Towards a diversification framework for operating system protection




Rauti Sampsa, Holvitie Johannes, Leppänen Ville

Boris Rachev, Angel Smrikarov

International conference on computer systems and technologies

2014

CompSysTech '14 Proceedings of the 15th International Conference on Computer Systems and Technologies

ACM International Conference Proceeding Series

883

286

293

978-1-4503-2753-4

DOIhttps://doi.org/10.1145/2659532.2659642(external)



In order to use resources of a computer, malware has to know the interfaces provided by the operating system. If we make these critical interfaces unique by diversifying the operating system and user applications, a piece of malware can no longer successfully interact with its environment. Diversification can be considered as a computer-specific secret. This paper discusses how this API diversification could be performed. We also study how much work would be needed to diversify the Linux kernel in order to hide the system call interface from malware.




Last updated on 2024-26-11 at 13:14