BEGIN:VCALENDAR
PRODID;X-RICAL-TZSOURCE=TZINFO:-//Calagator//EN
CALSCALE:GREGORIAN
X-WR-CALNAME:Calagator
METHOD:PUBLISH
VERSION:2.0
BEGIN:VTIMEZONE
TZID;X-RICAL-TZSOURCE=TZINFO:America/Los_Angeles
BEGIN:DAYLIGHT
DTSTART:20210314T020000
RDATE:20210314T020000
TZOFFSETFROM:-0800
TZOFFSETTO:-0700
TZNAME:PDT
END:DAYLIGHT
END:VTIMEZONE
BEGIN:VEVENT
CREATED;VALUE=DATE-TIME:20210830T183750Z
DTEND;TZID=America/Los_Angeles;VALUE=DATE-TIME:20210902T220000
DTSTART;TZID=America/Los_Angeles;VALUE=DATE-TIME:20210902T190000
DTSTAMP;VALUE=DATE-TIME:20210830T183750Z
LAST-MODIFIED;VALUE=DATE-TIME:20210830T183750Z
UID:http://calagator.org/events/1250477892
DESCRIPTION:Portland Linux/Unix Group General Meeting Announcement&#13\;\
 n&#13\;\nWho: João Corrêa&#13\;\nWhat: Hardware-Assisted Fine-Grained Co
 ntrol-Flow Integrity: Adding Lasers to Intel's CET/IBT&#13\;\nWhere: htt
 ps://li584-253.members.linode.com/PLUG&#13\;\nWhen: Thursday\, September
  2nd\, 2021 at 7pm Pacific&#13\;\nWhy: The pursuit of technology freedom
 &#13\;\n&#13\;\nhis talk presents FineIBT\, a compiler-based enhancement
  that enables fine-grained forward-edge Control-Flow Integrity (CFI) pol
 icies on top of Intel's Control-flow Enforcement Technology (CET). By co
 mbining the new hardware features with compiler instrumentation\, FineIB
 T anchors indirect control transfers to sanity checks\, enabling policie
 s more restrictive than those supported solely by CET and increasing its
  effectiveness against control-flow hijacking attacks. An evaluation thr
 ough custom benchmarks shown that FineIBT provides similar security guar
 antees with less performance costs when compared to Clang CFI\, retainin
 g its penalty between 1% and 7% while the latter added overheads between
  5% and 53%. Beyond that\, FineIBT also has other perks\, such as benefi
 ting from the CET's hardening against transient execution attacks and no
 t depending on Link-Time Optimizations. This talk will explore the FineI
 BT implementation recently sent to the kernel-hardening mailing list\, t
 hen discuss specific scenarios\, such as how it could be used in the Lin
 ux kernel\, possible improvements and expected challenges. Technical ref
 erence: https://www.openwall.com/lists/kernel-hardening/2021/02/11/1&#13
 \;\n&#13\;\nJoao is an Offensive Security Researcher at Intel. His resea
 rch interests are mostly focused in compiler-enabled features and analys
 es\, but he will normally be down to chat about anything that involves b
 inaries. Joao holds a PhD from the University of Campinas\, where he wor
 ked on kCFI\, a Control-Flow Integrity implementation for the Linux kern
 el (featured at Black Hat Asia 2017) and he also spent some time working
  for SUSE\, where he bootstrapped the development of libpulp\, an user-s
 pace live patching framework (featured at Linux Developers Conference Br
 azil 2019 and SUSE Labs Conference 2018).&#13\;\n&#13\;\nPLUG is open to
  everyone and does not tolerate abusive behavior on its mailing lists or
  at its meetings.\n\nTags: linux\, unix\, bsd\, security\n\nImported fro
 m: http://calagator.org/events/1250477892
URL:https://pdxlinux.org
SUMMARY:Portland Linux/Unix Group: Hardware-Assisted Fine-Grained Control
 -Flow Integrity: Adding Lasers to Intel's CET/IBT
LOCATION:Online: placeholder for on-line events\,    
SEQUENCE:1
END:VEVENT
END:VCALENDAR
