Introduction

The Blitzableiter is a defensive solution for Adobe Flash Rich Internet Applications. It realizes the protection by applying a process of normalization through recreation.

Blitzableiter protects against attacks using Adobe Flash application files in SWF format. It can prevent attacks targeted at exploiting memory corruption vulnerabilities in the runtime environment as well as attacks using the runtime environment's native functionality maliciously.

Section 2 will give an overview of the general approach and the Flash file format. Section 3 provides information about the code structure and organization. Section 4 gives advise on how to test and debug the library.

Blitzableiter is copyright © 2009 by Recurity Labs GmbH.
Blitzableiter is made available as software library source code for ISO/IEC 23271:2006 and ISO/IEC
23270:2006 compatible runtime environments (e.g .NET) and licensed exclusively for use in free software
under the GNU General Public License, Version 3.

A license for use of the Blitzableiter library for commercial or proprietary applications must be obtained separately from Recurity Labs GmbH.

Blitzableiter is free software: you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation, either version 3 of the License, or (at your option) any later version.

Blitzableiter is distributed in the hope that it will be useful, but WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License for more details.

You should have received a copy of the GNU General Public License along with Blitzableiter. If not, see http://www.gnu.org/licenses/.

Also available in: HTML TXT