Large-scale Automated Software Diversity—Program Evolution Redux

IEEE Trans. Dependable Sec. Comput.(2017)

引用 47|浏览88
暂无评分
摘要
The software monoculture favors attackers over defenders, since it makes all target environments appear similar. Code-reuse attacks, for example, rely on target hosts running identical software. Attackers use this assumption to their advantage by automating parts of creating an attack. This article presents large-scale automated software diversification as a means to shore up this vulnerability implied by our software monoculture. Besides describing an industrial-strength implementation of automated software diversity, we introduce methods to objectively measure the effectiveness of diversity in general, and its potential to eliminate code-reuse attacks in particular.
更多
查看译文
关键词
Biologically-inspired defenses,artificial software diversity,code reuse attacks,jump-oriented programming,return-oriented programming
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要