Passer à la navigation principale Passer à la recherche Passer au contenu principal

Detection of leaks through exception mechanisms

  • Tlemcen University

Résultats de recherche: Le chapitre dans un livre, un rapport, une anthologie ou une collectionContribution à une conférenceRevue par des pairs

Résumé

A timing attack is a security exploit that allows an attacker to discover vulnerabilities in the security of a computer or network system by analysing the execution time of algorithms. This is because each operation in a program takes time to be executed, and this time may vary depending on its inputs and the characteristics of the microprocessor on which it runs. With accurate time measurements for each operation, it may be possible for an attacker to discover secrets through the analysis of the execution time of a program. This paper presents an automatable approach for detecting information leakage in programs through timing information. It is based on the Z3-SMT solver. It allows to detect vulnerabilities in a software code according to a given security specification and target architecture. This paper also features some research issues that will be addressed during my thesis.

langue originaleAnglais
titreICAASE 2022 - 5th Edition of the International Conference on Advanced Aspects of Software Engineering, Proceedings
EditeurInstitute of Electrical and Electronics Engineers Inc.
ISBN (Electronique)9781665492027
Les DOIs
étatPublié - 1 janv. 2022
Evénement5th Edition of the International Conference on Advanced Aspects of Software Engineering, ICAASE 2022 - Constantine, Algérie
Durée: 17 sept. 202218 sept. 2022

Série de publications

NomICAASE 2022 - 5th Edition of the International Conference on Advanced Aspects of Software Engineering, Proceedings

Une conférence

Une conférence5th Edition of the International Conference on Advanced Aspects of Software Engineering, ICAASE 2022
Pays/TerritoireAlgérie
La villeConstantine
période17/09/2218/09/22

Empreinte digitale

Examiner les sujets de recherche de « Detection of leaks through exception mechanisms ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation