首页> 外文会议>IFIP WG 11.11 international conference on trust management >Simple and Practical Integrity Models for Binaries and Files
【24h】

Simple and Practical Integrity Models for Binaries and Files

机译:二进制文件的简单实用的完整性模型

获取原文

摘要

Software environments typically depend on implicit sharing of binaries where binaries are created, loaded/executed and updated dynamically which we call the binary lifecycle. Windows is one example where many attacks exploit vulnerabilities in the binary lifecycle of software. In this paper, we propose a family of binary integrity models with a simple and easy to use trust model, to help protect against such attacks. We implement a prototype in Windows which protects against a variety of common binary attacks. Our models are easy to use while maintaining existing software compatibility, i.e. work with the implicit binary lifecycle requirements of the software and assumptions on binary sharing. We also propose a conservative extension to protect critical non-binary files.
机译:软件环境通常依赖于模型共享二进制文件,其中致电二进制生命周期的动态创建和执行和更新。 Windows是许多攻击软件二进制生命周期中的漏洞的一个示例。在本文中,我们提出了一系列二进制完整性模型,简单易于使用的信任模型,以帮助防止这种攻击。我们在Windows中实现了一个原型,可防止各种常见的二进制攻击。我们的型号易于使用,同时维护现有的软件兼容性,即,使用软件的隐式二进制生命周期要求和二进制共享时的假设。我们还提出了一个保守的扩展来保护关键的非二进制文件。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号