2022-09-13 18:36:32 -07:00
2022-09-13 18:30:45 -07:00
2022-09-13 18:36:32 -07:00
2022-09-13 18:32:23 -07:00
2022-09-07 20:01:54 -06:00
2022-09-13 18:30:45 -07:00
2022-09-05 10:28:52 -04:00
2022-09-13 18:30:45 -07:00

popkorn-artifact

Artifact Evaluation Abstract

Requirement description

Paper Title

POPKORN: Popping Windows Kernel Drivers At Scale

Artifact Summary

The artifact for this submission contains

  1. The dataset of drivers (the SYS files ending in the .sys extension) used for the evaluation in Section 6 of the paper, about 300MB in size
  2. The python source-code of the angr-based analysis code used to produce the vulnerability reports used for the evaluation
  3. A Dockerfile describing the evaluation environment with all dependencies and required tools installed
  4. Detailed instructions and scripts to reproduce the performed evaluation results

The overall evaluation environment was

  1. Ubuntu 20.04.4 LTS
  2. Python 3.8.10
  3. angr 9.1

Notes

This evaluation can take significant time and computational resources to reproduce. For the evaluation we ran the analysis with a timeout of 1 hour per driver, and 8 drivers being analyzed concurrently. The final results can take between 2-6 hours to complete analysis with these settings.

Reproducing results

See the results in the evaluation/ README

S
Description
Automated archival mirror of github.com/ucsb-seclab/popkorn-artifact
Readme MIT
76 MiB
Languages
Python 97.3%
Dockerfile 2.5%
Shell 0.2%