首页> 外文期刊>電子情報通信学会技術研究報告. コンピュ-タシステム. Computer Systems >Defending against memory-monopolizing DoS attacks: prioritized memory management
【24h】

Defending against memory-monopolizing DoS attacks: prioritized memory management

机译:防御内存独占的DoS攻击:优先的内存管理

获取原文
获取原文并翻译 | 示例
           

摘要

Downloading executable codes from the Internet increases the risk of executing malicious codes. Commodity operating systems can control access rights of downloaded code, but can do little to prevent resource-monopolizing Denial-of-Service (DoS) attacks. In this paper, we focus on memory-monopolizing DoS attacks, and propose the prioritized memory management to defend the attacks. Using this system, the user can sandbox the memory-monopolizing attacks, and the attacker process cannot affect other processes. On our system, each process has memory-priority. Higher-prioritized process can steal physical memory from lower-prioritized process, but the reverse is forbidden. As a result, by prioritizing the attacker process lower, the memory-monopolizing attacks are sandboxed.
机译:从Internet下载可执行代码会增加执行恶意代码的风险。商品操作系统可以控制下载代码的访问权限,但是对于阻止垄断资源的拒绝服务(DoS)攻击却无能为力。在本文中,我们将重点放在内存独占的DoS攻击上,并提出优先的内存管理来防御攻击。使用此系统,用户可以沙占内存独占式攻击,并且攻击者进程不会影响其他进程。在我们的系统上,每个进程都有内存优先级。高优先级的进程可以从低优先级的进程中窃取物理内存,但是相反的做法是禁止的。结果,通过降低攻击者进程的优先级,可以独占内存独占式攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号