Dissertation > Excellent graduate degree dissertation topics show

Research and Implementation of Application Anti-attack Model

Author: HeXiuXiong
Tutor: HeHongJun
School: National University of Defense Science and Technology
Course: Computer Science and Technology
Keywords: Malware Application Attack Application Anti-attack Model Access Control
CLC: TP393.08
Type: Master's thesis
Year: 2010
Downloads: 18
Quote: 0
Read: Download Dissertation

Abstract


With the computer technology and network application deepening, a variety of application software has been widely used in all aspects of social life.However, the malicious attack for application software are being intensified, annually, application file has been tampered, replaced, and deleted which lead to security incidents of information is stolen or destroyed also rise sharply. The aim of this thesis is focused on the technology of application anti-attack.Firstly, the paper deeply analyzes the various threat sources to the current applications, including those from the operating system, application itself, user action, malicious attack, potentially unwanted application (PUA) and physical paroxysmal accident. Then, the article analyzes the various attack technologies to the storing and running application, and points out the root causes of the application vulnerable is that there is not a strict distinction in these store space of application files, code or data and a strict access control mechanism to accessing the application files, code or data and the system configuration files of application depending on. In addition, it points out the essential of malicious attack, that is, which is writing the application files files, code or data. As the anti-attack issue of running application involves more factors, such as the operating system memory management, CPU’s architecture and instructions and so on, it is more difficult to implement. Hence, the anti-attack issue of storing application is focused on in this paper.Based on the analysis of various threat sources and attack technologies, firstly, the article proposes an application anti-attack model (AAM) based on mandatory access control mechanism. This model can quickly and comprehensively resist various attacks, and reduce the degree of PUA’s threat and destruction. Furthermore, the model really puts the granularity of access control on the process’s level, and makes the right to accessing the protective file really demand so much, which is in accord with the principle of least privilege. Secondly, presents the formal description of the model and shows its good security properties. Finally, the paper researches on the key application technologies of the model and implements it’s a prototype system based on the Windows platform of the current mainstream operating system.Finally, the paper carries out attack tests and performance tests for the prototype system, and the results of these tests demonstrate that the AAM has good reliability and real-time respondence, and it has a little effect for the system’s performance.

Related Dissertations

  1. Study on Channel Allocation of Multi-Channel MAC Protocol in Ad-Hoc Network,TN929.5
  2. The Research of Malware Detection Technology Based on Active Mode,TP393.08
  3. The Design and Implementation of DICOM Middle Software and Access Control Model in Formation Integration Platform,TP311.13
  4. Research on MAC Protocol for WIreless Sensor Network,TN915.04
  5. Study on the Access Control of the Court Information System,TP309
  6. The Design and Implementation of Higher People’s Court Website That Based on Component and ASP Technology,TP311.52
  7. Design and implementation of civil explosive industry online procurement system,TP311.52
  8. Research and Design of Virtual Research Center System of Yalong River Based on S2SH,TP311.52
  9. Fujian Telecom operation and maintenance operations audit system design and implementation,TP311.52
  10. Research on Purpose-based Access Control in Relational Database,TP311.13
  11. Research on Checking and Digesting Policy Conflicts Under Multi-Policy Environments,TP393.08
  12. Research and Implementation of Embeded Web System Security,TP393.08
  13. Design and Implementation of Network Access Control System Based on Portal Protocol,TP393.08
  14. Research on Botnet Traffic Detection Based on Spatial-temporal Correlation Analysis,TP393.08
  15. Design and Realization of Distributed RFID Access Control System,TP273.5
  16. Research and Implementation on Smartcard Database Management System,TP311.52
  17. Design and Implement of Frequency EOC System and Research of Its Security Mechanism,TN915.02
  18. A Static Behavior-Based Method to Detect Malware on Android,TP309
  19. Identity-Based Authentication System Research and Implementation,TN918.1
  20. Converged IP and FC storage system security architecture design and implementation,TP333
  21. Distributed Storage System Security Key Technology Research and Implementation,TP333

CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net  Mobile