Helen J. Wang, Vulnerability-Driven Network Filters for Preventing Known Vulnerability Attacks

EPISODE · Mar 30, 2005 · 50 MIN

Helen J. Wang, Vulnerability-Driven Network Filters for Preventing Known Vulnerability Attacks

from CERIAS Weekly Security Seminar - Purdue University

Software patching has not been an effective first-line defense preventing large-scale worm attacks, even when patches had long been available for their corresponding vulnerabilities. Generally, people have been reluctant to patch their systems immediately, because patches are perceived to be unreliable and disruptive to apply. To address this problem, we propose a first-line worm defense in the network stack, using shields -- vulnerability-specific, exploit-generic network filters installed in end systems once a vulnerability is discovered, and before the patch is applied. These filters examine the incoming or outgoing traffic of vulnerable applications, and drop or correct traffic that exploits vulnerabilities. Shields are less disruptive to install and uninstall, easier to test for bad side effects, and hence more reliable than traditional software patches. Further, shields are resilient to polymorphic or metamorphic variations of exploits In the Shield project, we're showing that this concept is feasible by implementing a prototype Shield framework that filters traffic at the transport layer. We have designed a safe and restrictive language to describe vulnerabilities as partial state machines of the vulnerable application. The expressiveness of the language has been verified by encoding the signatures of a number of known vulnerabilities. Our evaluation provides evidence of Shield's low false positive rate and impact on application throughput. An examination of a sample set of known vulnerabilities suggests that Shield could be used to prevent exploitation of a substantial fraction of the most dangerous ones. About the speaker: Helen J. Wang is a researcher in the Systems and Networking research group at Microsoft Research, Redmond, WA. Her research interests are in system/network security, networking, protocol architectures, mobile/wireless computing, and wide-area large scale distributed system design. She received her Ph.D. degree from the Computer Science department of U. C. Berkeley in December, 2001. Her Ph.D. thesis was on \"Scalable, robust wide-area control architecture for integrated communications\". Helen obtained her Bachelor of Science in Computer Science from U. T. Austin, and Master of Science in Computer Science from U. C. Berkeley.

NOW PLAYING

Helen J. Wang, Vulnerability-Driven Network Filters for Preventing Known Vulnerability Attacks

0:00 50:11

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

Managing Next Generation Energy Systems Cambridge University Background Stakeholders working with energy systems have to make complex decisions formulated from risk-based assessments about the future. The move towards more renewables in our energy systems complicates matters even further, requiring the development of an integrated power grid and continuous and steady transformation of the UK power system. Network flows must be managed reliably under uncertain demands, uncertain supply, emerging network technologies and possible failures and, further, prices in related markets can be highly volatile. Mathematicians working with engineers and economists, can make significant contributions to address such issues, by helping to develop fit-for-purpose models for next generation energy systems. These interdisciplinary approaches are looking to address a range of associated problems, including modelling, prediction, simulation, control, market and mechanism design and optimisation. This knowledge exchange workshop was part of the four months Res PolyCast The PolyCast Team PolyCast is a bi-weekly podcast focused on the mainline series of Sid Meier's Civilization games. PolyCast's co-hosts are CanusAlbinus, Makahlua, TheMeInTeam and MegaBearsFan. Entertaining and informing Civ. Previous Episodes can be found at ThePolyCast.net Bravo’s Dos Amigas Genevieve and Angela A Real Housewives recap podcast. Hosted by two news anchors that are diehard Bravo watchers. The Real Housewives weekly recap. Highway 62 Danny Thompson Highway 62, from Morongo Valley, up through Yucca Valley, Joshua Tree and finally Twenty Nine Palms, is home to an eclectic mix of businesses, people and stories. This weekly podcast hosted by Face to Face drummer and resident of Twenty Nine palms, Danny Thompson, brings you their stores and highlights what this famous stretch of desert road has to offer.
URL copied to clipboard!