Des correctifs de securite a la mise a jour
Nicolas Loriant, Marc Segura Devillechaise, Jean-Marc Menaud
Abstract
The ever growing software complexity suggests that they will never be bugfree and therefore secure. Software compagnies regulary publish updates. But maybe because of lack of time or care or maybe because stopping application is annoying, such updates are rarely if ever deployed on users' machines. We propose an integrated tool allowing system administrators to deploy critical security updates on the fly on applications running remotly without end-user intervention. Our approach is based on an aspect weaving system, Arachne, that dynamicaly rewrites binary code. Hence updated applications are still running while they are updated. Our second tool Minerve integrates Arachne within the standart updating process: Minerve takes a patch produced by dif and eventually builds a dynamic patch that can later be woven to update the application on the fly. In addition, Minerve allows to consult patches translated in a dedicated language and hence eases auditing tasks.
Create a lesson
Related papers
RUN-O-RAN: An O-RAN-Native Architecture Enabling Cooperative Uplink Localization
Viola Bernazzoli, Alberto Ceresoli, Ilario Filippini
NS3Learn: Transferring 5G NR Mode-2 Reception Realism from ns-3 to the Veins/SUMO Stack for Connected-Vehicle Safety Assessment
Rasheed Bello, Arthur Mukwaya, Gurcan Comert et al.
Value-Based Massive Access through Goal-Oriented Irregular Repetition Slotted ALOHA
Pietro Talli, Andrea Munari, Federico Mason et al.
STR-Agent: An LLM-Driven Agent for QoS-Aware Routing in LEO Satellite Networks
Bowen Lu, Mugen Peng, Yaohua Sun et al.
PyStream: Enhancing Video Streaming Evaluation
Samuel Radler, Leon Prüller, Emanuele Artioli et al.
Taming the Agentic RAN: Stability-Guaranteed Arbitration of Autonomous AI Agents in O-RAN
Seyed Bagher Hashemi Natanzi, Bo Tang