Secure APIs for Applications in Microkernel-based Systems

作者: Vassilis Prevelakis , Mohammad Hamad

DOI: 10.24355/DBBS.084-201806251531-0

关键词:

摘要: The Internet evolved from a collection of computers to today’s agglomeration all sort devices (e.g. printers, phones, coffee makers, cameras and so on) large part which contain security vulnerabilities. The current wide scale attacks are, in most cases, simple replays the original Morris Worm mid-80s. The effects these are equally devastating because they affect huge numbers connected devices. The reason for this lack progress is that software developers will keep writing vulnerable due to problems associated with way designed implemented market realities. So order to contain problem we need effective control network communications more specifically, to vet connections made by an application on premise if can prevent attacker from reaching his victim, attack cannot take place. This paper presents comprehensive security framework, including well-defined applications programming interface (API) allows fine-grained and flexible connections. In way, finally instantiate principles dynamic network protect attacks.

参考文章(9)
R. Atkinson, S. Kent, IP Encapsulating Security Payload (ESP) RFC. ,vol. 1827, pp. 1- 12 ,(1995)
Jari Arkko, Limitations of IPsec Policy Mechanisms Security Protocols. pp. 252- 254 ,(2005) , 10.1007/11542322_30
A. Hiltgen, T. Kramp, T. Weigold, Secure Internet banking authentication ieee symposium on security and privacy. ,vol. 4, pp. 21- 29 ,(2006) , 10.1109/MSP.2006.50
Karl Koscher, Alexei Czeskis, Franziska Roesner, Shwetak Patel, Tadayoshi Kohno, Stephen Checkoway, Damon McCoy, Brian Kantor, Danny Anderson, Hovav Shacham, Stefan Savage, Experimental Security Analysis of a Modern Automobile ieee symposium on security and privacy. pp. 447- 462 ,(2010) , 10.1109/SP.2010.34
Chien-Lung Wu, Shyhtsun Felix Wu, Ravindar Narayan, IPSec/PHIL (packet header information list): design, implementation, and evaluation international conference on computer communications and networks. pp. 206- 211 ,(2001) , 10.1109/ICCCN.2001.956243
R. Atkinson, Security Architecture for the Internet Protocol Security Architecture for the Internet Protocol. ,vol. 1825, pp. 1- 101 ,(1995)
Mohammad Hamad, Vassilis Prevelakis, Implementation and performance evaluation of embedded IPsec in microkernel OS 2015 World Symposium on Computer Networks and Information Security (WSCNIS). pp. 1- 7 ,(2015) , 10.1109/WSCNIS.2015.7368294
Christian Grimm, V. Inder Monga, Egon Grünter, Firewall Issues overview. ,(2006)
A policy-based communications architecture for vehicles international conference on information systems security. pp. 155- 162 ,(2015) , 10.5220/0005325001550162