DocumentCode :
1826007
Title :
A practical framework for dynamically immunizing software security vulnerabilities
Author :
Lin, Zhiqiang ; Mao, Bing ; Xie, Li
Author_Institution :
State Key Lab. for Novel Software Technol., Nanjing Univ., China
fYear :
2006
fDate :
20-22 April 2006
Abstract :
Many security attacks are caused by software vulnerabilities such as buffer overflow. How to eliminate or mitigate these vulnerabilities, in particular with unstoppable software, is a great challenge for security researchers and practitioners. In this paper, we propose a practical framework to immunize software security vulnerabilities on the fly. We achieve the vulnerability immunization by using a security antibody, which can be implemented independently from the protected software and is used to defend against vulnerability exploitation attacks. And we employ in-core patching technique to attach the antibody quietly into running process, and hence we neither need to re-compile nor re-execute the protected software. The effectiveness of our framework depends on the effectiveness of the antibody that is implemented by redirecting flaw functions into secure ones. As a proof of concept, we have built a prototype and applied it to prevent the software from buffer overflow attacks. Preliminary experimental results show that our framework is practical and efficient for the dynamical immunization of software security vulnerabilities.
Keywords :
buffer storage; security of data; buffer overflow attacks; in-core patching technique; security antibody; software security vulnerability immunization; vulnerability exploitation attacks; Buffer overflow; Computer languages; Computer security; Internet; Intrusion detection; Laboratories; Operating systems; Software libraries; Software protection; Software prototyping;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Availability, Reliability and Security, 2006. ARES 2006. The First International Conference on
Print_ISBN :
0-7695-2567-9
Type :
conf
DOI :
10.1109/ARES.2006.11
Filename :
1625330
Link To Document :
بازگشت