Don't Get Owned by Your Dependencies
Offered By: Strange Loop Conference via YouTube
Course Description
Overview
Explore a groundbreaking approach to mitigating memory safety vulnerabilities in third-party C libraries, a major source of zero-day attacks in modern applications. Learn about the innovative architecture implemented in Firefox since 2020, which runs these libraries in lightweight in-memory sandboxes based on WebAssembly. Discover the key challenges faced during this migration, including ensuring efficient sandboxing, retrofitting without changing libraries, and modifying applications to be secure against attacks from sandboxed libraries. Gain insights into RLBox, an open-source C++ framework developed to address these challenges, and hear real-world examples of its application in Firefox. Delve into the research of Shravan Narayan, a Ph.D. candidate at UC San Diego, whose work in security and systems has earned multiple awards and is deployed in real systems like the Firefox browser.
Syllabus
"Don't Get Owned by Your Dependencies" by Shravan Narayan (Strange Loop 2022)
Taught by
Strange Loop Conference
Tags
Related Courses
Cloud Application SecurityUniversity of Minnesota via Coursera Cybersecurity Awareness: Social Engineering
LinkedIn Learning Ethical Hacking: The Complete Malware Analysis Process
LinkedIn Learning iOS Development: Security
LinkedIn Learning Securing the Use of Generative AI in Your Organization
LinkedIn Learning