Runtime Detection of Zero-Day Vulnerability Exploits in Contemporary Software Systems - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2016

Runtime Detection of Zero-Day Vulnerability Exploits in Contemporary Software Systems

Olgierd Pieczul
  • Fonction : Auteur
  • PersonId : 1022681
Simon N. Foley
  • Fonction : Auteur
  • PersonId : 1001643

Résumé

It is argued that runtime verification techniques can be used to identify unknown application security vulnerabilities that are a consequence of unexpected execution paths in software. A methodology is proposed that can be used to build a model of expected application execution paths during the software development cycle. This model is used at runtime to detect exploitation of unknown security vulnerabilities using anomaly detection style techniques. The approach is evaluated by considering its effectiveness in identifying 19 vulnerabilities across 26 versions of Apache Struts over a 5 year period.
Fichier principal
Vignette du fichier
428203_1_En_24_Chapter.pdf (315.73 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-01633685 , version 1 (13-11-2017)

Licence

Paternité

Identifiants

Citer

Olgierd Pieczul, Simon N. Foley. Runtime Detection of Zero-Day Vulnerability Exploits in Contemporary Software Systems. 30th IFIP Annual Conference on Data and Applications Security and Privacy (DBSec), Jul 2016, Trento, Italy. pp.347-363, ⟨10.1007/978-3-319-41483-6_24⟩. ⟨hal-01633685⟩
204 Consultations
231 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More