Triosecuris: Formally Verified Protection Against Speculative Control-Flow Hijacking
Triosecuris:针对推测控制流劫持的形式化验证防御
专题命中 程序修复 :形式化验证防御推测控制流劫持
AI总结 提出Triosecuris,结合CET风格硬件辅助控制流完整性与编译器插入的推测加载硬化,通过形式化证明实现相对安全性,确保任意程序在推测执行下不泄露比源程序无推测时更多的信息。
Comments To appear at CSF'26; extended version with appendices. W.r.t. first revision: extended with concrete protection against Spectre RSB and renamed to Triosecuris
Journal ref 39th IEEE Computer Security Foundations Symposium (CSF) (2026) 544-559