{"id":"W4385993975","doi":"10.1145/3609021.3609301","title":"Unleashing Unprivileged eBPF Potential with Dynamic Sandboxing","year":2023,"lang":"en","type":"article","venue":"","topic":"Security and Verification in Computing","field":"Computer Science","cited_by":14,"is_retracted":false,"has_abstract":true,"ca_institutions":"University of British Columbia","funders":"Natural Sciences and Engineering Research Council of Canada; National Science Foundation","keywords":"Computer science; Exploit; Overhead (engineering); Kernel (algebra); Scope (computer science); Linux kernel; Operating system; Software; System call; Computer security; Programming language","routes":{"ca_aff":true,"ca_fund":true,"ca_venue":false,"about_ca":false,"invisible_to_affiliation_only":false},"retraction":null,"screen":null,"direct_labels":[],"prediction":{"model_version":"metacan-v3-hybrid-931329e0061c","candidate_categories":[],"consensus_categories":[],"category_scores_codex":[0.003636091,0.001055131,0.0006557813,0.001168023,0.00101949,0.002060088,0.002383823,0.0009491261,0.003329426],"category_scores_gemma":[0.01448759,0.0009080007,0.000785533,0.0004482938,0.002528736,0.006338513,0.004428054,0.002821142,0.001110031],"about_ca_system_candidate":false,"about_ca_system_consensus":false,"about_ca_system_score_codex":0.0009870628,"about_ca_system_score_gemma":0.002408779,"about_ca_topic_candidate":false,"about_ca_topic_consensus":false,"about_ca_topic_score_codex":0.001800112,"about_ca_topic_score_gemma":0.001980083,"domain_scores_codex":[0.9959452,0.0007416122,0.000224384,0.0004496664,0.001744273,0.0008948122],"domain_scores_gemma":[0.9847404,0.004269156,0.001135386,0.007974678,0.001420965,0.0004592616],"domain_codex":null,"domain_gemma":null,"domain_candidate":null,"domain_consensus":null,"study_design_codex":"design_other","study_design_gemma":"simulation_or_modeling","study_design_scores_codex":[0.003493254,0.001262232,0.05323771,0.001190404,0.0004026903,0.001679985,0.002340693,0.05561656,0.2464232,0.1084048,0.02647958,0.4994688],"study_design_scores_gemma":[0.0002413949,0.001021851,0.008980048,0.0003884988,0.0003932339,0.001708451,0.0004628697,0.3860171,0.4839317,0.05035071,0.06618758,0.000316626],"study_design_candidate":"simulation_or_modeling","study_design_consensus":null,"genre_codex":"methods","genre_gemma":"empirical","genre_scores_codex":[0.3739971,0.001373859,0.5295314,0.001079668,0.0003620067,0.0002712782,0.0002144657,0.07630771,0.01686255],"genre_scores_gemma":[0.9346609,0.0002449265,0.05973708,0.000356161,0.00004363467,0.00008259734,0.0001423667,0.002063184,0.002669072],"genre_candidate":"empirical","genre_consensus":null,"teacher_disagreement_score":0.003636091,"threshold_uncertainty_score":0.01922971,"prediction_status":"machine_predicted_unvalidated"},"machine_scores":{"provisional":true,"baseline":true,"maturity_gate_passed":false,"score_opus":0.00930250154796204,"score_gpt":0.2341999422711614,"score_spread":0.2248974407231994,"validation_status":"score_only:v0-immature-baseline","note":"Baseline scores from an immature model (maturity gate not passed). Scores rank; they never assert a category."}}