MacMusic  |  PcMusic  |  440 Software  |  440 Forums  |  440TV  |  Zicos
openbsd
Recherche

[$] OpenBSD system-call pinning

mercredi 31 janvier 2024, 20:46 , par LWN.net
Return-oriented programming (ROP) attacks are hard to defend against.
Partial mitigations such as address-space layout randomization, stack
canaries, and other techniques are commonly deployed to try and frustrate
ROP attacks. Now, OpenBSD is experimenting with a new
mitigation that makes it harder for attackers to make system
calls, although some security researchers have expressed doubt that it will
prove effective at stopping real-world attacks.
In his
announcement message, Theo de Raadt said that this work
'makes some specific low-level attack
methods unfeasable on OpenBSD, which will force the use of other methods.'
https://lwn.net/Articles/959562/

Voir aussi

News copyright owned by their original publishers | Copyright © 2004 - 2024 Zicos / 440Network
Date Actuelle
dim. 5 mai - 10:34 CEST