Artículos relacionados a Automated Software Diversity (Synthesis Lectures on...

Automated Software Diversity (Synthesis Lectures on Information Security, Privacy, and Trust) - Tapa blanda

 
9781627057349: Automated Software Diversity (Synthesis Lectures on Information Security, Privacy, and Trust)

Sinopsis

Whereas user-facing applications are often written in modern languages, the firmware, operating system, support libraries, and virtual machines that underpin just about any modern computer system are still written in low-level languages that value flexibility and performance over convenience and safety. Programming errors in low-level code are often exploitable and can, in the worst case, give adversaries unfettered access to the compromised host system. This book provides an introduction to and overview of automatic software diversity techniques that, in one way or another, use randomization to greatly increase the difficulty of exploiting the vast amounts of low-level code in existence. Diversity-based defenses are motivated by the observation that a single attack will fail against multiple targets with unique attack surfaces. We introduce the many, often complementary, ways that one can diversify attack surfaces and provide an accessible guide to more than two decades worth of research on the topic. We also discuss techniques used in conjunction with diversity to prevent accidental disclosure of randomized program aspects and present an in-depth case study of one of our own diversification solutions.

"Sinopsis" puede pertenecer a otra edición de este libro.

Reseña del editor

Whereas user-facing applications are often written in modern languages, the firmware, operating system, support libraries, and virtual machines that underpin just about any modern computer system are still written in low-level languages that value flexibility and performance over convenience and safety. Programming errors in low-level code are often exploitable and can, in the worst case, give adversaries unfettered access to the compromised host system. This book provides an introduction to and overview of automatic software diversity techniques that, in one way or another, use randomization to greatly increase the difficulty of exploiting the vast amounts of low-level code in existence. Diversity-based defenses are motivated by the observation that a single attack will fail against multiple targets with unique attack surfaces. We introduce the many, often complementary, ways that one can diversify attack surfaces and provide an accessible guide to more than two decades worth of research on the topic. We also discuss techniques used in conjunction with diversity to prevent accidental disclosure of randomized program aspects and present an in-depth case study of one of our own diversification solutions.

Biografía del autor

Per Larsen recently decided to try his luck as an entrepreneur and currently leads an information security startup: Immunant, Inc. Previously, he worked four years as a postdoctoral scholar at the University of California, Irvine. He graduated with a Ph.D. from the Technical University of Denmark in 2011. He enjoys caffeinated beverages and staying up very late. Stefan Brunthaler received a Dr.techn. with distinction from TU Vienna in 2011 and spent the next four years as postdoctoral scholar at the University of California, Irvine. Currently, he is a key researcher at SBA Research in Vienna, Austria, working on various topics in language-based security. Lucas Davi is a researcher at the Intel Collaborative Research Institute for Secure Computing (ICRI-SC) at Technische Universit t Darmstadt, Germany. He received his Ph.D. from Technische Universit t Darmstadt, Germany, in computer science, focusing on code-reuse attacks and defenses. His research focuses on exploits such as return-oriented programming (ROP) for diverse processor architectures. He is working on new attack methods and countermeasures against exploits such as control-flow integrity and software diversity. Ahmad-Reza Sadeghi is a full professor of Computer Science at Technische Universit t Darmstadt, Germany. He is the head of the System Security Lab at the Center for Advanced Security Research Darmstadt (CASED) and the Director of the Intel Collaborative Research Institute for Secure Computing (ICRI-SC) at TU Darmstadt. He holds a Ph.D. in Computer Science from the University of Saarland in Saarbr cken, Germany. Prior to academia, he worked in Research and Development of Telecommunications enterprises, amongst others Ericsson Telecommunications.

"Sobre este título" puede pertenecer a otra edición de este libro.

  • EditorialMorgan & Claypool Publishers
  • Año de publicación2015
  • ISBN 10 162705734X
  • ISBN 13 9781627057349
  • EncuadernaciónTapa blanda
  • IdiomaInglés
  • Número de páginas90
  • Contacto del fabricanteno disponible

Comprar usado

Condición: Bien
Fast Shipping - Safe and Secure...
Ver este artículo

EUR 64,66 gastos de envío desde Estados Unidos de America a España

Destinos, gastos y plazos de envío

Otras ediciones populares con el mismo título

9783031012181: Automated Software Diversity (Synthesis Lectures on Information Security, Privacy, and Trust)

Edición Destacada

ISBN 10:  3031012186 ISBN 13:  9783031012181
Editorial: Springer, 2015
Tapa blanda

Resultados de la búsqueda para Automated Software Diversity (Synthesis Lectures on...

Imagen de archivo

Larsen, Per,Brunthaler, Stefan,Davi, Lucas
Publicado por Morgan & Claypool Publishers, 2015
ISBN 10: 162705734X ISBN 13: 9781627057349
Antiguo o usado paperback

Librería: suffolkbooks, Center moriches, NY, Estados Unidos de America

Calificación del vendedor: 4 de 5 estrellas Valoración 4 estrellas, Más información sobre las valoraciones de los vendedores

paperback. Condición: Very Good. Fast Shipping - Safe and Secure 7 days a week! Nº de ref. del artículo: 3TWOWA001NAS

Contactar al vendedor

Comprar usado

EUR 14,92
Convertir moneda
Gastos de envío: EUR 64,66
De Estados Unidos de America a España
Destinos, gastos y plazos de envío

Cantidad disponible: 4 disponibles

Añadir al carrito