课题基金 / 基金详情

SHF: Small: Reverse Engineering Obfuscated Executables

SHF: Small: Reverse Engineering Obfuscated Executables
SHF:小型:逆向工程混淆的可执行文件
批准号:
1016058
负责人:
Saumya Debray
金额:
$10.0万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2010
资助国家:
美国
项目状态:
已结题
起止时间:
2010-09-01 至 2012-08-31

项目摘要

项目成果

Saumya Debray的其他基金

相似基金

相关文献

中文摘要
翻译
计算机恶意软件代码通常通过各种技术严重混淆,使得难以理解代码的逻辑。 用于恶意软件分析的现有工具不提供对自动移除此类混淆的太多支持,因此这需要大量耗时的手动干预。该项目旨在开发技术和工具,以自动识别和删除恶意软件程序中的混淆代码,特别关注一类称为“基于虚拟化的混淆”的混淆。 它使用程序分析技术来识别影响程序的可观察行为的指令;这些指令被提取,并在适当的情况下被简化以获得去混淆的恶意软件代码。该项目的主要影响将是使安全研究人员更容易和更快地找出恶意软件程序的内部逻辑。 反过来,这将使我们能够更快地响应新的恶意软件,并更快地开发对策,减少人工干预。 其效果将是在恶意软件被中和之前减少它们所造成的损害。
英文摘要
Computer malware codes are usually heavily obfuscated via a variety of techniques that make it difficult to understand the logic of the code. Existing tools for malware analysis do not provide much support for automatically removing such obfuscations, which therefore requires a great deal of time-consuming manual intervention. This project aims to develop techniques and tools to automate the identification and removal of obfuscation code from malware programs, focusing in particular on a class of obfuscations called "virtualization-based obfuscation". It uses program analysis techniques to identify instructions that affect the program's observable behavior; these instructions are extracted and, where appropriate, simplified to obtain the deobfuscated malware code. The main impact of this project will be to make it easier and quicker for security researchers to figure out the internal logic of malware programs. This, in turn, will make it possible to respond more quickly to new malware and develop countermeasures to them faster and with less manual intervention. The effect will be to reduce the damage done by malware before they can be neutralized.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
SaTC: CORE: Small: Reasoning about dependencies and information flow in dynamic code
  • 批准号:
    1908313
  • 项目类别:
    Standard Grant
  • 资助金额:
    $51.53万
  • 财政年份:
    2019
  • 负责人:
    Saumya Debray
  • 依托单位:
TWC: Small: Understanding Anti-Analysis Defenses in Malicious Code
  • 批准号:
    1525820
  • 项目类别:
    Standard Grant
  • 资助金额:
    $51.48万
  • 财政年份:
    2015
  • 负责人:
    Saumya Debray
  • 依托单位:
TC: Small: Simplification of Obfuscated Executables
  • 批准号:
    1115829
  • 项目类别:
    Standard Grant
  • 资助金额:
    $36.93万
  • 财政年份:
    2011
  • 负责人:
    Saumya Debray
  • 依托单位:
A Holistic Approach to Compiler-Assisted Optimization of Software Systems
  • 批准号:
    0410918
  • 项目类别:
    Standard Grant
  • 资助金额:
    $0.0万
  • 财政年份:
    2004
  • 负责人:
    Saumya Debray
  • 依托单位:
国内基金
海外基金
昼夜节律性small RNA在血斑形成时间推断中的法医学应用研究
  • 批准号:
  • 项目类别:
    省市级项目
  • 资助金额:
    --
  • 批准年份:
    2024
  • 负责人:
  • 依托单位:
tRNA-derived small RNA上调YBX1/CCL5通路参与硼替佐米诱导慢性疼痛的机制研究
  • 批准号:
  • 项目类别:
    省市级项目
  • 资助金额:
    10.0万元
  • 批准年份:
    2022
  • 负责人:
    张祥忠
  • 依托单位:
Small RNA调控I-F型CRISPR-Cas适应性免疫性的应答及分子机制
Small RNAs调控解淀粉芽胞杆菌FZB42生防功能的机制研究
  • 批准号:
    31972324
  • 项目类别:
    面上项目
  • 资助金额:
    58.0万元
  • 批准年份:
    2019
  • 负责人:
    高学文
  • 依托单位: