首页> 中文期刊> 《中国电子杂志(英文版)》 >Detecting Integer Overflow Vulnerabilities in Binary Executables Based on Target Filtering and Dynamic Taint Tracing

Detecting Integer Overflow Vulnerabilities in Binary Executables Based on Target Filtering and Dynamic Taint Tracing

         

摘要

The number of identified integer overflow vulnerabilities has been increasing rapidly in recent years.In this paper, a smart software vulnerability detection technology is presented, which is used for the identification of integer overflow vulnerabilities in binary executables. The proposed algorithm is combined with Target filtering and dynamic taint tracing(TFDTT). Dynamic taint tracing is used to reduce the mutation space and target filtering function is used to filter test cases during the process of test case generation. Theory analysis indicates that the efficiency of TFDTT is higher than Non TF-DTT and random Fuzzing technology. And the experiment results indicate that the detection technology based upon TFDTT can identify the possible integer vulnerabilities in binary program, meanwhile, it is more efficiency than other two technologies.

著录项

  • 来源
    《中国电子杂志(英文版)》 |2014年第2期|348-352|共5页
  • 作者单位

    1. School of Computer;

    Beijing University of Posts and Telecommunications 2. China Electric Power Research Institute 3. School of Information Science and Technology;

    Beijing Forestry University;

  • 原文格式 PDF
  • 正文语种 chi
  • 中图分类 TP311.53;
  • 关键词

    机译:溢出漏洞;跟踪检测;二进制;可执行文件;整数;污点;测试用例生成;滤波;
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号