arrow
Return

Control-Flow Integrity for Resource-Constrained Devices

delete2025-10-26
delete0
PRE
AI
G
Gianluca Roascio
N
Nicolò Maunero
G
Gabriele Costa
DOI:10.1016/j.cose.2025.104730delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Control-Flow Integrity (CFI) ensures that an attacker cannot tamper with the execution logic of a program, e.g., by reusing its code to implement malicious operations. In the past, several attacks have actively exploited CFI failures for hijacking the control logic of programs. Although enforcing the CFI of programs is a significant concern, implementing effective control mechanisms is highly complex. Although often control-flow properties are regarded as practically enforceable, as most languages include data-driven branch operators, CFI is, in fact, also a data-flow property. Furthermore, when the execution platform supports any sort of non-determinism, e.g., think of program interrupts, static models for CFI analysis, such as control-flow graphs (CFG), cannot be accurately computed. Thus, it is not surprising that CFI is often only partially guaranteed by means of weaker security models.

Journal

C
Computers and Security
IF:
5.4
Papers:
4.6K
Citations:
1.4W

Organization

P
Politecnico di Torino
Scholars:
768
Papers: 335
Citations: 2
I
IMT School for Advanced Studies
Scholars:
35
Papers: 24
Citations: 0