首页> 外文会议>2013 IEEE 7th International Symposium on Embedded Multicore Socs >Vulnerability Localization Method Based on Software Structural Signature of Complex Network
【24h】

Vulnerability Localization Method Based on Software Structural Signature of Complex Network

机译:基于复杂网络软件结构签名的漏洞定位方法

获取原文
获取原文并翻译 | 示例

摘要

Software vulnerability localization is of great importance for vulnerability analysis as the basic step of vulnerability exploitation and vulnerability fix up. By viewing large-scale software as a complex network system, we present a new method of vulnerability localization. The software structure is depicted by system-level features of complex network. In this way, we generate structural signatures of the original and patched software respectively. By comparing the structural signatures and splitting the connexity group recursively, the vulnerability location can be localized. To speed up the comparison, backtracking is taken during the recursion. Results of the experiments show the effective localization capability of this method.
机译:作为漏洞利用和漏洞修复的基本步骤,软件漏洞本地化对于漏洞分析非常重要。通过将大型软件视为复杂的网络系统,我们提出了一种漏洞本地化的新方法。复杂网络的系统级功能描述了软件结构。这样,我们分别生成原始软件和修补软件的结构签名。通过比较结构特征并递归拆分连接组,可以定位漏洞位置。为了加快比较速度,在递归过程中进行了回溯。实验结果表明了该方法的有效定位能力。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号