Skip to content

Diagnosing Programmable Data Plane Attacks with Provenance Observability

· 0 citations · 85 references

TL;DR

This work presents ProvP4, a provenance-based cross-plane observer designed to observe and analyze stateful data plane attacks in programmable networks, and demonstrates that ProvP4 imposes minimal overhead in terms of storage and performance, while significantly enhancing security analysis capabilities.

View source

Similar papers

Preprint Aug 2026

A Study of Kernel Telemetry Options for Security-Oriented Provenance

Provenance aims to capture the origins, transformations, and interactions of system objects for security and forensic applications. Existing provenance capture approaches still face major challenges and are not yet ready for production environments. In this paper, we first analyze the main kernel telemetry capture appr...

Paul R. B. Houssel, Olivier Levillain, Sylvie Laniepce et al. · 0 citations
Preprint Aug 2026

Improving the Security of Containerized Workloads using Transparency and Traceability Services

This paper presents an architecture for verifiable container image distribution that addresses key-management challenges and enables policy-enforced admission-time verification, and implements a proof-of-concept integrated with GitHub Actions and GitLab Runners that mitigates common supply-chain attacks under a realist...

N. Fotiou, Lefteris Georgiadis, Ignacio Lacalle et al. · 0 citations
Open access 2026

Automated & Real-Time Privacy Quantification for Microservices Architectures

: The decentralized nature of microservice architectures introduces privacy challenges that exceed the capabilities of traditional static auditing. To address this, we present a real-time privacy quantification framework based on the Privacy-sensitive Data Categorization (PsDC) model. By combining Layer 7 Deep Packet I...

Catarina Silva, Bernardo Falé, Paulo Barraca et al. · 0 citations
Open access Sep 2026

Playbook-Guided Executable SOC Automation for Privacy-Preserving Response in Distributed Networked Systems

INTRODUCTION: Distributed networks require security operations center (SOC) automation that connects data security monitoring, privacy-aware evidence handling, controlled execution, and measurable evidence. Static playbooks cannot fully handle ambiguous cross-domain incident context. OBJECTIVES: This paper presents an...

Jie Zhang, Hai-Zhuang Liu, Le Ren et al. · 0 citations
Open access Aug 2026

Security and Privacy Controls in Ingestion Pipelines (PII masking, Encryption, Access Governance)

The use of high-throughput data ingestion pipelines that can constantly amass and process data collected by heterogeneous sources into a centralized or distributed data storage system is increasingly becoming the cornerstone of modern enterprise data ecosystems. Since these pipelines handle delicate personally identifi...

Shreyansh Sharma · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.