首页> 外文会议> >Towards Automatic Generation of Vulnerability-Based Signatures
【24h】

Towards Automatic Generation of Vulnerability-Based Signatures

机译:致力于自动生成基于漏洞的签名

获取原文

摘要

In this paper we explore the problem of creating vulnerability signatures. A vulnerability signature matches all exploits of a given vulnerability, even polymorphic or metamorphic variants. Our work departs from previous approaches by focusing on the semantics of the program and vulnerability exercised by a sample exploit instead of the semantics or syntax of the exploit itself. We show the semantics of a vulnerability define a language which contains all and only those inputs that exploit the vulnerability. A vulnerability signature is a representation (e.g., a regular expression) of the vulnerability language. Unlike exploitbased signatures whose error rate can only be empirically measured for known test cases, the quality of a vulnerability signature can be formally quantified for all possible inputs.
机译:在本文中,我们探讨了创建漏洞签名的问题。漏洞签名与给定漏洞的所有漏洞利用相匹配,甚至包括多态或变质变体。我们的工作与以前的方法不同,其重点是样本漏洞利用程序所利用的程序的语义和漏洞,而不是漏洞利用本身的语义或语法。我们展示了漏洞的语义,定义了一种语言,该语言仅包含所有利用漏洞的输入。漏洞签名是漏洞语言的表示形式(例如,正则表达式)。与基于漏洞利用的签名(其错误率只能针对已知测试用例进行衡量)不同,可以对所有可能的输入形式对漏洞签名的质量进行正式量化。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号