Securely Taking on New Executable Software Of Uncertain Provenance
Title | Securely Taking on New Executable Software Of Uncertain Provenance |
Publication Type | Miscellaneous |
Year of Publication | 2009 |
Keywords | Automation, C3E, cybersecurity, risk mitigation, security, Software, software vulnerabilities, trustworthiness |
Abstract | STONESOUP develops and demonstrates comprehensive, automated techniques that allow end users to securely execute software without basing risk mitigations on characteristics of provenance that have a dubious relationship to security. Existing techniques to find and remove software vulnerabilities are costly, labor-intensive, and time-consuming. Many risk management decisions are therefore based on qualitative and subjective assessments of the software suppliers' trustworthiness. STONESOUP develops software analysis, confinement, and diversification techniques so that non-experts can transform questionable software into more secure versions without changing the behavior of the programs. |
URL | https://www.iarpa.gov/index.php/component/k2/stonesoup |
Citation Key | node-80016 |