TY - JOUR
T1 - Position paper
T2 - GPT conjecture: understanding the trade-offs between granularity, performance and timeliness in control-flow integrity
AU - Wang, Zhilong
AU - Liu, Peng
N1 - Publisher Copyright:
© 2021, The Author(s).
PY - 2021/12
Y1 - 2021/12
N2 - Performance/security trade-off is widely noticed in CFI research, however, we observe that not every CFI scheme is subject to the trade-off. Motivated by the key observation, we ask three questions: ➊ does trade-off really exist in different CFI schemes? ➋ if trade-off do exist, how do previous works comply with it? ➌ how can it inspire future research? Although the three questions probably cannot be directly answered, they are inspiring. We find that a deeper understanding of the nature of the trade-off will help answer the three questions. Accordingly, we proposed the GPT conjecture to pinpoint the trade-off in designing CFI schemes, which says that at most two out of three properties (fine granularity, acceptable performance, and preventive protection) could be achieved.
AB - Performance/security trade-off is widely noticed in CFI research, however, we observe that not every CFI scheme is subject to the trade-off. Motivated by the key observation, we ask three questions: ➊ does trade-off really exist in different CFI schemes? ➋ if trade-off do exist, how do previous works comply with it? ➌ how can it inspire future research? Although the three questions probably cannot be directly answered, they are inspiring. We find that a deeper understanding of the nature of the trade-off will help answer the three questions. Accordingly, we proposed the GPT conjecture to pinpoint the trade-off in designing CFI schemes, which says that at most two out of three properties (fine granularity, acceptable performance, and preventive protection) could be achieved.
UR - http://www.scopus.com/inward/record.url?scp=85115047840&partnerID=8YFLogxK
UR - http://www.scopus.com/inward/citedby.url?scp=85115047840&partnerID=8YFLogxK
U2 - 10.1186/s42400-021-00098-2
DO - 10.1186/s42400-021-00098-2
M3 - Article
AN - SCOPUS:85115047840
SN - 2096-4862
VL - 4
JO - Cybersecurity
JF - Cybersecurity
IS - 1
M1 - 33
ER -