Sciweavers

PAISI
2007
Springer

Security Assessment for Application Network Services Using Fault Injection

13 years 11 months ago
Security Assessment for Application Network Services Using Fault Injection
Vulnerabilities in network protocol software have been problematic since Internet infrastructure was deployed. These vulnerabilities damage the reliability of network software and create security holes in computing environment. Many critical security vulnerabilities exist in application network services of which specification or description has not been published. In this paper, we propose a security assessment methodology based on fault injection techniques to improve reliability of the application network services with no specifications published. We also implement a tool for security testing based on the proposed methodology. Windows RPC network services are chosen as an application network service considering its unknown protocol specification and are validated by the methodology. It turns out that the tool detects unknown vulnerabilities in Windows network module.
Hyungwoo Kang, Dong Hoon Lee
Added 09 Jun 2010
Updated 09 Jun 2010
Type Conference
Year 2007
Where PAISI
Authors Hyungwoo Kang, Dong Hoon Lee
Comments (0)