课题基金 / 基金详情

SHF: Small: Reverse Engineering Obfuscated Executables

SHF: Small: Reverse Engineering Obfuscated Executables
SHF:小型:逆向工程混淆的可执行文件
批准号:
1016058
负责人:
Saumya Debray
金额:
$10.0万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2010
资助国家:
美国
项目状态:
已结题
起止时间:
2010-09-01 至 2012-08-31

项目摘要

项目成果

Saumya Debray的其他基金

相似基金

相关文献

中文摘要
翻译
计算机恶意软件代码通常通过各种技术被严重混淆,这使得理解代码的逻辑变得困难。现有的恶意软件分析工具不提供太多对自动移除此类混淆的支持,因此需要大量耗时的人工干预。该项目旨在开发技术和工具,以自动识别和删除恶意软件程序中的混淆代码,特别关注一类称为“基于虚拟的混淆”的混淆。它使用程序分析技术来识别影响程序可观察行为的指令;提取这些指令,并在适当的情况下进行简化,以获得去模糊的恶意软件代码。该项目的主要影响将是使安全研究人员更容易、更快地找出恶意软件程序的内部逻辑。反过来,这将使其能够更快地对新的恶意软件做出反应,并更快地开发针对它们的对策,而无需更少的人工干预。其效果将是在恶意软件被中和之前减少它们造成的损害。
英文摘要
Computer malware codes are usually heavily obfuscated via a variety of techniques that make it difficult to understand the logic of the code. Existing tools for malware analysis do not provide much support for automatically removing such obfuscations, which therefore requires a great deal of time-consuming manual intervention. This project aims to develop techniques and tools to automate the identification and removal of obfuscation code from malware programs, focusing in particular on a class of obfuscations called "virtualization-based obfuscation". It uses program analysis techniques to identify instructions that affect the program's observable behavior; these instructions are extracted and, where appropriate, simplified to obtain the deobfuscated malware code. The main impact of this project will be to make it easier and quicker for security researchers to figure out the internal logic of malware programs. This, in turn, will make it possible to respond more quickly to new malware and develop countermeasures to them faster and with less manual intervention. The effect will be to reduce the damage done by malware before they can be neutralized.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
SaTC: CORE: Small: Reasoning about dependencies and information flow in dynamic code
  • 批准号:
    1908313
  • 项目类别:
    Standard Grant
  • 资助金额:
    $51.53万
  • 财政年份:
    2019
  • 负责人:
    Saumya Debray
  • 依托单位:
TWC: Small: Understanding Anti-Analysis Defenses in Malicious Code
  • 批准号:
    1525820
  • 项目类别:
    Standard Grant
  • 资助金额:
    $51.48万
  • 财政年份:
    2015
  • 负责人:
    Saumya Debray
  • 依托单位:
TC: Small: Simplification of Obfuscated Executables
  • 批准号:
    1115829
  • 项目类别:
    Standard Grant
  • 资助金额:
    $36.93万
  • 财政年份:
    2011
  • 负责人:
    Saumya Debray
  • 依托单位:
A Holistic Approach to Compiler-Assisted Optimization of Software Systems
  • 批准号:
    0410918
  • 项目类别:
    Standard Grant
  • 资助金额:
    $0.0万
  • 财政年份:
    2004
  • 负责人:
    Saumya Debray
  • 依托单位:
国内基金
海外基金
昼夜节律性small RNA在血斑形成时间推断中的法医学应用研究
  • 批准号:
  • 项目类别:
    省市级项目
  • 资助金额:
    --
  • 批准年份:
    2024
  • 负责人:
  • 依托单位:
tRNA-derived small RNA上调YBX1/CCL5通路参与硼替佐米诱导慢性疼痛的机制研究
  • 批准号:
  • 项目类别:
    省市级项目
  • 资助金额:
    10.0万元
  • 批准年份:
    2022
  • 负责人:
    张祥忠
  • 依托单位:
Small RNA调控I-F型CRISPR-Cas适应性免疫性的应答及分子机制
Small RNAs调控解淀粉芽胞杆菌FZB42生防功能的机制研究
  • 批准号:
    31972324
  • 项目类别:
    面上项目
  • 资助金额:
    58.0万元
  • 批准年份:
    2019
  • 负责人:
    高学文
  • 依托单位: