Global ETD Search

Search theses and dissertations gathered from participating repositories worldwide. Every result links back to the library that holds it. No account is needed.

Results

Showing 1 to 20 of 113 for “"security vulnerabilities"”.

  1. SECURITY VULNERABILITIES: DISCOVERY, PREDICTION, EFFECT, AND MITIGATION

    Security vulnerabilities pose a real threat to computing systems ranging from personal computers to mobile devices and critical systems. Quantification and prediction of vulnerabilities allows us to compare systems, orient and plan to mitigate vulnerabilities, and design reliable and secure …

    siu-theses Repository record for SECURITY VULNERABILITIES: DISCOVERY, PREDICTION, EFFECT, AND MITIGATION (opens in a new tab)

  2. Software and Hardware Techniques for Masking Security Vulnerabilities

    Security problems in computer systems are caused by a variety of design deficiencies, implementation defects and, as this thesis shows, by transient errors. The thesis first studies real world security vulnerabilities via an analysis of available security data and experimentation. Results of the …

    uiuc Repository record for Software and Hardware Techniques for Masking Security Vulnerabilities (opens in a new tab)

  3. Discovering Novel Microarchitectural Security Vulnerabilities in Modern Processors

    For decades, computer security issues such as viruses, worms, and Trojans have caused significant damages to computer systems across the world. Many of these security issues are caused by vulnerabilities in software allowing for memory corruption, a kind of attack where the contents of a computer’s …

    mit Repository record for Discovering Novel Microarchitectural Security Vulnerabilities in Modern Processors (opens in a new tab)

  4. Assessing Security Vulnerabilities: An Application of Partial and End-Game Verification and Validation

    … prompting a need for expandable software security assessment tools. Violable constraints/assumptions presented by Bazaz [1] are expandable and can be modified to fit the changing landscape of software systems. Partial and End-Game Verification, Validation, and Testing (VV&T) strategies …

    vt Repository record for Assessing Security Vulnerabilities: An Application of Partial and End-Game Verification and Validation (opens in a new tab)

  5. Live Library Upgrades via CRIU: A Novel Approach to Patch Security Vulnerabilities in Running Processes

    Ensuring the security and reliability of long running software without service interruption is a persistent challenge. This thesis introduces a technique for live library upgrades that replaces vulnerable or outdated shared libraries in a running process without terminating it. Using …

    uic

  6. Design for Security: Measurement, Analysis and Mitigation Techniques

    … is focused on measurement and analysis of security vulnerability impact and root causes, as well as the design of several techniques for vulnerability mitigation. The research begins with the analysis of the security vulnerabilities published in the Bugtraq list and CERT advisories. An …

    uiuc Repository record for Design for Security: Measurement, Analysis and Mitigation Techniques (opens in a new tab)

  7. Testing a web application for security using static code analysis and dynamic analysis

    … of appropriately testing web applications for security. Our system is a flexible and extensible tool which uses a combination of static and dynamic analysis to identify security vulnerabilities. The framework also supports correlation of results from multiple static analysers. Any static …

    malta Repository record for Testing a web application for security using static code analysis and dynamic analysis (opens in a new tab)

  8. Predictable Connected Traffic Infrastructure

    … legacy traffic infrastructure may also introduce security vulnerabilities. To ensure that the timeliness and resource constraints of the vehicles using the roadways as well as the applications being deployed on the traffic infrastructure are met, the transportation systems needs to be more …

    vt Repository record for Predictable Connected Traffic Infrastructure (opens in a new tab)

  9. Evolutionary Strategies for Secure Moving Target Configuration Discovery

    Defense against many cyber security threats can be implemented with existing software on the machine, without requiring patches for current programs or the installation of specialized security software. There are certain operating system or program parameters which, if set properly, can close …

    wfu Repository record for Evolutionary Strategies for Secure Moving Target Configuration Discovery (opens in a new tab)

