Abstract : Diversity can significantly increase the resilience of systems, by reducing the prevalence of shared vulnerabilities and making vulnerabilities harder to exploit. Work on software diversity for security typically creates variants of a program using low-level code transformations. This paper is the first to study algorithm diversity for resilience. We first describe how a method based on high-level invariants and systematic incrementalization can be used to create algorithm variants. Executing multiple variants in parallel and comparing their outputs provides greater resilience than executing one variant. To prevent different parallel schedules from causing variants’ behaviors to diverge, we present a synchronized execution algorithm for DistAlgo, an extension of Python for high-level, precise, executable specifications of distributed algorithms. We propose static and dynamic metrics for measuring diversity. An experimental evaluation of algorithm diversity combined with implementation-level diversity for several sequential algorithms and distributed algorithms shows the benefits of algorithm diversity.
https://hal.inria.fr/hal-02384586 Contributor : Hal IfipConnect in order to contact the contributor Submitted on : Thursday, November 28, 2019 - 2:25:17 PM Last modification on : Wednesday, November 3, 2021 - 6:20:13 AM Long-term archiving on: : Saturday, February 29, 2020 - 4:34:35 PM
Scott D. Stoller, yanhong A. Liu. Algorithm Diversity for Resilient Systems. 33th IFIP Annual Conference on Data and Applications Security and Privacy (DBSec), Jul 2019, Charleston, SC, United States. pp.359-378, ⟨10.1007/978-3-030-22479-0_19⟩. ⟨hal-02384586⟩