课题基金 / 基金详情

Multi-version Execution Techniques for Increasing the Reliability and Security of Evolving Software

Multi-version Execution Techniques for Increasing the Reliability and Security of Evolving Software
用于提高不断发展的软件的可靠性和安全性的多版本执行技术
批准号:
EP/L002795/1
负责人:
Cristian Cadar
金额:
$124.68万
依托单位:
依托单位国家:
英国
项目类别:
Fellowship
财政年份:
2014
资助国家:
英国
项目状态:
已结题
起止时间:
2014 至 --

项目摘要

项目成果

Cristian Cadar的其他基金

相似基金

相关文献

中文摘要
翻译
软件系统的显著特征之一是它们不断演变:新的补丁致力于软件存储库,新版本不断发布给用户。不幸的是,这些变化中的许多带来了破坏系统稳定性或影响其安全性的意想不到的故障,用户面临着令人不快的选择,要么使用错过最新功能和错误修复的旧的稳定版本,要么升级到以某些方式改进软件的新版本,结果只会引入其他错误和安全漏洞。在这次的团契中,我计划研究用于提高不断发展的软件的可靠性和安全性的新技术,这是一个雄心勃勃的提议,它提出了跨越软件工程、计算机系统和安全领域的几个挑战:理解软件如何演变,特别是不正确的更新对软件演变的影响;解决多版本执行的技术挑战,如创建应用程序级沙箱环境和设计轻量级记录和重放技术;设计有效结合不同软件版本的错误恢复策略;以及确定多版本执行对实践中遇到的不同类型的应用程序和代码更改的适用性。
英文摘要
One of the distinguishing characteristics of software systems is that they evolve: new patches are committed to software repositories and new versions are released to users on a continuous basis. Unfortunately, many of these changes bring unexpected failures that break the stability of the system or affect its security, and users face the uncomfortable choice between using an old stable version which misses recent features and bug fixes, and upgrading to a new version which improves the software in certain ways, only to introduce other bugs and security vulnerabilities.In this fellowship, I plan to investigate novel techniques for improving the reliability and security of evolving software, based on the idea of combining the execution of multiple software versions in such a way as to increase the reliability and security of the "multi-version" application and eliminate a large number of common bugs introduced by software updates.This is an ambitious proposal, which presents several challenges spanning the areas of software engineering, computer systems, and security: understanding how software evolves, and particularly the effects of incorrect updates on software evolution; addressing the technical challenges of multi-version execution such as creating an application-level sandboxing environment and devising lightweight record and replay techniques; designing error recovery strategies that effectively combine different software versions; and determining the applicability of multi-version execution to the different types of applications and code changes encountered in practice.
期刊论文(10)
专著(0)
科研奖励(0)
会议论文
SaBRe: load-time selective binary rewriting
SaBRe:加载时选择性二进制重写
DOI: 10.1007/s10009-021-00644-w
发表时间: 2022
期刊: International Journal on Software Tools for Technology Transfer
影响因子: 1.5
作者: [Arras P]
通讯作者: Arras P
A segmented memory model for symbolic execution
用于符号执行的分段内存模型
DOI: 10.1145/3338906.3338936
发表时间: 2019
期刊:
影响因子: --
作者: [Kapus T]
通讯作者: Kapus T
VARAN the Unbelievable An Efficient N-version Execution Framework
VARAN 令人难以置信的高效 N 版本执行框架
DOI: 10.1145/2775054.2694390
发表时间: 2015
期刊: ACM SIGPLAN Notices
影响因子: --
作者: [Hosek P]
通讯作者: Hosek P
PARTI: a multi-interval theory solver for symbolic execution
PARTI:用于符号执行的多区间理论求解器
DOI: 10.1145/3238147.3238179
发表时间: 2018
期刊:
影响因子: --
作者: [Dustmann O]
通讯作者: Dustmann O
共 9 条
    Automated Patch Impact Analysis (PATCH)
    • 批准号:
      EP/X040836/1
    • 项目类别:
      Research Grant
    • 资助金额:
      $16.47万
    • 财政年份:
      2023
    • 负责人:
      Cristian Cadar
    • 依托单位:
    Automatically Detecting and Surviving Exploitable Compiler Bugs
    • 批准号:
      EP/R011605/1
    • 项目类别:
      Research Grant
    • 资助金额:
      $85.64万
    • 财政年份:
      2018
    • 负责人:
      Cristian Cadar
    • 依托单位:
    Improving Symbolic Execution via Targeted Program Transformations
    • 批准号:
      EP/N007166/1
    • 项目类别:
      Research Grant
    • 资助金额:
      $36.5万
    • 财政年份:
      2016
    • 负责人:
      Cristian Cadar
    • 依托单位:
    Testing, Verifying, and Generating Software Patches Using Dynamic Symbolic Execution
    • 批准号:
      EP/J00636X/1
    • 项目类别:
      Research Grant
    • 资助金额:
      $36.59万
    • 财政年份:
      2012
    • 负责人:
      Cristian Cadar
    • 依托单位:
    国内基金
    海外基金
    三维椭圆问题 P 和 H-P Version 有限元法理论及其在工程中的应用研究
    • 批准号:
      11261026
    • 项目类别:
      地区科学基金项目
    • 资助金额:
      52.0万元
    • 批准年份:
      2012
    • 负责人:
      张建铭
    • 依托单位:
    S-version有限元法及三维复合型裂纹扩展研究
    • 批准号:
      11102158
    • 项目类别:
      青年科学基金项目
    • 资助金额:
      25.0万元
    • 批准年份:
      2011
    • 负责人:
      谢伟
    • 依托单位: