学术报告|Securing Low-level Software Gradually

admin 2024年5月21日20:12:52评论17 views字数 1675阅读5分35秒阅读模式

浙江大学计算机科学与技术学院

浙江大学区块链与数据安全全国重点实验室

浙江大学网络空间安全学院

学术报告

学术报告|Securing Low-level Software Gradually

Jie Zhou

Assistant Professor

George Washington University

Securing Low-level Software Gradually

2024年5月23日(周四 )10:00

玉泉校区科工楼218会议室

报告简介

The security of low-level systems software, such as web servers and operating systems, plays a foundational role in providing stable and trustworthy daily services in our modern digital world. However, the use of unsafe programming languages and lack of security principles in low-level software result in severe security issues, leading to catastrophic consequences such as widespread information leaking and data corruption.

In this talk, I will show how to fundamentally improve the security of low-level software with a gradual methodology. I will talk about enhancing the C programming language to fully prevent temporal memory safety bugs—which are among the most dangerous software vulnerabilities today. I will also present an efficient memory isolation technique and its application to protect security-critical data for embedded systems. In addition, I will briefly talk about my current work on improving the Rust programming language and my research vision regarding safe languages and compilers. 

报告人简介

Jie Zhou is a postdoctoral researcher in the Department of Computer Science at the University of Rochester, where he also obtained his PhD. He will join the Department of Computer Science at the George Washington University as an assistant professor in Fall 2024. He works on systems and software security, with a focus on employing language-based, compiler-aided, and program analysis techniques to tackle computer vulnerabilities. He is broadly interested in computer systems and has published in venues across security, programming languages, and systems. During his PhD, he interned twice at Microsoft Research which also supported his work on improving the C language.

学术报告|Securing Low-level Software Gradually

更多学院动态

欢迎关注

学术报告|Securing Low-level Software Gradually

原文始发于微信公众号(浙大网安):学术报告|Securing Low-level Software Gradually

免责声明:文章中涉及的程序(方法)可能带有攻击性,仅供安全研究与教学之用,读者将其信息做其他用途,由读者承担全部法律及连带责任,本站不承担任何法律及连带责任;如有问题可邮件联系(建议使用企业邮箱或有效邮箱,避免邮件被拦截,联系方式见首页),望知悉。
  • 左青龙
  • 微信扫一扫
  • weinxin
  • 右白虎
  • 微信扫一扫
  • weinxin
admin
  • 本文由 发表于 2024年5月21日20:12:52
  • 转载请保留本文链接(CN-SEC中文网:感谢原作者辛苦付出):
                   学术报告|Securing Low-level Software Graduallyhttps://cn-sec.com/archives/2763038.html
                  免责声明:文章中涉及的程序(方法)可能带有攻击性,仅供安全研究与教学之用,读者将其信息做其他用途,由读者承担全部法律及连带责任,本站不承担任何法律及连带责任;如有问题可邮件联系(建议使用企业邮箱或有效邮箱,避免邮件被拦截,联系方式见首页),望知悉.

发表评论

匿名网友 填写信息