TPRIVEXEC: Private Execution in Virtual Memory

TPRIVEXEC: Private Execution in Virtual Memory
复制标题

TPRIVEXEC:虚拟内存中的私有执行

DOI:
--
复制
发表时间:
2016
期刊:
Conference on Data and Application Security and Privacy
影响因子:
--
通讯作者:
Adam J. Lee
Adam J. Lee
中科院分区:
--
文献类型:
--
作者:
J. B. Djoko;B. Jennings;Adam J. Lee

文献摘要

被引文献

相似文献

隐私浏览模式已成为现代浏览器中的流行功能。然而,尽管类似的隐私增强技术很流行,但尚未在其他用户应用程序中复制。 PrivExec 是一种操作系统服务,提供与应用程序无关的、系统范围的私有执行模式。我们推出了 TpriVexeC,这是一种系统级隐私支持的新颖方法,可提供比 PrivExec 更快的应用程序执行速度。 TpriVexeC 使用内存作为其主要后备存储,但在内存压力较高时会回退到系统交换。交换时,它会在私有应用程序数据传入和传出磁盘时对其进行加密和解密。通过取消大部分永久性磁盘作为主存储,TpriVexeC 提供了更强的隐私保证和更快的应用程序运行时间。正如我们的评估所示,TpriVexeC 应用程序性能与普通系统没有什么区别,并且与 PrivExec 相比,对于 I/O 密集型任务,它的写入速度快了 30 倍,读取速度快了 38 倍。
Private Browsing Mode has become a popular feature in modern browsers. However, despite its prevalence, a similar privacy enhancing technology has not been replicated in other user applications. PrivExec is an operating system service that provides an application-agnostic, system-wide private execution mode. We present TpriVexeC, a novel approach to system-level privacy support that affords faster application execution over PrivExec. TpriVexeC uses memory as its principal backing store but falls back to system swap on high memory pressure. Upon swapping, it encrypts and decrypts private application data as it transits into and out of disk. By doing away with much of persistent disk as primary storage, TpriVexeC provides stronger privacy guarantees and faster application runtime. As shown by our evaluation, TpriVexeC application performance is indistinguishable from a vanilla system and compared to PrivExec, it is up to 30 times faster in writes and 38 times faster in reads for I/O bound tasks.