Title | ||
---|---|---|
PEASOUP: preventing exploits against software of uncertain provenance (position paper) |
Abstract | ||
---|---|---|
Because software provides much of the critical services for modern society, it is vitally important to provide methodologies and tools for building and deploying reliable software. While there have been many advances towards this goal, much research remains to be done. For example, a recent evaluation of five state-of-the-art C/C++ static analysis tools applied to a corpus of code containing common weaknesses revealed that 41% of the potential vulnerabilities were detected by no tool. The problem of deploying resilient software is further complicated because modern software is often assembled from components from many sources. Consequently, it is difficult to know who built a particular component and what processes were used in its construction. Our research goal is to develop and demonstrate technology that provides comprehensive, automated techniques that allow end users to safely execute new software of uncertain provenance. This paper presents an overview of our vision for realizing these goals and outlines some of the challenging research problems that must be addressed to realize our vision. We call our vision PEASOUP and have begun implementing and evaluating these ideas. |
Year | DOI | Venue |
---|---|---|
2011 | 10.1145/1988630.1988639 | SESS@ICSE |
Field | DocType | Citations |
Static program analysis,Security testing,Software engineering,End user,Computer science,Position paper,Static analysis,Exploit,Software,Software construction | Conference | 4 |
PageRank | References | Authors |
0.44 | 23 | 13 |
Name | Order | Citations | PageRank |
---|---|---|---|
Michele Co | 1 | 144 | 8.84 |
Jack W. Davidson | 2 | 1535 | 177.98 |
Jason Hiser | 3 | 585 | 33.57 |
John Knight | 4 | 1402 | 151.05 |
Anh Nguyen-tuong | 5 | 688 | 61.25 |
David Cok | 6 | 177 | 5.60 |
Denis Gopan | 7 | 91 | 5.52 |
David Melski | 8 | 447 | 26.47 |
Wenke Lee | 9 | 9351 | 628.83 |
Chengyu Song | 10 | 412 | 30.15 |
Thomas Bracewell | 11 | 4 | 0.44 |
David Hyde | 12 | 6 | 3.25 |
Brian Mastropietro | 13 | 6 | 0.93 |