首页> 外文会议>Apperceiving Computing and Intelligence Analysis,ICACIA,2008 International Conference on >A Novel Method of Software Vulnerability Detection based on Fuzzing Technique
【24h】

A Novel Method of Software Vulnerability Detection based on Fuzzing Technique

机译:基于模糊技术的软件漏洞检测新方法

获取原文

摘要

Buffer overflow vulnerabilities can cause attacks that result in serious consequences. However the techniques of buffer overflow vulnerability detection are limited to manual analysis, binary-patch comparison, fuzzing and so on. They rely on manual analysis, thus cause high overhead. In this paper, we propose a novel method of detection of buffer overflow vulnerabilities, which is based on fuzzing, data-flow dynamic analysis and automated exception analysis. This new method effectively improves the detection of unknown security vulnerabilities (0Day). Moreover, it is more automated and has better performance in finding new security vulnerabilities.
机译:缓冲区溢出漏洞可能导致造成严重后果的攻击。但是,缓冲区溢出漏洞检测技术仅限于手动分析,二进制补丁比较,模糊测试等。他们依靠手动分析,从而导致高昂的开销。在本文中,我们提出了一种基于模糊测试,数据流动态分析和自动异常分析的检测缓冲区溢出漏洞的新方法。此新方法有效地改善了对未知安全漏洞(0天)的检测。此外,它在查找新的安全漏洞方面更加自动化,并且具有更好的性能。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号