Chaff Bugs: Deterring Attackers by Making Software Buggier
https://arxiv.org/abs/1808.00659 [arxiv.org]
2018-08-08 16:53
In this paper, we introduce a new defensive technique called chaff bugs, which instead target the bug discovery and exploit creation stages of this process. Rather than eliminating bugs, we instead add large numbers of bugs that are provably (but not obviously) non-exploitable. Attackers who attempt to find and exploit bugs in software will, with high probability, find an intentionally placed non-exploitable bug and waste precious resources in trying to build a working exploit.
I don’t know about this.
source: grugq