首页> 外文会议>International Workshop on Information Security Applications >VODKA: Virtualization Obfuscation Using Dynamic Key Approach
【24h】

VODKA: Virtualization Obfuscation Using Dynamic Key Approach

机译:VODKA:使用动态密钥方法进行虚拟化混淆

获取原文

摘要

The virtualization obfuscation technique is known to possess excellent security among software protection techniques. However, research has shown that virtualization obfuscation techniques can be analyzed by automated analysis tools because the deobfuscate virtualization obfuscation methodology is fixed. In this situation, additional protection techniques of the virtualization structure have been studied to supplement the protection strength of virtualization obfuscation. However, most of the proposed protection schemes require a special assumption or significantly increase the overhead of the program to be protected. In this paper, we propose a delayed analysis method for a lightweight virtualization structure that does not require a strong assumption. Hence, we propose a new virtual code protection scheme combining an anti-analysis technique and dynamic key, and explain its mechanism. This causes correspondence ambiguity between the virtual code and the handler code, thus causing analysis delay. In addition, we show the result of debugging or dynamic instrumentation experiment when the additional anti-analysis technique is applied.
机译:已知虚拟化混淆技术在软件保护技术中具有出色的安全性。然而,研究表明,可以通过自动分析工具分析虚拟化混淆技术,因为Deobfuscate虚拟化混淆方法是固定的。在这种情况下,已经研究了虚拟化结构的额外保护技术,以补充虚拟化混淆的保护强度。但是,大多数建议的保护计划需要特殊的假设或显着增加要保护的计划的开销。在本文中,我们提出了一种延迟分析方法,用于轻量级虚拟化结构,不需要强烈的假设。因此,我们提出了一种新的虚拟码保护方案,组合反分析技术和动态密钥,并解释其机制。这会导致虚拟代码和处理程序代码之间的对应歧义,从而导致分析延迟。此外,当应用额外的防分析技术时,我们展示了调试或动态仪器实验的结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号