Abstract
Since there are semantic differences between a source code and its executable code, analysis of only the source code may miss some vulnerabilities in the executable code. Typical vulnerability patterns were analyzed to design a security vulnerability detection tool to work directly on executables. The system combines static disassembly analysis, dynamic auto-debugging and function based argument injection. The tool successfully found buffer overflow vulnerabilities in both a CVE (common vulnerabilities & exposures) benchmark and two real executables. The results show that this detection method can be used to directly detect security vulnerabilities in executable codes.
| Original language | English |
|---|---|
| Pages (from-to) | 2176-2180 |
| Number of pages | 5 |
| Journal | Qinghua Daxue Xuebao/Journal of Tsinghua University |
| Volume | 49 |
| Issue number | SUPPL. 2 |
| State | Published - Dec 2009 |
Keywords
- Argument injection
- Auto-debug
- Disassembly analysis
- Executables
- Vulnerability detection
Fingerprint
Dive into the research topics of 'Executable based vulnerability detection'. Together they form a unique fingerprint.Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver