🦞🌯 Lobster Roll

Thread

Protecting Software Against Exploitation with DARPA’s CFAR (blog.trailofbits.com)

Stories related to "Protecting Software Against Exploitation with DARPA’s CFAR" across the full archive.

Protecting Software Against Exploitation with DARPA’s CFAR (blog.trailofbits.com)
DARPA Open Source Software and Research Papers (darpa.mil)
Why Writing Firmware Is Kinda Like Software Exploitation (dontstuffbeansupyournose.com)
Year one: progress in the fight against Unwanted Software (googleonlinesecurity.blogspot.com)
What Makes Software Exploitation Hard? (youtube.com)
Following the White Rabbit: Software attacks against Intel VT-d technology (invisiblethingslab.com)
In Defense of Free Software: My Case Against Lenovo in Mexico (globalvoices.org)
Machine Bias: There’s Software Used Across the Country to Predict Future Criminals. And it’s Biased Against Blacks. (propublica.org)
In a nutshell: Blacks who don't commit subsequent offenses get higher "risk scores" than whites who do commit subsequent offenses.
Advancing exploitation: a scriptless 0day exploit against Linux desktops (scarybeastsecurity.blogspot.com)
SFLC Files Bizarre Legal Action Against Its Former Client, Software Freedom Conservancy (sfconservancy.org)
Protecting Against HSTS Abuse (webkit.org)
Against software development (rntz.net)
Free software and the revolt against transactionality (medium.com)
Software against humanity? An Illichian perspective on the industrial era of software (cs.kent.ac.uk)
PAM: process authentication mechanism for protecting system services against malicious code attacks (ias.ac.in)
Exploitation vs. Prevention: The Ongoing Saga of Software Vulnerabilities (acta.uni-obuda.hu)
Attempting to use a software engineering approach to win at chess against my brother—and only my brother (blog.mbrt.dev)
Section 1201 exemptions to prohibition against circumvention of technological measures protecting copyrighted works (2021) (copyright.gov)
Against division of labor in software (akkartik.name)
On Protecting SPHINCS+ Against Fault Attacks (eprint.iacr.org)
SPHINCS+ is a hash-based digital signature scheme that was selected by NIST in their post-quantum cryptography standardization process. The establishment of a universal forgery on the seminal scheme SPHINCS was shown to be feasible in practice by injecting a fault when the signing device constructs ...
Protecting Cache States Against Both Speculative Execution Attacks and Side-channel Attacks (arxiv.org)
Cache side-channel attacks and speculative execution attacks that leak information through cache states are stealthy and dangerous attacks on hardware that must be mitigated. Unfortunately, defenses proposed for cache side-channel attacks do not mitigate all cache-based speculative execution attacks...
Generative AI: Unlocking the Power of Synthetic Data To Improve Software Testing (scitechdaily.com)
MIT spinout DataCebo helps companies bolster their datasets by creating synthetic data that mimic the real thing. Generative AI is getting plenty of attention for its ability to create text and images. But those media represent only a fraction of the data that proliferate in our society today. Data ...
NASA Mission Critical Coding: Understanding Risk, Artificial Intelligence, and Improving Software Quality (scitechdaily.com)
The software discipline has broad involvement across each of the NASA Mission Directorates. Some recent discipline focus and development areas are highlighted below, along with a look at the Software Technical Discipline Team’s (TDT) approach to evolving discipline best practices toward the future. ...
Asgi-CSRF: ASGI middleware for protecting against CSRF attacks (github.com)
Play to Test: Software testing as reachability games against nature (2005) [pdf] (microsoft.com)
The US Department of Justice files an antitrust suit against a software company for allegedly manipulating rent prices (engadget.com)
Protecting Against Malware in macOS (support.apple.com)
DARPA’s Robots to the Rescue: Transforming Satellite Maintenance in Space (scitechdaily.com)
The U.S. Naval Research Laboratory and DARPA have developed a robotic payload capable of servicing satellites in orbit. This payload, designed to perform repairs and upgrades, promises to revolutionize satellite operations by enhancing longevity and reducing costs associated with satellite servicing...
How we are defending Software Freedom against Apple at the EU's highest court (fosdem.org)
Defending Software Freedom against Apple at the EU's highest court [video] (fosdem.org)