Главная
Study mode:
on
1
Intro
2
Outline
3
Thesis
4
Some Definitions (cont.)
5
What is LangSec
6
Ok... What...
7
LangSec Perspective
8
Data Drives Execution
9
The Gap
10
The Angle
11
Least Computational Privilege
12
Sub-Turing Execution
13
Peter Pan of Programming
14
A Sub-Turing Language
15
Language Limitations
16
Language Fundamentals
17
Sample Crema Program
18
Future Work
19
Formal Model
20
Forward-only Execution
21
JIT Unrolling
22
Embedding Crema in Programs
23
QMail
24
Mark Dowd's Sendmail Bug
25
How Crema Could Help
26
Use-cases
27
Wrap-up
28
Questions?
Description:
Explore a LangSec-inspired language called Crema in this BSidesLV 2015 conference talk. Delve into the principles of Language-theoretic Security (LangSec) and its application in creating more secure systems. Learn about the concept of least computational privilege, sub-Turing execution, and the importance of language limitations in security. Examine a sample Crema program and understand its potential applications in real-world scenarios, such as improving the security of email systems like QMail and Sendmail. Discover the future work planned for Crema, including formal modeling and JIT unrolling. Gain insights into how Crema could be embedded in programs to enhance security and explore various use-cases for this innovative language.

Crema - A LangSec Inspired Language

Add to list
0:00 / 0:00