Survey on Unified Threat Management (UTM) Systems for Home Networks

A Siddiqui, BP Rimal, M Reisslein… - … Surveys & Tutorials, 2024 - ieeexplore.ieee.org
Home networks increasingly support important networked applications with limited
professional network administration support, while sophisticated attacks pose enormous …

Securing the Shared Kernel: Exploring Kernel Isolation and Emerging Challenges in Modern Cloud Computing

S Zehra, HJ Syed, F Samad, U Faseeha… - IEEE …, 2024 - ieeexplore.ieee.org
Containerization is a rapidly advancing technology in cloud computing, facilitating the
seamless development, deployment, and management of applications across diverse …

HELIOS: Hardware-assisted High-performance Security Extension for Cloud Networking

M You, J Nam, M Seo, S Shin - … of the 2023 ACM Symposium on Cloud …, 2023 - dl.acm.org
With the increasing adoption of containerization in cloud services, container networking has
become a critical concern, as it enables the agile deployment of microservices but also …

Warrens: Decentralized Connectionless Tunnels for Edge Container Networks

T Goethals, M Al-Naday, B Volckaert… - IEEE Transactions on …, 2024 - ieeexplore.ieee.org
In recent years, workload containerisation has been extended to the edge, bringing with it
the need for flexible overlay networking. However, current container networking solutions …

No Country for Leaking Containers: Detecting Exfiltration of Secrets Through AI and Syscalls

M Zuppelli, M Guarascio, L Caviglione… - Proceedings of the 19th …, 2024 - dl.acm.org
Containers offer lightweight execution environments for implementing microservices or
cloud-native applications. Owing to their ubiquitous diffusion jointly with the complex …

Information leakages of Docker containers: Characterization and mitigation strategies

M Zuppelli, M Repetto, L Caviglione… - 2023 IEEE 9th …, 2023 - ieeexplore.ieee.org
Compared to classic virtual machines, containers offer lightweight and dynamic execution
environments. Hence, they are core building blocks for the development of future …

XvSomeIP: A High-Performance In-Vehicle Communication Middleware Based on XDP

G Yang, H Zhong, Q Zhou, P Lv, H Li… - 2024 IEEE 22nd …, 2024 - ieeexplore.ieee.org
The SOME/IP (Scalable service-Oriented Middle-ware over IP) is a communication
middleware designed to meet the low latency and high bandwidth requirements of in-vehicle …

Enhancing Cloud-Native Security Through eBPF Technology

M Feng, J Zhou, Y Tang - 2024 IEEE 11th International …, 2024 - ieeexplore.ieee.org
In the cloud industry, eBPF (extended Berkeley Packet Filter) security technology is one of
the most popular and influential technologies in the Linux kernel in recent years. With the …

Poster: eBPF-Based Intrusion Prevention System for Database Servers

RR Shitole, SK Nekkanti, T Wood - 2024 IEEE Cloud Summit, 2024 - ieeexplore.ieee.org
eBPF (Extended Berkeley Packet Filter) is a powerful technology enabling the execution of
sandboxed programs at the kernel level. This paper investigates its potential to implement …

Container-Level Auditing in Container Orchestrators with eBPF

FJ Bertinatto, D Arioza, JC Nobre… - … Conference on Advanced …, 2024 - Springer
This paper examines the application of eBPF (extended Berkeley Packet Filter) for achieving
more precise auditing at the container level in container orchestrators such as Kubernetes …