2005 · 93 citations · 17 references
We present OPUS, a tool for dynamic software patching capable of applying fixes to a C program at runtime. OPUS’s primary goal is to enable application of security patches to interactive applications that are a frequent target of security exploits. By restricting the type of patches admitted by our system, we are able to significantly reduce any additional burden on the programmer beyond what would normally be required in developing and testing a conventional stop-and-restart patch. We hand-tested 26 real CERT [1] vulnerabilities, of which 22 were dynamically patched with our current OPUS prototype, doing so with negligible runtime overhead and no prior knowledge of the tool’s existence on the patch programmer’s part. 1
17
Microreboot -- A Technique for Cheap Recovery
George Candea, Shinichi Kawamoto, Yuichi Fujiki et al. · ArXiv.org · 2004 · 366 citations · Full text
Detecting format string vulnerabilities with type qualifiers
Umesh Shankar, Kunal Talwar, Jeffrey S. Foster et al. · 2001 · 356 citations
Using the GNU Compiler Collection
Richard Stallman · Molecular Immunology · 2010 · 271 citations
Windows of vulnerability: a case study analysis
John McHugh, William Fithen, William A. Arbaugh · Computer · 2000 · 263 citations
Helen J. Wang, Chuanxiong Guo, Daniel Simón et al. · 2004 · 262 citations