Visible to the public HYDRA: Hypothesis Driven Repair Automation

TitleHYDRA: Hypothesis Driven Repair Automation
Publication TypeConference Paper
Year of Publication2018
AuthorsBenyo, Brett, Clark, Shane, Paulos, Aaron, Pal, Partha
Conference NameProceedings of the 13th International Conference on Availability, Reliability and Security
PublisherACM
Conference LocationNew York, NY, USA
ISBN Number978-1-4503-6448-5
KeywordsAutomated Response Actions, Automated software repair, composability, pubcrawl, Resiliency, zero-day vulnerability
AbstractHYDRA is an automated mechanism to repair code in response to successful attacks. Given a set of malicious inputs that include the attack and a set of benign inputs that do not, along with an ability to test the victim application with these labelled inputs, HYDRA quickly provides rank ordered patches to close the exploited vulnerability. HYDRA also produces human-readable summaries of its findings and repair actions to aid the manual vulnerability mitigation process. We tested HYDRA using 8 zero-days, HYDRA produced patches that stopped the attacks in all 8 cases and preserved application functionality in 7 of the 8 cases.
URLhttp://doi.acm.org/10.1145/3230833.3230861
DOI10.1145/3230833.3230861
Citation Keybenyo_hydra:_2018