Lightweight and Seamless Memory Randomization for Mission-Critical Services in a Cloud Platform

被引:7
|
作者
Yun, Joobeom [1 ]
Park, Ki-Woong [1 ]
Koo, Dongyoung [2 ]
Shin, Youngjoo [3 ]
机构
[1] Sejong Univ, Dept Comp & Informat Secur, Seoul 05006, South Korea
[2] Hansung Univ, Dept Elect & Informat Engn, Seoul 02876, South Korea
[3] Kwangwoon Univ, Dept Comp & Informat Engn, Seoul 01897, South Korea
基金
新加坡国家研究基金会;
关键词
address space layout randomization (ASLR); rerandomization; code-reuse attack; return-oriented programming (ROP); seamless memory randomization;
D O I
10.3390/en13061332
中图分类号
TE [石油、天然气工业]; TK [能源与动力工程];
学科分类号
0807 ; 0820 ;
摘要
Nowadays, various computing services are often hosted on cloud platforms for their availability and cost effectiveness. However, such services are frequently exposed to vulnerabilities. Therefore, many countermeasures have been invented to defend against software hacking. At the same time, more complicated attacking techniques have been created. Among them, code-reuse attacks are still an effective means of abusing software vulnerabilities. Although state-of-the-art address space layout randomization (ASLR) runtime-based solutions provide a robust way to mitigate code-reuse attacks, they have fundamental limitations; for example, the need for system modifications, and the need for recompiling source codes or restarting processes. These limitations are not appropriate for mission-critical services because a seamless operation is very important. In this paper, we propose a novel ASLR technique to provide memory rerandomization without interrupting the process execution. In addition, we describe its implementation and evaluate the results. In summary, our method provides a lightweight and seamless ASLR for critical service applications.
引用
收藏
页数:15
相关论文
共 31 条
  • [1] Cooperative Infrastructure Platform for Delivering Mission-critical Services
    Kuwahara T.
    Ishibashi R.
    Kawakami K.
    Masutani H.
    Yamamoto H.
    Yasukawa S.
    NTT Technical Review, 2021, 19 (10): : 44 - 50
  • [2] A Framework for Continuity of Mission-Critical Network Services
    Kumar, Rajiv
    Cholda, Piotr
    2015 IEEE INTERNATIONAL CONFERENCE ON ADVANCED NETWORKS AND TELECOMMUNCATIONS SYSTEMS (ANTS), 2015,
  • [3] Memory leak analysis of mission-critical middleware
    Carrozza, G.
    Cotroneo, D.
    Natella, R.
    Pecchia, A.
    Russo, S.
    JOURNAL OF SYSTEMS AND SOFTWARE, 2010, 83 (09) : 1556 - 1567
  • [4] Orchestration of Mission-Critical Services over an NFV Architecture
    Sanchoyerto, Aitor
    Solozabal, Ruben
    Blanco, Bego
    Jimeno, Elisa
    Aldecoa, Endika
    Basurto, Estrella
    Liberal, Fidel
    ARTIFICIAL INTELLIGENCE APPLICATIONS AND INNOVATIONS (AIAI 2019), 2019, 560 : 70 - 77
  • [5] Migrating mission-critical applications in federated cloud: A case study
    Amato A.
    Aversa R.
    Ficco M.
    Venticinque S.
    International Journal of High Performance Computing and Networking, 2018, 12 (04) : 379 - 390
  • [6] Hosting Mission-Critical Applications on Cloud: Technical Issues and Challenges
    Ficco, Massimo
    Amato, Alba
    Venticinque, Salvatore
    NETWORK, SMART AND OPEN: THREE KEYWORDS FOR INFORMATION SYSTEMS INNOVATION, 2018, 24 : 179 - 191
  • [7] Nomad: A Framework for Developing Mission-Critical Cloud-based Applications
    Diallo, Mamadou H.
    August, Michael
    Hallman, Roger
    Kline, Megan
    Au, Henry
    Beach, Vic
    PROCEEDINGS 10TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY ARES 2015, 2015, : 660 - 669
  • [8] On the Evaluation of VM Provisioning Time in Cloud Platforms for Mission-Critical Infrastructures
    Carrozza, Gabriella
    Battaglia, Luigi
    Manetti, Vittorio
    Marotta, Antonio
    Canonico, Roberto
    Avallone, Stefano
    2014 14TH IEEE/ACM INTERNATIONAL SYMPOSIUM ON CLUSTER, CLOUD AND GRID COMPUTING (CCGRID), 2014, : 802 - 810
  • [9] Measurement-Based Outage Probability Estimation for Mission-Critical Services
    Lopez, Melisa
    Sorensen, Troels B.
    Kovacs, Istvan Z.
    Wigard, Jeroen
    Mogensen, Preben
    IEEE ACCESS, 2021, 9 : 169395 - 169408
  • [10] Volatile Memory Collection and Analysis for Windows Mission-Critical Computer Systems
    Savoldi, Antonio
    Gubian, Paolo
    INTERNATIONAL JOURNAL OF DIGITAL CRIME AND FORENSICS, 2009, 1 (03) : 42 - 61