loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Paper Unlock

Authors: Marinos Tsantekidis 1 and Vassilis Prevelakis 2

Affiliations: 1 Institute of Computer Science - FORTH, Greece ; 2 AEGIS IT RESEARCH GmbH, Germany

Keyword(s): Runtime Monitoring, Library Calls, Access Control Gates, Security Policies.

Abstract: Code Reuse Attacks can trick the CPU into performing some actions not originally intended by the running program. This is due to the fact that the execution can move anywhere within a process’s executable memory area, as well as the absence of policy checks when a transfer is performed. In our effort to defend against this type of attacks, in an earlier paper we present a Proof-of-Concept mitigation technique based on a modified Linux kernel where each library - either dynamically or statically linked - constitutes a separate code region. The idea behind this technique is to compartmentalize memory in order to control access to the different memory segments, through a gate. Taking our previous work one step further, in this paper we present an updated version of our kernel-side technique, where we implement security policies in order to identify suspicious behavior and take some action accordingly.

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 18.223.119.17

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Tsantekidis, M. and Prevelakis, V. (2021). MMU-based Access Control for Libraries. In Proceedings of the 18th International Conference on Security and Cryptography - SECRYPT; ISBN 978-989-758-524-1; ISSN 2184-7711, SciTePress, pages 686-691. DOI: 10.5220/0010536706860691

@conference{secrypt21,
author={Marinos Tsantekidis. and Vassilis Prevelakis.},
title={MMU-based Access Control for Libraries},
booktitle={Proceedings of the 18th International Conference on Security and Cryptography - SECRYPT},
year={2021},
pages={686-691},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0010536706860691},
isbn={978-989-758-524-1},
issn={2184-7711},
}

TY - CONF

JO - Proceedings of the 18th International Conference on Security and Cryptography - SECRYPT
TI - MMU-based Access Control for Libraries
SN - 978-989-758-524-1
IS - 2184-7711
AU - Tsantekidis, M.
AU - Prevelakis, V.
PY - 2021
SP - 686
EP - 691
DO - 10.5220/0010536706860691
PB - SciTePress