Climate Change Data Portal
DOI | 10.1145/3050748.3050752 |
RERANZ: A Light-Weight Virtual Machine to Mitigate Memory Disclosure Attacks | |
Wang, Zhe; Wu, Chenggang; Li, Jianjun; Lai, Yuanming; Zhang, Xiangyu; Hsu, Wei-Chung; Cheng, Yueqiang | |
发表日期 | 2017 |
ISSN | 0362-1340 |
EISSN | 1558-1160 |
起始页码 | 143 |
结束页码 | 156 |
卷号 | 52期号:7 |
英文摘要 | Recent code reuse attacks are able to circumvent various address space layout randomization (ASLR) techniques by exploiting memory disclosure vulnerabilities. To mitigate sophisticated code reuse attacks, we proposed a light-weight virtual machine, RERANZ, which deployed a novel continuous binary code re-randomization to mitigate memory disclosure oriented attacks. In order to meet security and performance goals, costly code randomization operations were outsourced to a separate process, called the shuffling process. The shuffling process continuously flushed the old code and replaced it with a fine-grained randomized code variant. RERANZ repeated the process each time an adversary might obtain the information and upload a payload. Our performance evaluation shows that RERANZ Virtual Machine incurs a very low performance overhead. The security evaluation shows that RERANZ successfully protect the Nginx web server against the Blind-ROP attack. |
英文关键词 | RERANZ; virtual machine; memory disclosure; re-randomization; shared memory |
语种 | 英语 |
WOS研究方向 | Computer Science |
WOS类目 | Computer Science, Software Engineering |
WOS记录号 | WOS:000414334900011 |
来源期刊 | ACM SIGPLAN NOTICES |
文献类型 | 期刊论文 |
条目标识符 | http://gcip.llas.ac.cn/handle/2XKMVOVA/239477 |
作者单位 | [Wang, Zhe; Wu, Chenggang; Li, Jianjun; Lai, Yuanming] Chinese Acad Sci, State Key Lab Comp Architecture, Inst Comp Technol, Beijing, Peoples R China; [Wang, Zhe] Univ Chinese Acad Sci, Beijing, Peoples R China; [Zhang, Xiangyu] Purdue Univ, Dept Comp Sci, W Lafayette, IN 47907 USA; [Hsu, Wei-Chung] Natl Taiwan Univ, Dept Comp Sci & Informat Engn, Taipei, Taiwan; [Cheng, Yueqiang] Acetti Software, San Jose, CA USA |
推荐引用方式 GB/T 7714 | Wang, Zhe,Wu, Chenggang,Li, Jianjun,et al. RERANZ: A Light-Weight Virtual Machine to Mitigate Memory Disclosure Attacks[J],2017,52(7). |
APA | Wang, Zhe.,Wu, Chenggang.,Li, Jianjun.,Lai, Yuanming.,Zhang, Xiangyu.,...&Cheng, Yueqiang.(2017).RERANZ: A Light-Weight Virtual Machine to Mitigate Memory Disclosure Attacks.ACM SIGPLAN NOTICES,52(7). |
MLA | Wang, Zhe,et al."RERANZ: A Light-Weight Virtual Machine to Mitigate Memory Disclosure Attacks".ACM SIGPLAN NOTICES 52.7(2017). |
条目包含的文件 | 条目无相关文件。 |
除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。