A method for system calls sandboxing based on atomic trusted code region | IEEE Conference Publication | IEEE Xplore