Accession Number:

ADA625741

Title:

Vulnerabilities in Bytecode Removed by Analysis, Nuanced Confinement and Diversification (VIBRANCE)

Descriptive Note:

Final rept. 19 Aug 2010-30 Nov 2014

Corporate Author:

KESTREL INST PALO ALTO CA

Report Date:

2015-06-01

Pagination or Media Count:

162.0

Abstract:

The VIBRANCE tool starts with a vulnerable Java application and automatically hardens it against SQL injection, OS command injection, file path traversal, numeric errors, denial of service, and other attacks. For a large class of attacks, the protection added by VIBRANCE blocks the attacks and safely continues execution.

Subject Categories:

  • Computer Programming and Software

Distribution Statement:

APPROVED FOR PUBLIC RELEASE