首页> 外文会议>International Conference on Wireless and Optical Communications Networks >Analysis of Signature and Signature Free Buffer-overflow detection for gif and jpg format
【24h】

Analysis of Signature and Signature Free Buffer-overflow detection for gif and jpg format

机译:GIF和JPG格式的签名和签名自由缓冲区溢出检测分析

获取原文

摘要

Internet threat have different form of attacks, considering individual users to obtain control over data and network. The Buffer Overflow which is one of the most frequently occurring security vulnerabilities on network. Buffer Overflow occurs while writing data to a buffer and it overruns the buffer's threshold and overwrites it to neighboring memory. The techniques to avoid buffer overflow vulnerability vary per architecture, Operating system and memory region. The Signature based buffer overflow detection finds the particular Signature and if that found it blocks it to protect form malicious attack. The remaining request are consider for checking against the buffer size and grant to server if the buffer of request is less than or equal to defined threshold value of buffer. Signature free first filters and extracts instruction sequences from a request. Finally it compares the number of useful instructions to a threshold to determine if this instruction sequence contains code. Signature free thus it can block new and unknown buffer overflow attacks, Signature free is also immunized from most attack-side code obfuscation methods. Since Signature free is transparent to the servers that protected, it is efficient for economical Internet wide deployment with very low deployment and maintenance cost. We are proposing novel techniques for preventing buffer overflow during the transmission of images of different formats. In this paper we have discuss and evaluate certain tools and techniques which prevent buffer overflows. We have also discussed some modern tools and techniques with their pros and cons.
机译:互联网威胁具有不同的攻击形式,考虑个人用户获得对数据和网络的控制。缓冲区溢出是网络上最常见的安全漏洞之一。将数据写入缓冲区时发生缓冲区溢出,并将缓冲区的阈值覆盖并覆盖到相邻内存。避免缓冲区溢出漏洞的技术因架构,操作系统和存储区域而异。基于签名的缓冲区溢出检测找到了特定的签名,如果发现它会阻止它以保护形式的恶意攻击。如果请求的缓冲区小于或等于缓冲区的定义阈值,则需要考虑检查缓冲区大小并授予服务器的剩余请求。签名免费的第一个过滤器并从请求中提取指令序列。最后,它将有用指令的数量与阈值进行比较以确定此指令序列是否包含代码。自由签名可以阻止新的和未知的缓冲区溢出攻击,从大多数攻击侧代码混淆方法中也免疫签名。由于签名对保护的服务器来说是透明的,因此具有非常低的部署和维护成本的经济互联网广播部署是有效的。我们正在提出用于防止在不同格式的图像传输期间防止缓冲器溢出的新颖技术。在本文中,我们已经讨论并评估了某些工具和技术,防止缓冲区溢出。我们还讨论了一些现代工具和技巧,其优点和缺点。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号