginia Tech, Blacksburg, VA, United States of America"],"raw_orcid":"https://orcid.org/0000-0003-1537-0525","affiliations":[{"raw_affiliation_string":"Department of Computer Science, Virginia Tech, Blacksburg, VA, United States of America","institution_ids":["https://openalex.org/I859038795"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5053264361","display_name":"Michael Le","orcid":"https://orcid.org/0000-0002-5000-6393"},"institutions":[{"id":"https://openalex.org/I1341412227","display_name":"IBM (United States)","ror":"https://ror.org/05hh8d621","country_code":"US","type":"company","lineage":["https://openalex.org/I1341412227"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Michael V. Le","raw_affiliation_strings":["IBM Research, Yorktown Heights, NY, United States of America"],"raw_orcid":"https://orcid.org/0000-0002-5000-6393","affiliations":[{"raw_affiliation_string":"IBM Research, Yorktown Heights, NY, United States of America","institution_ids":["https://openalex.org/I1341412227"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5027605695","display_name":"Tianyin Xu","orcid":"https://orcid.org/0000-0003-4443-8170"},"institutions":[{"id":"https://openalex.org/I157725225","display_name":"University of Illinois Urbana-Champaign","ror":"https://ror.org/047426m28","country_code":"US","type":"education","lineage":["https://openalex.org/I157725225"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Tianyin Xu","raw_affiliation_strings":["Department of Computer Science, University of Illinois at Urbana-Champaign, Urbana, IL, United States of America"],"raw_orcid":"https://orcid.org/0000-0003-4443-8170","affiliations":[{"raw_affiliation_string":"Department of Computer Science, University of Illinois at Urbana-Champaign, Urbana, IL, United States of America","institution_ids":["https://openalex.org/I157725225"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5024597600"],"corresponding_institution_ids":["https://openalex.org/I157725225"],"apc_list":null,"apc_paid":null,"fwci":3.5786,"has_fulltext":true,"cited_by_count":21,"citation_normalized_percentile":{"value":0.94199895,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":98,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"150","last_page":"157"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10054","display_name":"Parallel Computing and Optimization Techniques","score":0.9983999729156494,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7904179096221924},{"id":"https://openalex.org/keywords/kernel","display_name":"Kernel (algebra)","score":0.7139739394187927},{"id":"https://openalex.org/keywords/extension","display_name":"Extension (predicate logic)","score":0.6185997724533081},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.5135440826416016},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.44886600971221924},{"id":"https://openalex.org/keywords/linux-kernel","display_name":"Linux kernel","score":0.4484192132949829},{"id":"https://openalex.org/keywords/memory-safety","display_name":"Memory safety","score":0.4356311559677124},{"id":"https://openalex.org/keywords/bytecode","display_name":"Bytecode","score":0.4326454997062683},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.34109580516815186},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.24021440744400024},{"id":"https://openalex.org/keywords/virtual-machine","display_name":"Virtual machine","score":0.14419788122177124},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.09813714027404785},{"id":"https://openalex.org/keywords/discrete-mathematics","display_name":"Discrete mathematics","score":0.09572234749794006},{"id":"https://openalex.org/keywords/mathematics","display_name":"Mathematics","score":0.09109625220298767}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7904179096221924},{"id":"https://openalex.org/C74193536","wikidata":"https://www.wikidata.org/wiki/Q574844","display_name":"Kernel (algebra)","level":2,"score":0.7139739394187927},{"id":"https://openalex.org/C2778029271","wikidata":"https://www.wikidata.org/wiki/Q5421931","display_name":"Extension (predicate logic)","level":2,"score":0.6185997724533081},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.5135440826416016},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.44886600971221924},{"id":"https://openalex.org/C553261973","wikidata":"https://www.wikidata.org/wiki/Q14579","display_name":"Linux kernel","level":2,"score":0.4484192132949829},{"id":"https://openalex.org/C28180684","wikidata":"https://www.wikidata.org/wiki/Q4080983","display_name":"Memory safety","level":3,"score":0.4356311559677124},{"id":"https://openalex.org/C2779818221","wikidata":"https://www.wikidata.org/wiki/Q837330","display_name":"Bytecode","level":3,"score":0.4326454997062683},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.34109580516815186},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.24021440744400024},{"id":"https://openalex.org/C25344961","wikidata":"https://www.wikidata.org/wiki/Q192726","display_name":"Virtual