Rafal Wojtczuk used to work at Invisible Things Lab with/for security guru Joanna Rutkowska ref: http://invisiblethingslab.com/itl/Resources.html.
Very interesting, so what they are basically saying is: It's currently hard to protect against kernel exploits, unless you use a microvisor (VMM) like Bromium. However, interesting to note that user-mode HIPS and hypervisor based HIPS can at least offer some form of protection. BTW, the use of those "kiddie pics" was a bit silly and unprofessional IMO. http://www.wired.com/2012/06/crosby-bromium-microvisor/all/