Font Size: a A A

Analysis And Design To Browser-Based Sandbox System

Posted on:2013-10-03Degree:MasterType:Thesis
Country:ChinaCandidate:C L ZhaoFull Text:PDF
GTID:2248330371467494Subject:Information security
Abstract/Summary:PDF Full Text Request
Since the beginning of 21st century, as the rapid development of Internet companies such as as Google, Facebook, Baidu and so on, the Internet and people’s lives are increasingly inseparable, how to ensure that Web security has become the new challenges in the development of information science, Web security has also become a rapidly developing technology in recent years, because the Web security not only affect people’s privacy, financial security, and even affect the Government’s security and defense.Many existing Web security technology is mainly made of traditional active defense technology, these technologies are based on known vulnerabilities and attacks and helpless for new security issues for the future. With the rapid development of Web technologies on the Web to grow the amount of explosive, new security and malicious attacks are exponential increases, traditional active defense technology simply cannot cope with. Faced with this situation,in this paper put forward browser-oriented sandbox system, using the sandbox technology to guarantee the security of Web.Sandbox technology distinct from the active defense technology principle. Active defense is to discover a suspicious program behavior blocks and terminate immediately when run. sandbox technology let suspected virus program of suspicious behavior in browser virtual of " sanbox " in full run, "sandbox " will note it of each a action; when suspected virus full exposure its virus property, "sandbox" will implementation "back roll" mechanism,wipe out traces and action of virus, regenerate system to normal state, and guarantee Web security.First in this paper analysis on existing sandbox applications and learn about these principles of good design in the application sandbox from the area of security and software development in the field, to design a browser-oriented sandbox system did a theory-oriented preparation and knowledge. And then follow the preceding analysis of knowledge, combined with the application to the browser, a special scene, from the theory of algorithms and system calls two aspects of the Windows operating system to analyze the browser-oriented sandbox system, and focused analysis of interprocess communication, tokens, job objects, alternative desktop, integrity levels, and policy aspects.In the end, this paper based on the preceding analysis, designed for browser sandbox system. Entire browser sandbox system by goal-oriented processes and communications modules, the agent process token and job object modules, alternative desktop module, the module integrity levels, and policy configuration modules, of each module are given in the text flow chart design or code.
Keywords/Search Tags:sandbox system, Browser security, Active defense, Signature matching, Virtual
PDF Full Text Request
Related items