Skip to main navigation Skip to search Skip to main content

Address-space randomization for windows systems

  • Global InfoTek, Inc.

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

33 Scopus citations

Abstract

Address-space randomization (ASR) is a promising solution to defend against memory corruption attacks that have contributed to about three-quarters of US-CERT advisories in the past few years. Several techniques have been proposed for implementing ASR on Linux, but its application to Microsoft Windows, the largest monoculture on the Internet, has not received as much attention. We address this problem in this paper and describe a solution that provides about 15-bits of randomness in the locations of all (code or data) objects. Our randomization is applicable to all processes on a Windows box, including all core system services, as well as applications such as web browsers, office applications, and so on. Our solution has been deployed continuously for about a year on a desktop system used daily, and is robust enough for production use.

Original languageEnglish
Title of host publicationProceedings - Annual Computer Security Applications Conference, ACSAC
Pages329-338
Number of pages10
DOIs
StatePublished - 2006
Event22nd Annual Computer Security Applications Conference, ACSAC 2006 - Miami Beach, FL, United States
Duration: Dec 11 2006Dec 15 2006

Publication series

NameProceedings - Annual Computer Security Applications Conference, ACSAC
ISSN (Print)1063-9527

Conference

Conference22nd Annual Computer Security Applications Conference, ACSAC 2006
Country/TerritoryUnited States
CityMiami Beach, FL
Period12/11/0612/15/06

Fingerprint

Dive into the research topics of 'Address-space randomization for windows systems'. Together they form a unique fingerprint.

Cite this