DocumentCode :
2758141
Title :
AEGIS: A Proactive Methodology to Shield against Zero-Day Exploits
Author :
Chandrasekaran, Madhusudhanan ; Baig, Mukarram ; Upadhyaya, Shambhu
Author_Institution :
University at Buffalo, USA
Volume :
2
fYear :
2007
fDate :
21-23 May 2007
Firstpage :
556
Lastpage :
563
Abstract :
Given the large number of vulnerability instances disclosed in various bug-tracking communities, system administrators face an up-hill task of protecting their system/ network against zero-day exploits. In order to safeguard against such exploits, the present challenges come in two-fold: (i) there exists a compelling need to assimilate configuration specific vulnerability information from various bug-tracking diaspora; also (ii) there is a need to proactively generate policy specific signatures which act as a first line of defense. In this paper we propose an automated approach for determining vulnerabilities pertinent to the current network/ system configuration using the information aggregated from different bug tracking communities. Such vulnerability assessment and indication mechanisms significantly alleviate the system administrator¿s burden of manual content digging for vulnerabilities in his own configuration context. Furthermore, we propose an Extensible Defense Oriented Representation Schema (EDORS) for vulnerability representation, which is subsequently used by the policy engine to generate appropriate signatures. As a result, the generated signatures can be viewed as a preventive interim security measure against recently published threats until its patch is released. We have also evaluated our framework through a series of experiments.
Keywords :
Application software; Computer science; Context awareness; Decision making; Laboratories; Middleware; Mobile computing; Reflection; Safety; Usability;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Advanced Information Networking and Applications Workshops, 2007, AINAW '07. 21st International Conference on
Conference_Location :
Niagara Falls, ON, Canada
Print_ISBN :
978-0-7695-2847-2
Type :
conf
DOI :
10.1109/AINAW.2007.72
Filename :
4224163
Link To Document :
بازگشت