RPS: An Extension of Reference Monitor to Prevent Race-Attacks

RPS: An Extension of Reference Monitor to Prevent Race-Attacks
复制标题

RPS:参考监视器的扩展,以防止竞争攻击

DOI:
10.1007/978-3-540-30541-5_68
复制
发表时间:
2004
期刊:
2008 Third International Conference on Availability, Reliability and Security
影响因子:
--
通讯作者:
Dong
Dong
中科院分区:
--
文献类型:
--
作者:
Jongwoon Park;Gunhee Lee;Sangha Lee;Dong

文献摘要

被引文献

相似文献

由于设计缺陷、程序缺陷等各种潜在因素,大多数软件都存在一定的漏洞。其中,对文件访问的错误假设会导致已知的TOCTTOU漏洞的副作用。种族攻击就是利用这种脆弱性的攻击。本文提出了一种新的防止竞争攻击的机制,每个进程在检查步骤操作时维护相关对象的状态,并将使用步骤的状态与检查步骤的状态进行比较。由于每个进程都必须通过引用监视器才能使用对象,因此它是检测攻击和响应攻击的最合适的点。
Most software involves some vulnerabilities because of various potential factors such as design flaw and program bug. Among them, a faulty assumption on file access results in a side-effect as known TOCTTOU vulnerability. Race–attack is an attack using this vunerability. In this paper, we propose a novel mechanism to prevent race–attack, each process maintains status of related object at check step operation and compares the status of the use step with that of the check step. Since every process must pass through the reference monitor to use an object, it is the most suitable point to detect the attack and response to the attack.