Defcon Capture the Flag: defending vulnerable code from intense attack
Defcon Capture the Flag: defending vulnerable code from intense attack
复制标题
Defcon 夺旗:保护易受攻击的代码免受强烈攻击
DOI:
--
复制
发表时间:
2003
期刊:
影响因子:
--
通讯作者:
Crispin Cowan
中科院分区:
文献类型:
--
作者:
Crispin Cowan
Immunix/spl trade/ is a Linux system hardened with several DARPA-funded security technologies to produce a highly survivable server appliance platform. The Immunix technologies include: StackGuard, FormatGuard, RaceGuard, SubDomain, and LSM (Linux Security Modules). Combined, these technologies make it very difficult for an attacker to break into an Immunix server, despite the presence of unpatched vulnerabilities, while also preserving a high degree of compatibility with standard Linux systems. The Defcon Capture-the-Flag (CtF) contest is the largest open security hacking game. The 2002 game was designed to make it particularly difficult for defenders to defend their servers by forcing players to host software known to be vulnerable. Our DISCEX III paper describes our experience playing an Immunix server in this game: we placed second overall, and no one was able to take control of the Immunix server.