首页> 外文会议>Detection of intrusions and malware, and vulnerability assessment >On the Effectiveness of Software Diversity: A Systematic Study on Real-World Vulnerabilities
【24h】

On the Effectiveness of Software Diversity: A Systematic Study on Real-World Vulnerabilities

机译:关于软件多样性的有效性:真实漏洞的系统研究

获取原文
获取原文并翻译 | 示例

摘要

Many systems have been introduced to detect software intrusions by comparing the outputs and behavior of diverse replicas when they are processing the same, potentially malicious, input. When these replicas are constructed using off-the-shelf software products, it is assumed that they are diverse and not compromised simultaneously under the same attack. In this paper, we analyze vulnerabilities published in 2007 to evaluate the extent to which this assumption is valid. We focus on vulnerabilities in application software, and show that the majority of these software products including those providing the same service (and therefore multiple software substitutes can be used in a replicated system to detect intrusions) and those that run on multiple operating systems (and therefore the same software can be used in a replicated system with different operating systems to detect intrusions) either do not have the same vulnerability or cannot be compromised with the same exploit. We also find evidence that indicates the use of diversity in increasing attack tolerance for other software. These results show that systems utilizing off-the-shelf software products to introduce diversity are effective in detecting intrusions.
机译:引入了许多系统,通过比较不同副本在处理相同的潜在恶意输入时的输出和行为,来检测软件入侵。使用现成的软件产品构建这些副本时,假定它们是多种多样的,并且不会在同一攻击下同时受到损害。在本文中,我们分析了2007年发布的漏洞,以评估此假设的有效程度。我们关注于应用程序软件中的漏洞,并证明这些软件产品中的大多数,包括提供相同服务的软件产品(因此可以在复制的系统中使用多个软件替代品来检测入侵)以及在多个操作系统上运行的产品(以及因此,可以在具有不同操作系统的复制系统中使用相同的软件来检测入侵),这些软件要么没有相同的漏洞,要么无法被相同的漏洞利用。我们还发现证据表明,在提高其他软件的攻击承受能力中使用了多样性。这些结果表明,利用现有软件产品引入多样性的系统可有效检测入侵。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号