Elektrine
EN
Log in Register
Paige Chat Timeline Gallery Friends Lists Email Drive DNS Resolver Domains VPN Kairo Nerve
Remote

Vasileios Kemerlis

@vkemerlis@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

Professor of Computer Science at Brown University and Director of the Secure Systems Lab (SSL) | Brown Hat | Research on OS, systems, and software security | 🏴‍☠️🇬🇷🇺🇸

0 Followers
0 Following
2 Posts
Joined January 28, 2023
Website:
https://www.cs.brown.edu/~vpk
LinkedIn:
https://www.linkedin.com/in/vasileios-kemerlis/
Twitter:
https://twitter.com/vkemerlis
Google Scholar:
https://scholar.google.com/citations?user=tkb2YWQAAAAJ
DBLP:
https://dblp.uni-trier.de/pid/87/1029.html
ORCID:
https://orcid.org/0000-0002-6528-437X
Open post
Vasileios Kemerlis @vkemerlis@infosec.exchange
· 5mo ago

Excited to be co-chairing RAID 2026 (https://raid2026.org) alongside Tiffany Bao this year!

Looking for a security venue to submit your research? The deadline is just around the corner—April 16, 2026.

CFP: https://raid2026.org/call.html

Looking forward to seeing you in Lancaster this October (11–14)!

4
0
3
0
Open post
Vasileios Kemerlis @vkemerlis@infosec.exchange
· 2mo ago
Huge congrats to Meghna Pancholi for presenting our paper, Santa -- a language-agnostic approach to system call policy learning for microservices -- at #DIMVA2026 (the Conference on Detection of Intrusions and Malware & Vulnerability Assessment) in Chania, Crete! 🇬🇷 Cloud teams securing microservices are usually stuck choosing between heavy isolation that hurts latency, or system call filters that are either too loose (based on static analysis) or too brittle (based on dynamic tracing). Our work, Santa, resolves this by running two versions of an app side-by-side: a fast production version and a "hardened" security-oracle version (instrumented, for example, to catch memory-safety and concurrency errors). When the production service hits a syscall outside its current policy, Santa re-runs the request against the hardened oracle -- if it's benign, the policy is safely expanded; if it's bogus, an attack is caught and blocked. This lets Santa build tight, workload-specific syscall allow-lists on the fly, without paying the full cost of heavyweight hardening in steady-state traffic. Joint work with Andreas D. Kellas, Kostis Kaffes, @SteveBellovin@infosec.exchange and Simha Sethumadhavan! Thanks to @sotiris@ioc.exchange and Michalis Diamantaris for organizing a great conference! It was a real pleasure attending and catching up with so many friends and colleagues along the way. ✳️ Paper: https://cs.brown.edu/people/vpk/papers/santa.dimva26.pdf 💾 Code: https://github.com/meghna-pancholi/santa-ebpf #dimva2026 #browncs #brownssl
0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)
  • Source code

Legal

  • Terms of Service
  • Privacy Policy
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 16:28:25 UTC