Follow Us

Microsoft security tool has ROP defence inspired by BlueHat finalist

Defences against return-oriented programming attacks developed by Ivan Fratric, a PhD researcher at the University of Zagreb

Microsoft has released the technology preview of a new security toolkit that uses defences inspired by one of the contestants of its BlueHat Prize security competition.

The tool includes protection against return-oriented programming (ROP) attacks, an advanced technique attackers use to combine short pieces of valid code already present in a system for a malicious purpose, Microsoft said. The defence against those kind of attacks was developed by Ivan Fratric, a researcher at the University of Zagreb, Croatia, who has a PhD in computer science.

Fratric submitted a security tool called ROPguard to the BlueHat competition, which is software that aims to hinder return-oriented programming attacks by defining a set of checks that can be used to detect when certain functions are being called in the context of malicious ROP code, Microsoft said. Fratric's defence system can help protect against attacks that exploit memory safety vulnerabilities, the company added.

Microsoft's Trustworthy Computing Group released a technology preview of the Enhanced Mitigation Experience Toolkit (EMET) 3.5 this morning that includes ROP defences "inspired by" Fratric's ROPguard. The technology was integrated in EMET within three months, and the addition helps make software significantly more resistant to exploitation, Microsoft said, adding that Fratric helped incorporate the technology into EMET.

The BlueHat Prize is a competition that aims to entice researchers to develop defensive technologies by awarding more than $250,000 in cash and prizes. The competition was launched at last year's BlackHat security conference in Las Vegas and closed on April 1, 2012. Microsoft has yet to determine if Fratric, who is one of three finalists, will receive the grand prize of $200,000.




Comments



Send to a friend

Email this article to a friend or colleague:

PLEASE NOTE: Your name is used only to let the recipient know who sent the story, and in case of transmission error. Both your name and the recipient's name and address will not be used for any other purpose.

Techworld White Papers

Choose – and Choose Wisely – the Right MSP for Your SMB

End users need a technology partner that provides transparency, enables productivity, delivers...

Download Whitepaper

10 Effective Habits of Indispensable IT Departments

It’s no secret that responsibilities are growing while budgets continue to shrink. Download this...

Download Whitepaper

Optimise Performance For Global eCommerce

Global is all the rage: eBusiness teams are feverishly building new international initiatives in...

Download Whitepaper

Gartner Magic Quadrant for Enterprise Information Archiving

Enterprise information archiving is contributing to organisational needs for e-discovery and...

Download Whitepaper

Techworld UK - Technology - Business

Part 2 of your journey to virtualisation

You can still access part 2 of our virtualisation journey - explore how you can improve your servers, storage and networks by developing your infrastructure.

Watch now...
Techworld Mobile Site

Access Techworld's content on the move

Get the latest news, product reviews and downloads on your mobile device with Techworld's mobile site.

Find out more...

From Wow to How : Making mobile and cloud work for you

On demand Biztech Briefing - Learn how to effectively deliver mobile work styles and cloud services together.

Watch now...

Site Map

* *