Automated Diversity in Computer Systems

作者: Stephanie Forrest , NEW MEXICO UNIV ALBUQUERQUE

DOI: 10.21236/ADA439916

关键词:

摘要: Abstract : Attackers penetrate a large number of computers by exploiting common vulnerabilities. The objective this effort is to address internet-wide weakness introducing diversity into so that successful attack on one computer does not necessarily work another one, even though it may be running identical software.

参考文章(24)
James C. Foster, Vitaly Osipov, Nish Bhalla, Niels Heinen, Dave Aitel, Format String Attacks Buffer Overflow Attacks#R##N#Detect, Exploit, Prevent. pp. 273- 315 ,(2005) , 10.1016/B978-193226667-2/50047-5
Paul H. J. Kelly, Richard W. M. Jones, Backwards-Compatible Bounds Checking for Arrays and Pointers in C Programs Proceedings of the 3rd International Workshop on Automatic Debugging; 1997 (AADEBUG-97). pp. 13- 26 ,(1997)
Nicholas Nethercote, Julian Seward, Valgrind: A Program Supervision Framework Electronic Notes in Theoretical Computer Science. ,vol. 89, pp. 44- 66 ,(2003) , 10.1016/S1571-0661(04)81042-9
Charles Consel, Jonathan Walpole, Calton Pu, Crispin Cowan, Andrew P. Black, A Specialization Toolkit to Increase the Diversity of Operating Systems ICMAS Workshop on Immunity-Based Systems. ,(1996)
Mike Frantzen, Mike Shuey, StackGhost: Hardware facilitated stack protection usenix security symposium. pp. 5- 5 ,(2001)
Eric A. Brewer, Alexander Aiken, David A. Wagner, Jeffrey S. Foster, A First Step Towards Automated Detection of Buffer Overrun Vulnerabilities. network and distributed system security symposium. ,(2000)
Mariam Kamkar, John Wilander, A Comparison of Publicly Available Tools for Dynamic Buffer Overflow Prevention network and distributed system security symposium. pp. 149- ,(2003)
Richard McDougall, Jim Mauro, Solaris Internals: Core Kernel Architecture ,(2000)
Stephen W. Boyd, Angelos D. Keromytis, SQLrand: Preventing SQL Injection Attacks applied cryptography and network security. pp. 292- 302 ,(2004) , 10.1007/978-3-540-24852-1_21
Zbigniew Kalbarczyk, Ravishankar K. Iyer, Sanjay Patel, Jun Xu, Architecture Support for Defending Against Buffer Overflow Attacks Coordinated Science Laboratory, University of Illinois at Urbana-Champaign. ,(2002)