Selective checking of shared library calls for security보안을 위한 선택적 공유 라이브러리 호출 검사

Cited 0 time in webofscience Cited 0 time in scopus
  • Hit : 353
  • Download : 0
This paper presents a systematic solution to the persistent problem of return-into type attacks. A large class of security mechanisms has been defeated by those attacks. While some security mechanisms are concerned with preventing return-into type attacks, they, however, are not complete against return-into type attacks or occur the considerable performance decline. We describe the selective checking of shared library calls, called SCC. The SCC dynamically relocates a program’s Global Offset Table (GOT) and checks whether the accesses via Procedure Linkage Table (PLT) are legal. The SCC is implemented by modifying only the Linux dynamic loader, hence it is transparent to applications and easily deployable. In experiment results, we show that the SCC is effective in defeating against return-into type attacks and is the mechanism with the low start-up and runtime overhead.
Advisors
Park, Dae-Yeonresearcher박대연researcher
Description
한국과학기술원 : 전기및전자공학전공,
Publisher
한국과학기술원
Issue Date
2005
Identifier
243669/325007  / 020033066
Language
eng
Description

학위논문(석사) - 한국과학기술원 : 전기및전자공학전공, 2005.2, [ v, 25 p. ]

Keywords

software vulnerabilities; dynamic program loader; os security; Security attacks; kernel 2.6; 커널 2.6; 소프트웨어 취약성; 동적 프로그램 로더; 운영체제 보안; 보안 공격

URI
http://hdl.handle.net/10203/37847
Link
http://library.kaist.ac.kr/search/detail/view.do?bibCtrlNo=243669&flag=dissertation
Appears in Collection
EE-Theses_Master(석사논문)
Files in This Item
There are no files associated with this item.

qr_code

  • mendeley

    citeulike


rss_1.0 rss_2.0 atom_1.0