Detecting Stack Based Kernel Information Leaks

Detecting Stack Based Kernel Information Leaks
复制标题

检测基于堆栈的内核信息泄漏

DOI:
--
复制
发表时间:
2014
期刊:
International Conference on European Transnational Education
影响因子:
--
通讯作者:
A. Crespo
A. Crespo
中科院分区:
--
文献类型:
--
作者:
S. Peiró;Manuel Muñoz;M. Masmano;A. Crespo

文献摘要

被引文献

相似文献

Linux内核在移动设备和云服务中被广泛采用,与此同时,它也被攻击者和恶意用户滥用和误用。通过部署内核保护机制,这增加了对内核安全性的关注。基于内核的攻击需要可靠性,内核攻击的可靠性是通过信息收集阶段来实现的,攻击者能够收集到足够的目标信息来成功攻击。内核漏洞的分类包括信息泄漏,这是一类允许访问内核内存布局和内容的漏洞。信息泄漏可以提高攻击的可靠性,使攻击者能够读取敏感的内核数据,从而绕过基于内核的保护。
The Linux kernel has become widely adopted in the mobile devices and cloud services, parallel to this has grown its abuse and misuse by attackers and malicious users. This has increased attention paid to kernel security through the deployment of kernel protection mechanisms. Kernel based attacks require reliability, kernel attack reliability is achieved through the information gathering stage where the attacker is able to gather enough information about the target to succeed. The taxonomy of kernel vulnerabilities includes information leaks, that are a class of vulnerabilities that permit access to the kernel memory layout and contents. Information leaks can improve the attack reliability allowing the attacker to read sensitive kernel data to bypass kernel based protections.