Title :
Randomized Instruction Sets and Runtime Environments Past Research and Future Directions
Author :
Keromytis, Angelos D.
Author_Institution :
Columbia University
Abstract :
Instruction set randomization offers a way to combat code-injection attacks by separating code from data (specifically, by randomizing legitimate code´s execution environment). The author describes the motivation behind this approach and two application environments.
Keywords :
instruction sets; invasive software; code-injection attacks; legitimate code execution environment randomization; randomized instruction sets; runtime environments; Central Processing Unit; Hardware; Instruction sets; Memory management; Network servers; Operating systems; Protection; Runtime environment; Security; Vehicles; IT Monoculture; SQL injection; artificial diversity; code injection; code randomization; cross-site scripting; randomized runtimes and languages;
Journal_Title :
Security & Privacy, IEEE
DOI :
10.1109/MSP.2009.15