课题基金 / 基金详情

Mitigating Software Vulnerabilities with Architectural Support for Type-safety

Mitigating Software Vulnerabilities with Architectural Support for Type-safety
通过类型安全的架构支持减少软件漏洞
批准号:
541942-2019
负责人:
Lie, David
金额:
$12.76万
依托单位:
依托单位国家:
加拿大
项目类别:
Collaborative Research and Development Grants
财政年份:
2020
资助国家:
加拿大
项目状态:
已结题
起止时间:
2020-01-01 至 2021-12-31

项目摘要

项目成果

Lie, David的其他基金

相似基金

相关文献

中文摘要
翻译
点击翻译按钮获取中文摘要
英文摘要
Security vulnerabilities occur in because of software defects (i.e. bugs) created by programmers. The defects, if triggered by an attacker, result in unintended functionality in a program. In the worst case, these defects may allow an attacker to corrupt values in program memory in a controlled way. Previous security solutions concentrate largely on software-only approaches, which can easily impose as much as 87% performance overhead. Recent attempts to provide architectural hardware support for security have been less than spectacular. Intel MPX provides hardware bounds checking of memory accesses. While MPX provides better security guarantees than software-only solutions, it performs no better, still imposing anywhere from 20-400% performance overhead. The proposed research will seek to devise and evaluate integrated hardware/software security support in central processing units (CPUs) with an aim of imposing less than 5% overhead. By tightly integrating the software and hardware components of the solution we propose a) software tools that generate code in a way that is easier for hardware to protect against attack and b) hardware that utilizes mechanisms such as caching and pre-fetching to accelerate the protection operations.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
A Machine Learning Approach to Detecting Security Vulnerabilities in Software.
  • 批准号:
    RGPIN-2018-05931
  • 项目类别:
    Discovery Grants Program - Individual
  • 资助金额:
    $2.04万
  • 财政年份:
    2022
  • 负责人:
    Lie, David
  • 依托单位:
Secure and Reliable Systems
  • 批准号:
    CRC-2019-00242
  • 项目类别:
    Canada Research Chairs
  • 资助金额:
    $14.57万
  • 财政年份:
    2022
  • 负责人:
    Lie, David
  • 依托单位:
A Machine Learning Approach to Detecting Security Vulnerabilities in Software.
  • 批准号:
    RGPIN-2018-05931
  • 项目类别:
    Discovery Grants Program - Individual
  • 资助金额:
    $2.04万
  • 财政年份:
    2021
  • 负责人:
    Lie, David
  • 依托单位:
Tools and methods for detecting vulnerabilities in embedded devices
  • 批准号:
    535902-2018
  • 项目类别:
    Collaborative Research and Development Grants
  • 资助金额:
    $5.19万
  • 财政年份:
    2021
  • 负责人:
    Lie, David
  • 依托单位:
海外基金