PeriScope: An Effective Probing and Fuzzing Framework for the Hardware-OS Boundary
Description:
Explore PeriScope, a Linux-kernel-based in-kernel probing framework for fine-grained analysis of device-driver interactions, in this 27-minute Black Hat conference talk. Learn how PeriScope hooks into the kernel's page fault handling mechanism to passively monitor and log traffic between device drivers and hardware, or actively mutate the data stream using the PeriFuzz fuzzing component. Discover how this framework mimics adversarial attacks and enhances security testing at the hardware-OS boundary. Gain insights into the implementation, capabilities, and potential applications of PeriScope for improving device driver security and robustness.
PeriScope - An Effective Probing and Fuzzing Framework for the Hardware-OS Boundary