Retaining Sandbox Containment Despite Bugs in Privileged Memory-Safe Code

Source: Association for Computing Machinery

Favorite

Free registration required

Flaws in the standard libraries of secure sandboxes represent a major security threat to billions of devices worldwide. The standard libraries are hard to secure because they frequently need to perform low-level operations that are forbidden in untrusted application code. Existing designs have a single, large trusted computing base that contains security checks at the boundaries between trusted and untrusted code. Unfortunately, flaws in the standard library often allow an attacker to escape the security protections of the sandbox.
Format:PDF Size:289.18
Date:Oct 2010