CORBA middleware services - Are they secure?
Joyce EM, Furnell SM, Reynolds PL, Sanders P
Proceedings of Euromedia 2001, Valencia, Spain, 18-20 April, 2001
Middleware provides a mechanism to allow distributed heterogeneous systems to communicate, using object technology. As such, it also provides an opportunity for hackers to gain access to these systems, and so middleware needs to be secured. While middleware systems, such as CORBA, do provide security specifications, this paper will show that there are still security holes, especially in relation to the object services. The Trader service will be studied in detail, to illustrate its vulnerabilities and how they can be countered by making the service security-aware.

