Advanced Search
Chen MY. Hardware-Assisted intra-process protection technologies J. Journal of Integration Technology, xxxx, x(x): 1-15. DOI: 10.12146/j.issn.2095-3135.20260602001
Citation: Chen MY. Hardware-Assisted intra-process protection technologies J. Journal of Integration Technology, xxxx, x(x): 1-15. DOI: 10.12146/j.issn.2095-3135.20260602001

Hardware-Assisted Intra-Process Protection Technologies

  • As software ecosystems become highly modular and third-party codes are widely integrated, the traditional "all-equal" resource access model within a process has exposed security vulnerabilities. Relying solely on software-based security mechanisms faces inherent limitations, including performance bottlenecks, susceptibility to metadata tampering, and poor compatibility. Consequently, hardware-assisted security protection has emerged as an important development direction. This paper presents a survey of processor hardware-assisted intra-process protection technologies. It begins by examining existing mechanisms in commercial processors—namely, NX bit, CET, MPK, PAC, and MTE—and identifies common deficiencies, including the absence of an in-process trusted computing base, insufficient tag space, a lack of system call protection as well as a lack of register and instruction set partition. Subsequently, it systematically analyzes the latest academic advances and emerging trends across four research directions: pointer-level checking, compartment-based isolation, system call interception, and register partitioning, while also highlighting the limitations of current solutions. Finally, it outlines the remaining technical challenges that persist in this field.
  • loading

Catalog

    Turn off MathJax
    Article Contents

    /

    DownLoad:  Full-Size Img  PowerPoint
    Return
    Return