Simple and Practical Integrity Models for Binaries and Files - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2015

Simple and Practical Integrity Models for Binaries and Files

Yongzheng Wu
Roland C. Yap
  • Fonction : Auteur
  • PersonId : 996028

Résumé

Software environments typically depend on implicit sharing of binaries where binaries are created, loaded/executed and updated dynamically which we call the binary lifecycle. Windows is one example where many attacks exploit vulnerabilities in the binary lifecycle of software. In this paper, we propose a family of binary integrity models with a simple and easy to use trust model, to help protect against such attacks. We implement a prototype in Windows which protects against a variety of common binary attacks. Our models are easy to use while maintaining existing software compatibility, i.e. work with the implicit binary lifecycle requirements of the software and assumptions on binary sharing. We also propose a conservative extension to protect critical non-binary files.
Fichier principal
Vignette du fichier
337890_1_En_3_Chapter.pdf (306.47 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-01416206 , version 1 (14-12-2016)

Licence

Paternité

Identifiants

Citer

Yongzheng Wu, Roland C. Yap. Simple and Practical Integrity Models for Binaries and Files. 9th IFIP International Conference on Trust Management (TM), May 2015, Hamburg, Germany. pp.30-46, ⟨10.1007/978-3-319-18491-3_3⟩. ⟨hal-01416206⟩
34 Consultations
81 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More