Mitigating Software Vulnerabilities with Architectural Support for Type-safety
Mitigating Software Vulnerabilities with Architectural Support for Type-safety
批准号:
541942-2019
负责人:
Lie, David
金额:
$12.76万
依托单位:
依托单位国家:
加拿大
项目类别:
Collaborative Research and Development Grants
财政年份:
2021
资助国家:
加拿大
项目状态:
已结题
起止时间:
2021-01-01 至 2022-12-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
Security vulnerabilities occur in because of software defects (i.e. bugs) created by programmers. The defects, if triggered by an attacker, result in unintended functionality in a program. In the worst case, these defects may allow an attacker to corrupt values in program memory in a controlled way. Previous security solutions concentrate largely on software-only approaches, which can easily impose as much as 87% performance overhead. Recent attempts to provide architectural hardware support for security have been less than spectacular. Intel MPX provides hardware bounds checking of memory accesses. While MPX provides better security guarantees than software-only solutions, it performs no better, still imposing anywhere from 20-400% performance overhead.The proposed research will seek to devise and evaluate integrated hardware/software security support in central processing units (CPUs) with an aim of imposing less than 5% overhead. By tightly integrating the software and hardware components of the solution we propose a) software tools that generate code in a way that is easier for hardware to protect against attack and b) hardware that utilizes mechanisms such as caching and pre-fetching to accelerate the protection operations.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
A Machine Learning Approach to Detecting Security Vulnerabilities in Software.
-
批准号:RGPIN-2018-05931
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$2.04万
-
财政年份:2022
-
负责人:Lie, David
-
依托单位:
Secure and Reliable Systems
-
批准号:CRC-2019-00242
-
项目类别:Canada Research Chairs
-
资助金额:$14.57万
-
财政年份:2022
-
负责人:Lie, David
-
依托单位:
A Machine Learning Approach to Detecting Security Vulnerabilities in Software.
-
批准号:RGPIN-2018-05931
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$2.04万
-
财政年份:2021
-
负责人:Lie, David
-
依托单位:
Tools and methods for detecting vulnerabilities in embedded devices
-
批准号:535902-2018
-
项目类别:Collaborative Research and Development Grants
-
资助金额:$5.19万
-
财政年份:2021
-
负责人:Lie, David
-
依托单位:
Secure And Reliable Systems
-
批准号:CRC-2019-00242
-
项目类别:Canada Research Chairs
-
资助金额:$14.57万
-
财政年份:2021
-
负责人:Lie, David
-
依托单位:
A Machine Learning Approach to Detecting Security Vulnerabilities in Software.
-
批准号:RGPIN-2018-05931
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$2.04万
-
财政年份:2020
-
负责人:Lie, David
-
依托单位:
Mitigating Software Vulnerabilities with Architectural Support for Type-safety
-
批准号:541942-2019
-
项目类别:Collaborative Research and Development Grants
-
资助金额:$12.76万
-
财政年份:2020
-
负责人:Lie, David
-
依托单位:
Secure and Reliable Systems
-
批准号:CRC-2019-00242
-
项目类别:Canada Research Chairs
-
资助金额:$7.29万
-
财政年份:2020
-
负责人:Lie, David
-
依托单位:
Tools and methods for detecting vulnerabilities in embedded devices
-
批准号:535902-2018
-
项目类别:Collaborative Research and Development Grants
-
资助金额:$5.19万
-
财政年份:2020
-
负责人:Lie, David
-
依托单位:
Tools and methods for detecting vulnerabilities in embedded devices
-
批准号:535902-2018
-
项目类别:Collaborative Research and Development Grants
-
资助金额:$5.19万
-
财政年份:2019
-
负责人:Lie, David
-
依托单位:
A Machine Learning Approach to Detecting Security Vulnerabilities in Software.
-
批准号:RGPIN-2018-05931
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$2.04万
-
财政年份:2019
-
负责人:Lie, David
-
依托单位:
Mitigating Software Vulnerabilities with Architectural Support for Type-safety
-
批准号:541942-2019
-
项目类别:Collaborative Research and Development Grants
-
资助金额:$6.73万
-
财政年份:2019
-
负责人:Lie, David
-
依托单位:
A Machine Learning Approach to Detecting Security Vulnerabilities in Software.
-
批准号:RGPIN-2018-05931
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$2.04万
-
财政年份:2018
-
负责人:Lie, David
-
依托单位:
Computational tools for analyzing and detecting software supply chain attacks
-
批准号:474601-2014
-
项目类别:Collaborative Research and Development Grants
-
资助金额:$5.1万
-
财政年份:2017
-
负责人:Lie, David
-
依托单位:
Secure and Reliable Computer Systems
-
批准号:1000228402-2012
-
项目类别:Canada Research Chairs
-
资助金额:$3.64万
-
财政年份:2017
-
负责人:Lie, David
-
依托单位:
An Information Flow Approach to Data Security
-
批准号:293209-2013
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$2.19万
-
财政年份:2017
-
负责人:Lie, David
-
依托单位:
Computational tools for analyzing and detecting software supply chain attacks
-
批准号:474601-2014
-
项目类别:Collaborative Research and Development Grants
-
资助金额:$5.1万
-
财政年份:2016
-
负责人:Lie, David
-
依托单位:
Secure and Reliable Computer Systems
-
批准号:1000228402-2012
-
项目类别:Canada Research Chairs
-
资助金额:$7.29万
-
财政年份:2016
-
负责人:Lie, David
-
依托单位:
An Information Flow Approach to Data Security
-
批准号:293209-2013
-
项目类别:Discovery Grants Program - Individual
-
资助金额:$2.19万
-
财政年份:2015
-
负责人:Lie, David
-
依托单位:
Secure and Reliable Computer Systems
-
批准号:1228402-2012
-
项目类别:Canada Research Chairs
-
资助金额:$7.29万
-
财政年份:2015
-
负责人:Lie, David
-
依托单位:
海外基金