Protected System Model
Attacks launched from remote site
- effected via programs running on target host
- induce trusted programsto inflict damage
- buffer overflow attack causes execution of attacker-specified code
- race conditions exploited for unauthorized file access
- induce legitimate user to download and run useful-looking, but malicious programs
- underlying problem: software flaws