Back to Search
Start Over
Lightweight and Seamless Memory Randomization for Mission-Critical Services in a Cloud Platform
- Source :
- Energies; Volume 13; Issue 6; Pages: 1332, Energies, Vol 13, Iss 6, p 1332 (2020)
- Publication Year :
- 2020
- Publisher :
- Multidisciplinary Digital Publishing Institute, 2020.
-
Abstract
- Nowadays, various computing services are often hosted on cloud platforms for their availability and cost effectiveness. However, such services are frequently exposed to vulnerabilities. Therefore, many countermeasures have been invented to defend against software hacking. At the same time, more complicated attacking techniques have been created. Among them, code-reuse attacks are still an effective means of abusing software vulnerabilities. Although state-of-the-art address space layout randomization (ASLR) runtime-based solutions provide a robust way to mitigate code-reuse attacks, they have fundamental limitations; for example, the need for system modifications, and the need for recompiling source codes or restarting processes. These limitations are not appropriate for mission-critical services because a seamless operation is very important. In this paper, we propose a novel ASLR technique to provide memory rerandomization without interrupting the process execution. In addition, we describe its implementation and evaluate the results. In summary, our method provides a lightweight and seamless ASLR for critical service applications.
- Subjects :
- Service (systems architecture)
Control and Optimization
Source code
Computer science
Cost effectiveness
Process (engineering)
media_common.quotation_subject
Mission critical
0211 other engineering and technologies
Vulnerability
Energy Engineering and Power Technology
Cloud computing
02 engineering and technology
address space layout randomization (ASLR)
rerandomization
code-reuse attack
return-oriented programming (ROP)
seamless memory randomization
Computer security
computer.software_genre
lcsh:Technology
Software
0202 electrical engineering, electronic engineering, information engineering
Electrical and Electronic Engineering
address space layout randomization (aslr)
Engineering (miscellaneous)
media_common
021110 strategic, defence & security studies
Address space layout randomization
Renewable Energy, Sustainability and the Environment
business.industry
lcsh:T
020206 networking & telecommunications
return-oriented programming (rop)
business
computer
Energy (miscellaneous)
Subjects
Details
- Language :
- English
- ISSN :
- 19961073
- Database :
- OpenAIRE
- Journal :
- Energies; Volume 13; Issue 6; Pages: 1332
- Accession number :
- edsair.doi.dedup.....7ca149b4881ba200c7c8700e862b94f9
- Full Text :
- https://doi.org/10.3390/en13061332