【24h】

AIFD: A RUNTIME SOLUTION TO BUFFER OVERFLOW ATTACK

机译:AIFD:解决溢出攻击的运行时解决方案

获取原文

摘要

While buffer overflow problem has been known for a long time, it continues to present a serious security threat.Many solutions to the notorious problem were proposed.However, they had their own drawbacks.This paper presents a solution called API invocation fingerprint detection (AIFD) to eliminate overflow vulnerability with very low performance penally.The solution is API-hook-based, which does not require compiler extensions or operating system kernel patches.Unlike other API-hook-based solutions, which will not discover that system calls are actually invoked by malicious code in certain cases, AIFD works well in those cases.By it, programs protected will not yield control to the exploitation code, but rather enter a fail-safe state.In this paper, we present principle of buffer overflow attacks, implementation details of AIFD, and experimental results of both penetration resistance and the performance impact of this solution.
机译:虽然缓冲区溢出问题早已为人所知,但它仍然构成了严重的安全威胁。虽然提出了许多解决臭名昭著的问题的解决方案,但是它们都有其自身的缺点。本文提出了一种称为API调用指纹检测(AIFD)的解决方案。 ),以消除性能低下的溢出漏洞,该解决方案基于API挂钩,不需要编译器扩展或操作系统内核补丁,与其他基于API挂钩的解决方案不同,后者不会发现系统调用实际上是在某些情况下,AIFD被恶意代码调用,可以很好地发挥作用。通过这种方式,受保护的程序将无法控制利用代码,而进入故障保护状态。在本文中,我们提出了缓冲区溢出攻击的原理, AIFD的实施细节,以及抗穿透性和该解决方案的性能影响的实验结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号