arrow
Return

Reducing Unauthorized Modification of Digital Objects

delete2012-01-01
delete2
PRE
AI
P
Paul C. van Oorschot *
G
Glenn Wurster
DOI:10.1109/TSE.2011.7delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
We consider the problem of malicious modification of digital objects. We present a protection mechanism designed to protect against unauthorized replacement or modification of digital objects while still allowing authorized updates transparently. We use digital signatures without requiring any centralized public key infrastructure. To explore the viability of our proposal, we apply the approach to file-system binaries, implementing a prototype in Linux which protects operating system and application binaries on disk. To test the prototype and related kernel modifications, we show that it protects against various rootkits currently available while incurring minimal overhead costs. The general approach can be used to restrict updates to general digital objects.
Keywords:
Protection mechanisms
software release management and delivery
system integration and implementation
access controls
file organization
operating systems
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

IEEE Transactions on Software Engineering cover
IEEE Transactions on Software Engineering
IF:
5.6
Papers:
2.8K
Citations:
1.1W

Organization

C
carleton university
Scholars:
7.5K
Papers: 8.3K
Citations: 5