...
【24h】

Mitigating Type Confusion on Java Card

机译:缓解Java卡上的类型混乱

获取原文
获取原文并翻译 | 示例

摘要

One of the challenges for smart card deployment is the security interoperability. A smart card resistant to an attack on a given platform should be able to guarantee the same behavior on another platform. But the current implementations do not comply with this requirement. In order to improve such standardization the authors propose a framework based on annotations with an external pre-processing to switch the Java Card Virtual Machine (JCVM) into a secure mode by activating a set of countermeasures. An example has been proposed in this paper for implementing a countermeasure against type confusion with a fault attack. Smart cards are often the target of software, hardware or combined attacks. In recent days most of the attacks are based on fault injection which can modify the behavior of applications loaded onto the card, changing them into mutant applications. This countermeasure requires a transformation of the original program byte codes which remain semantically equivalent. It needs a modification of the JCVM which stays backward compatible and a dedicated framework to deploy these applications. Thus, the proposed platform can resist to a fault enabled mutant.
机译:智能卡部署的挑战之一是安全互操作性。能够抵抗给定平台上的攻击的智能卡应该能够保证在另一个平台上的相同行为。但是当前的实现不符合该要求。为了改善这种标准化,作者提出了一种基于注释的框架,该框架具有外部预处理功能,可通过激活一系列对策将Java Card虚拟机(JCVM)切换到安全模式。本文提出了一个示例,用于实施针对带有错误攻击的类型混淆的对策。智能卡通常是软件,硬件或组合攻击的目标。最近几天,大多数攻击都基于故障注入,该注入可以修改加载到卡上的应用程序的行为,从而将其更改为变异应用程序。这种对策要求对原始程序字节码进行转换,使其在语义上保持等效。它需要对JCVM进行修改,使其保持向后兼容,并需要专用的框架来部署这些应用程序。因此,提出的平台可以抵抗故障使能的突变体。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号