Secure Software Updates: Disappointments and New Challenges
Explore this paper's citation graph
Summary
This analysis of several popular software update mechanisms shows that deployed systems often rely on trusted networks to distribute critical software updates-despite the research progress in secure content distribution.
- Type
- article
- Published
- 2006-07-31
- Cited by
- 98
- References
- 33
- OpenAlex
- https://openalex.org/W2122742966
- Semantic Scholar
- https://api.semanticscholar.org/CorpusID:9654935
Keywords
Computer science, Software deployment, Computer security, Software, Mobile device
References
- The SSL Protocol Version 3.0
- Secure Data Replication over Untrusted Hosts
- Protection of information in computer systems
- How to build a trusted database system on untrusted storage
- Fast and secure distributed read-only file system
- The protection of information in computer systems
- RFID security and privacy: a research survey
- Security Holes . . . Who Cares?
- Secure Untrusted Data Repository (SUNDR)
- TinySec: a link layer security architecture for wireless sensor networks
- Practical dynamic software updating for C
- Mobile code security
- MaxProp: Routing for Vehicle-Based Disruption-Tolerant Networks
- Shield: vulnerability-driven network filters for preventing known vulnerability exploits
- Planet scale software updates
- Domain Name System Security Extensions
- Revere—Disseminating Security Updates at Internet Scale
- SPINS: Security Protocols for Sensor Networks
- A Digital Signature Based on a Conventional Encryption Function
- Guidance for Industry and FDA Staff
Cited by
- Stork: Secure Package Management for VM Environments
- Lightweight Inlined Reference Monitors for Securing Extensible and Open Systems
- Disk-level behavioral malware detection
- Take Two Software Updates and See Me in the Morning: The Case for Software Security Evaluations of Medical Devices
- Herausforderungen der ganzheitlichen Absicherung eingebetteter Systeme
- A novel malware for subversion of self‐protection in anti‐virus
- Remediating Third-Party Software Vulnerabilities on U.S. Army Information Systems
- Composition-Malware: Building Android Malware at Run Time
- Reducing Unauthorized Modification of Digital Objects
- MeshUp: reliably evolving a living lab
- Typhoon: a middleware for epidemic propagation of software updates
- System security, platform security and usability
- Threats according to the Type of Software Updates and White-List Construction Scheme for Advanced Security
- Patch auditing in infrastructure as a service clouds
- PETRA: a secure and energy-efficient software update protocol for severely-constrained network devices
- Execute This! Analyzing Unsafe and Malicious Dynamic Code Loading in Android Applications
- Security Metrics for the Android Ecosystem
- Secure Method for Software Upgrades for Implantable Medical Devices
- Security and usability: the gap in real-world online banking
- Design, implementation and evaluation of a novel anti-virus parasitic malware
Related papers
- A look in the mirror: attacks on package managers
- Survivable key compromise in software update systems
- Pacemakers and Implantable Cardiac Defibrillators: Software Radio Attacks and Zero-Power Defenses
- When Firmware Modifications Attack: A Case Study of Embedded Exploitation
- Planet scale software updates
- Detecting kernel-level rootkits through binary analysis
- Secure Untrusted Data Repository (SUNDR)
- Security and Privacy for Implantable Medical Devices
- Take Two Software Updates and See Me in the Morning: The Case for Software Security Evaluations of Medical Devices
- Why phishing works