The Security Challenges of Client-Side Just-in-Time Engines

  • Authors:
  • Chris Rohlf;Yan Ivnitskiy

  • Affiliations:
  • Leaf SR;Matasano Security

  • Venue:
  • IEEE Security and Privacy
  • Year:
  • 2012

Quantified Score

Hi-index 0.00

Visualization

Abstract

Any added complexity in a software system will increase the possible program states, introducing a larger attack surface and the possibility of more exploitable flaws. JIT engines, however, alter the environment in which they execute in far more interesting ways, not only through implementation flaws but also by their fundamental operation modes.