Packet verification in Linux/Android.
Distributed capability-based IPC framework.
Fine-grained syscall enforcement for C/S apps.
Linux Kernel