Abstract
The paper outlines to the problem of correlation between security and scalability of software protection against tampering based on the remote entrusting principles. The goal of the paper is to propose a technique allowing choosing the most effective combination of different protection methods to apply. The technique is aimed at finding a trade-off between performance of the protection mechanism and its security, ensuring both a necessary security level and an appropriate scalability. The technique encompasses the evaluation of particular protection methods belonging to the whole protection mechanism and getting quantitative metrics of their performance and security level.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Preview
Unable to display preview. Download preview PDF.
References
Atallah, M., Bryant, E., Stytz, M.: A survey of Anti-Tamper Technologies. The Journal of Defence Software Engineering (2004)
Barbara, D., Goel, R., Jajodia, S.: A checksum-based corruption detection technique. Journal of Computer Security 11(3) (2003)
Beshelev, S.D., Gurvich, A.G.: Mathematical-statistical methods for expert Judgments. Statistika (1980)
Chappell, B.L., Marlow, D.T., Irey, P.M., O’Donoghue, K.: An Approach for Measuring IP Security Performance in a Distributed Environment. In: Rolim, J.D.P. (ed.) IPPS-WS 1999 and SPDP-WS 1999. LNCS, vol. 1586. Springer, Heidelberg (1999)
Ceccato, M., Preda, M., Majumdar, A., Tonella, P.: Remote software protection by orthogonal client replacement. In: The 24th ACM Symposium on Applied Computing (2009)
Ceccato, M., Preda, M., Nagra, J., Collberg, C., Tonella, P.: Barrier Slicing for Remote Software Trusting. In: The IEEE International Working Conference on Source Code Analysis and Manipulation, Paris, France (2007)
Collberg, C., Thomborson, C.: Watermarking, tamper-proofing, and obfuscation tools for software protection. IEEE Transactions on Software Engineering 28 (2002)
Freeman, W., Miller, E.: An Experimental Analysis of Cryptographic Overhead in Performance-Critical Systems. In: The 7th International Symposium on Modeling, Analysis and Simulation of Computer and Telecommunication Systems (1999)
FP6 Project RE-TRUST, http://www.re-trust.org
Godoy, G., Tiwari, A.: Invariant Checking for Programs with Procedure Calls. In: Palsberg, J., Su, Z. (eds.) SAS 2009. LNCS, vol. 5673, pp. 326–342. Springer, Heidelberg (2009)
Jain, R.: The Art of Computer Systems Performance Analysis: Techniques for Experimental Design, Measurement, Simulation, and Modeling. Wiley-Interscience, New York (1991)
Kennell, R., Jamieson, L.H.: Establishing the genuinity of remote computer systems. In: The 12th USENIX Security Symposium, Washington, DC, USA (2003)
Menasce, D.A.: Security performance. IEEE Internet Computing 7(3) (2003)
Oh, N., Shirvani, P.P., McCluskey, E.J.: Control-flow checking by software signatures. IEEE Transactions on Reliability 51 (2002)
Seshadri, A., Luk, M., Shi, E., Perrig, A., Doorn, L.V., Khosla, P.: Pioneer: verifying code integrity and enforcing untampered code execution on legacy systems. In: The Twentieth ACM Symposium on Operating Systems Principles. ACM Press, New York (2005)
Seshadri, A., Perrig, A., Doorn, L.V., Khosla, P.: SWATT: SoftWare-based ATTestation for Embedded Devices. The IEEE Symposium on Security and Privacy (2004)
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2010 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Desnitsky, V., Kotenko, I. (2010). Security and Scalability of Remote Entrusting Protection. In: Kotenko, I., Skormin, V. (eds) Computer Network Security. MMM-ACNS 2010. Lecture Notes in Computer Science, vol 6258. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-642-14706-7_23
Download citation
DOI: https://doi.org/10.1007/978-3-642-14706-7_23
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-642-14705-0
Online ISBN: 978-3-642-14706-7
eBook Packages: Computer ScienceComputer Science (R0)