DocumentCode :
1476785
Title :
The Security Challenges of Client-Side Just-in-Time Engines
Author :
Rohlf, Chris ; Ivnitskiy, Yan
Volume :
10
Issue :
2
fYear :
2012
Firstpage :
84
Lastpage :
86
Abstract :
Any added complexity in a software system will increase the possible program states, introducing a larger attack surface and the possibility of more exploitable flaws. JIT engines, however, alter the environment in which they execute in far more interesting ways, not only through implementation flaws but also by their fundamental operation modes.
Keywords :
search engines; security of data; client-side just-in-time engines; security challenge; software system complexity; Browsers; Computer complexity; Network Security; Resource management; Runtime; Software developmnet; ASLR; Address Space Layout Randomization; DEP; JIT; JIT compilers; JIT engines; JavaScript; computer security; data execution protection; just in time; memory safety exploits; security vulnerabilities;
fLanguage :
English
Journal_Title :
Security & Privacy, IEEE
Publisher :
ieee
ISSN :
1540-7993
Type :
jour
DOI :
10.1109/MSP.2012.53
Filename :
6173004
Link To Document :
بازگشت