machine","level":2,"score":0.14419788122177124},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.09813714027404785},{"id":"https://openalex.org/C118615104","wikidata":"https://www.wikidata.org/wiki/Q121416","display_name":"Discrete mathematics","level":1,"score":0.09572234749794006},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.09109625220298767}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/3593856.3595892","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3593856.3595892","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 19th Workshop on Hot Topics in Operating Systems","raw_type":"proceedings-article"},{"id":"pmh:oai:vtechworks.lib.vt.edu:10919/115720","is_oa":true,"landing_page_url":"http://hdl.handle.net/10919/115720","pdf_url":"https://vtechworks.lib.vt.edu/bitstreams/2b9415a6-40b0-4a58-879b-40a8c0193c9b/download","source":{"id":"https://openalex.org/S4306400248","display_name":"VTechWorks (Virginia Tech)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I859038795","host_organization_name":"Virginia Tech","host_organization_lineage":["https://openalex.org/I859038795"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Text"}],"best_oa_location":{"id":"pmh:oai:vtechworks.lib.vt.edu:10919/115720","is_oa":true,"landing_page_url":"http://hdl.handle.net/10919/115720","pdf_url":"https://vtechworks.lib.vt.edu/bitstreams/2b9415a6-40b0-4a58-879b-40a8c0193c9b/download","source":{"id":"https://openalex.org/S4306400248","display_name":"VTechWorks (Virginia Tech)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I859038795","host_organization_name":"Virginia Tech","host_organization_lineage":["https://openalex.org/I859038795"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Text"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.5099999904632568}],"awards":[{"id":"https://openalex.org/G1522215764","display_name":null,"funder_award_id":"CNS-1956007","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G2148503985","display_name":null,"funder_award_id":"CNS-2236966","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G2331508245","display_name":"CAREER: Taming the size, complexity and longevity of OS kernels via enhanced OS kernel extensions","funder_award_id":"2236966","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G2374893308","display_name":null,"funder_award_id":"1956007","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4381611552.pdf","grobid_xml":"https://content.openalex.org/works/W4381611552.grobid-xml"},"referenced_works_count":9,"referenced_works":["https://openalex.org/W2083469471","https://openalex.org/W2737641195","https://openalex.org/W2903038868","https://openalex.org/W2954549386","https://openalex.org/W3168432147","https://openalex.org/W4220822401","https://openalex.org/W4221048168","https://openalex.org/W4226358880","https://openalex.org/W6600291067"],"related_works":["https://openalex.org/W1889284597","https://openalex.org/W20625830","https://openalex.org/W4379620208","https://openalex.org/W3100733828","https://openalex.org/W2999306385","https://openalex.org/W119923507","https://openalex.org/W2954419750","https://openalex.org/W4249632039","https://openalex.org/W4390833542","https://openalex.org/W4297099544"],"abstract_inverted_index":{"The":[0],"emergence":[1],"of":[2,12,25,48,68,95,120,136],"verified":[3],"eBPF":[4],"bytecode":[5],"is":[6],"ushering":[7],"in":[8,57,112],"a":[9,30,54,93,106],"new":[10],"era":[11],"safe":[13,88,113],"kernel":[14,63,89,110,137],"extensions.":[15,138],"In":[16,32],"this":[17],"paper,":[18],"we":[19,52],"argue":[20],"that":[21,115],"eBPF's":[22],"verifier---the":[23],"source":[24],"its":[26,83],"safety":[27,84,135],"guarantees---has":[28],"become":[29],"liability.":[31],"addition":[33],"to":[34,61,74],"the":[35,42,49,66,118,121,134],"well-known":[36],"bugs":[37],"and":[38,44,131],"vulnerabilities":[39],"stemming":[40],"from":[41],"complexity":[43],"ad":[45],"hoc":[46],"nature":[47],"in-kernel":[50,122],"verifier,":[51,123],"highlight":[53],"concerning":[55],"trend":[56],"which":[58],"escape":[59,129],"hatches":[60],"unsafe":[62],"functions":[64],"(in":[65],"form":[67],"helper":[69],"functions)":[70],"are":[71],"being":[72],"introduced":[73],"bypass":[75],"verifier-imposed":[76],"limitations":[77],"on":[78],"expressiveness,":[79,125],"unfortunately":[80],"also":[81,100],"bypassing":[82],"guarantees.":[85],"We":[86,104],"propose":[87],"extension":[90],"frameworks":[91],"using":[92],"balance":[94],"not":[96],"just":[97],"static":[98],"but":[99],"lightweight":[101],"runtime":[102],"techniques.":[103],"describe":[105],"design":[107],"centered":[108],"around":[109],"extensions":[111],"Rust":[114],"will":[116],"eliminate":[117],"need":[119],"improve":[124,133],"allow":[126],"for":[127],"reduced":[128],"hatches,":[130],"ultimately":[132]},"counts_by_year":[{"year":2025,"cited_by_count":10},{"year":2024,"cited_by_count":5},{"year":2023,"cited_by_count":6}],"updated_date":"2026-03-27T05:58:40.876381","created_date":"2025-10-10T00:00:00"}
