Tutorial: Investigating Advanced Exploits for System Security Assurance

Tutorial: Investigating Advanced Exploits for System Security Assurance
复制标题

DOI:
10.1109/secdev51306.2021.00013
复制
发表时间:
2021-10
期刊:
2021 IEEE Secure Development Conference (SecDev)
影响因子:
--
通讯作者:
Salman Ahmed;Long Cheng;Hans Liljestrand;N. Asokan;D. Yao
Salman Ahmed;Long Cheng;Hans Liljestrand;N. Asokan;D. Yao
中科院分区:
其他
文献类型:
--
作者:
Salman Ahmed;Long Cheng;Hans Liljestrand;N. Asokan;D. Yao

文献摘要

相似文献

调查现有的先进的攻击是系统安全保证的关键。实现系统安全保证的一种方法是使用定性安全度量和准确的测量方法来评估防御。分析现有的漏洞利用技术可以提供有关定性安全指标和测量方法的重要见解。在本教程中,我们通过将漏洞利用划分为其组成组件来研究现有的高级漏洞利用技术。我们的分析集中在不同的防御技术对各个漏洞利用组件的影响。这些影响分析为寻找安全指标/方法以及改进现有防御提供了见解。在本教程中,我们的目标是专注于面向返回的编程(ROP),即时面向返回的编程(JITROP)和面向数据的攻击(DOA)。我们的目标是涵盖防御,如细粒度的地址空间布局随机化(ASLR)和指针保护技术。更具体地说,我们的目标是量化细粒度ASLR对高级ROP攻击的不同组件的影响。此外,我们还将演示一种面向数据的攻击技术--一种绕过当前部署的防御措施的攻击技术--并探讨防御DOA的防御技术。通过本教程,我们旨在提高人们对操作系统基本安全性的理解和意识。拟议教程的实践部分将通过提供有关低级别安全性,应用程序级别防御和安全度量/方法的知识来增强参与者和研究人员的能力。
Investigation of existing advanced exploits is crucial for system security assurance. One way to achieve system security assurance is through evaluating defenses using qualitative security metrics and accurate measurement methodologies. Analyzing existing exploit techniques can provide crucial insights about qualitative security metrics and measurement methodologies.In this tutorial, we investigate existing advanced exploit techniques by dividing the exploits into their constituent components. Our analyses focus on the impact of different defense techniques on the individual exploit components. These impact analyses provide insights for finding security metrics/methodologies as well as improving existing defenses. In this tutorial, we aim to focus on Return-Oriented Programming (ROP), Just-In-Time Return-Oriented Programming (JITROP), and Data-Oriented Attacks (DOAs). We aim to cover defenses such as fine-grained Address Space Layout Randomization (ASLR) and pointer protection techniques. More specifically, we aim to quantify the impact of fine-grained ASLR on different components of advanced ROP attacks. Besides, we will demonstrate a data-oriented exploit–an attack technique that circumvents currently deployed defenses– and explore defense techniques for defending against DOAs.Through this tutorial, we aim to improve people’s understanding and awareness of fundamental operating system security. The hands-on portion of the proposed tutorial will empower participants and researchers by providing knowledge on low-level security, application-level defenses, and security metrics/methodologies.