The nested kernel architecture is a new OS organization that provides important security benefits to commodity operating systems that was retrofitted to an existing monolithic kernel. We will learn how the nested kernel architecture can efficiently support useful write-mediation policies, such as write-once and append-only, which OS developers can use to incorporate new security policies with very low performance overheads. Our guest today is Dr. Nathan Dautenhahn. More information: cs.rice.edu