Understanding and Detecting Concurrency Attacks

  title={Understanding and Detecting Concurrency Attacks},
  author={Rui Gu and B K Gan and Jason Zhao and Yi Ning and Heming Cui and Junfeng Yang},
Just like bugs in single-threaded programs can lead to vulnerabilities, bugs in multithreaded programs can also lead to concurrency attacks. Unfortunately, there is little quantitative data on how well existing tools can detect these attacks. This paper presents the first quantitative study on concurrency attacks and their implications on tools. Our study on 10 widely used programs reveals 26 concurrency attacks with broad threats (e.g., OS privilege escalation), and we built scripts to… CONTINUE READING


Publications referenced by this paper.
Showing 1-10 of 72 references

Finding security errors in Java programs with static analysis

  • V. B. Livshits, M. S. Lam
  • In Proceedings of the 14th Usenix Security…
  • 2005
Highly Influential
5 Excerpts

Similar Papers

Loading similar papers…