首页    期刊浏览 2024年12月01日 星期日
登录注册

文章基本信息

  • 标题:Detecting Polymorphic Buffer Overflow Exploits with a Static Analysis Approach
  • 本地全文:下载
  • 作者:Guo Fan ; Lu JiaXing ; Yu Min
  • 期刊名称:International Journal of Wireless and Microwave Technologies(IJWMT)
  • 印刷版ISSN:2076-1449
  • 电子版ISSN:2076-9539
  • 出版年度:2011
  • 卷号:1
  • 期号:1
  • 页码:13-22
  • 出版社:MECS Publisher
  • 摘要:Remote exploit attacks are the most serious threats in network security area. Polymorphism is a kind of code-modifying technique used to evade detection. A novel approach using static analysis methods is proposed to discover the polymorphic exploit codes hiding in network data flows. The idea of abstract execution is firstly adopted to construct control flow graph, then both symbolic execution and taint analysis are used to detect exploit payloads, at last predefined length of NOOP instruction sequence is recognized to help detection. Experimental results show that the approach is capable of correctly distinguishing the exploit codes from regular network flows.
  • 关键词:Exploit Code; Polymorphism; Abstract Execution; Symbolic Execution; NOOP Instruction Sequence
国家哲学社会科学文献中心版权所有