项目作者: TheLeopardsH
项目描述 :
Software based Side Channel attacks
高级语言:
项目地址: git://github.com/TheLeopardsH/Software_based_side_channel_attacks.git
Software based Side Channel attacks
•C/C++/assembly are not memory-safe:
•No bounds checking on array accesses
•No validity checks on pointer arithmetic or dereferencing
•Process-based address space isolation does not isolate code from itself!:
•Malicious inputs can trigger inappropriate memory accesses
•Attackers can use those accesses to:
•Steal sensitive data from a process or the kernel
•Subvert the process’s control flow
•Escalate privilege