首页 | 本学科首页   官方微博 | 高级检索  
     

基于动态分析的控制流劫持攻击检测
引用本文:吴小王,方勇,贾鹏,刘露平,王炎. 基于动态分析的控制流劫持攻击检测[J]. 四川大学学报(自然科学版), 2021, 58(3): 032004-032004-7
作者姓名:吴小王  方勇  贾鹏  刘露平  王炎
作者单位:四川大学网络空间安全学院,成都610065;四川大学电子信息学院,成都 610065
基金项目:国家重点基础研究发展计划
摘    要:控制流完整性策略能够有效地防御控制流劫持类攻击,但复杂的控制流图构建使该策略的实际部署非常困难.为了有效地针对控制流劫持攻击的检测手段,提出一种基于程序异常行为来检测控制流劫持攻击的方法,并基于该方法实现了控制流劫持攻击检测系统.实验表明,该方法能够有效地检测出由控制流劫持攻击造成的各种程序异常行为,基于该方法的攻击检测系统运行效果良好,能够方便的部署到实际应用环境中.

关 键 词:控制流劫持  攻击检测  动态分析  程序异常  控制流完整性
收稿时间:2020-07-24
修稿时间:2020-10-07

Control flow hijacking attack detection based on dynamic analysis
WU Xiao-Wang,FANG Yong,JIA Peng,LIU Lu-Ping and WANG Yan. Control flow hijacking attack detection based on dynamic analysis[J]. Journal of Sichuan University (Natural Science Edition), 2021, 58(3): 032004-032004-7
Authors:WU Xiao-Wang  FANG Yong  JIA Peng  LIU Lu-Ping  WANG Yan
Affiliation:School of Cyber Science and Engineering, Sichuan University,School of Cyber Science and Engineering, Sichuan University,School of Cyber Science and Engineering, Sichuan University,College of Electronics and Information Engineering, Sichuan University,School of Cyber Science and Engineering, Sichuan University
Abstract:The control flow integrity (CFI) strategy can effectively defend against control flow hijacking attacks, but the complex control flow graph construction makes the actual deployment of this strategy very difficult. In order to realize a practical detection method against control flow hijacking attacks, a method based on identifying abnormal program behaviors is proposed to detect control flow hijacking attacks, and a control flow hijacking attack detection system is implemented based on this method. Experiments show that this method can effectively detect various abnormal program behaviors caused by control flow hijacking attacks. The attack detection system works well and can be easily deployed in the actual application environment.
Keywords:
本文献已被 CNKI 万方数据 等数据库收录!
点击此处可从《四川大学学报(自然科学版)》浏览原始摘要信息
点击此处可从《四川大学学报(自然科学版)》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号