Skip to content

Research Projects on AMD SEV-SNP platform

Cabin: Confining Untrusted Programs within Confidential VMs

Cabin is a system aiming at protecting the guest OS from the untrusted program within confidential VMs. Cabin is built on top of AMD SEV-SNP platform.

TODO:

  • ✅ Implement the basic functionality of Cabin
  • ✅ Support anonymous memory management
  • ✅ Support asynchronous forwarding of system calls
  • ❌ Support fork/clone system calls
  • ❌ Support multi-threading
  • ❌ Support thread-migration
  • ✅ Support zpoline
  • ❌ Support lazypoline
  • ❌ Support passthru-libos

Popular repositories Loading

  1. awesome-sev awesome-sev Public

    awesome AMD SEV projects

    5

  2. awesome-svm awesome-svm Public

  3. sev-guest sev-guest Public

    Forked from AMDESE/sev-guest

    Tools, scripts, and configuration files necessary to demonstrate an end-to-end remote attestation example with SEV-SNP.

    C

  4. libvmpl libvmpl Public

    Privileged Execution of Guest Process with VMPL Isolation

    C

  5. vmpl-tests vmpl-tests Public

    C

  6. vmpl-hotcalls vmpl-hotcalls Public

    libvmpl

    Makefile

Repositories

Showing 10 of 26 repositories

People

This organization has no public members. You must be a member to see who’s a part of this organization.

Top languages

Loading…

Most used topics

Loading…