  10. Improving web site security with data flow management

    … use data flow management to help reduce the security risks of using buggy or malicious code. RESIN provides programmers with language-level mechanisms to track and manage the flow of data within the server. These mechanisms make it easy for programmers to catch server-side data flow bugs that …

    mit Repository record for Improving web site security with data flow management (opens in a new tab)

  11. Securing Operating Systems using Hardware-Enforced Compartmentalization

    … in performance, they suffer from exposure to security vulnerabilities. The past 6 years of published Linux CVE data has revealed hundreds of security vulnerabilites that can potentially be exploited by an attacker to escalate privileges and leak sensitive user data. Though some of these …

    mit Repository record for Securing Operating Systems using Hardware-Enforced Compartmentalization (opens in a new tab)

  12. An analysis of patch plausibility and correctness for generate-and-validate patch generation systems

    … negative effects include the introduction of security vulnerabilities and the elimination of desirable standard functionality. We also present Kali, a generate-and-validate patch generation system that only deletes functionality. Working with a simpler and more effectively focused search …

    mit Repository record for An analysis of patch plausibility and correctness for generate-and-validate patch generation systems (opens in a new tab)

  13. Verified compilation of abstract network policies

    … resulting in network outages and security vulnerabilities occur frequently in practice. We present a formally verified compiler from high-level network policies to low-level executable routing rules, to simplify the process of correctly conguring networks and enforcing network …

    mit Repository record for Verified compilation of abstract network policies (opens in a new tab)

  14. Safety and security of cyber-physical systems

    … verifying their correctness and eliminating security vulnerabilities can quickly explode. On top of the unintentional bugs and problems, malicious attacks on cyber-physical systems (CPS) can also lead to adverse outcomes on physical plants. Some of the recent attacks on CPS are focused on …

    uiuc Repository record for Safety and security of cyber-physical systems (opens in a new tab)

  15. Static Extraction Of Dataflow Communication For Security

    <p>The cost of security vulnerabilities in widely-deployed code such as mobile applications is high. As a result, many companies are using Architectural Risk Analysis (ARA) to find security vulnerabilities before releasing their applications. The existing analyses are focused on finding local …

    wayne-thes Repository record for Static Extraction Of Dataflow Communication For Security (opens in a new tab)

  16. Flexible And Efficient Accelerator Architecture For Runtime Monitoring

    … remains an open problem. Just in the past year, security vulnerabilities continued to be discovered in widely-used applications, and remote attacks that take advantage of these vulnerabilities can cause an enormous amount of damage. Runtime monitoring is a promising approach for addressing a wide …

    cornell Repository record for Flexible And Efficient Accelerator Architecture For Runtime Monitoring (opens in a new tab)

  17. Privacy Attacks and Defenses under Security Threats in Machine Learning

    … However, machine learning models exhibit some vulnerabilities against threats in the real world, including privacy risks and security concerns. In terms of privacy risks, malicious users can steal the private information of other users or model owners, including recovering training data, …

    uts Repository record for Privacy Attacks and Defenses under Security Threats in Machine Learning (opens in a new tab)

  18. Towards Correct and Efficient Persistent Fuzzing: Dynamic Coverage Removal and State Management

    … for automatically discovering software bugs and security vulnerabilities. This work improves the efficiency and correctness of coverage-guided fuzzers by introducing dynamic removal of redundant coverage instrumentation and implementing a state-managed version of persistent mode. Traditional …

    vt Repository record for Towards Correct and Efficient Persistent Fuzzing: Dynamic Coverage Removal and State Management (opens in a new tab)

  19. Verified security properties for the capability-enhanced CHERI-MIPS architecture

    … to build secure systems. The majority of security vulnerabilities are caused by a combination of two fundamental problems. First, mainstream engineering methods are not suited to find small bugs in corner cases. Second, mainstream hardware architectures and C/C++ language abstractions …

    cambridge Repository record for Verified security properties for the capability-enhanced CHERI-MIPS architecture (opens in a new tab)

Page 1 of 6