针对非控制流攻击的二进制程序分割技术研究

批准号:
61972200
项目类别:
面上项目
资助金额:
60.0 万元
负责人:
韩皓
依托单位:
学科分类:
网络与系统安全
结题年份:
2023
批准年份:
2019
项目状态:
已结题
项目参与者:
韩皓
国基评审专家1V1指导 中标率高出同行96.8%
结合最新热点,提供专业选题建议
深度指导申报书撰写,确保创新可行
指导项目中标800+,快速提高中标率
微信扫码咨询
中文摘要
内存数据被污染往往是软件攻击的核心原因。现有研究已经提出了大量用于防御控制流攻击的措施。但是,目前还没有针对非控制流攻击的有效防御机制,其主要原因在于:现有的方法性能开销巨大、兼容性不足、以及防御效果不佳。为了减少内存数据污染攻击的危害,现代应用程序设计通常遵循多进程模型,将程序分割到不同的进程中,因此一个进程中的内存错误不会直接影响其他进程。但目前缺乏一种自动化的方法来分割传统COTS应用程序。本研究就实现基于语义的二进制程序自动分割机制的几个核心问题,包括针对敏感数据及其上下文信息的自动推理技术,基于上下文信息的程序自动分割技术,二进制程序分析和重写技术展开研究。本项目为防御内存数据污染攻击,尤其是非控制流攻击提供了一种新思路。
英文摘要
Memory corruption vulnerabilities are the root cause of many modern attacks. Numerous defenses have mainly focused on mitigating control-data attacks, leaving modern systems and programs vulnerable to non-control-flow attacks. The main drawbacks of existing non-control-flow attacks are in three aspects: overhead, compatibility, and soundness. To mitigate potential risk of these attacks, modern applications such as Chrome browser are designed to follow a multi-process model to quarantine programs into different processes, so that memory errors in one process do not directly affect other processes. However, there are no automated solutions to partition legacy COTS programs. This project will investigate some key technologies including the inference of data secrecy and their context and automated binary program partitioning approaches based on binary program analysis and rewriting. This project aims to provide a new solution to defend against memory corruption attacks, especially against non-control-flow attacks.
期刊论文列表
专著列表
科研奖励列表
会议论文列表
专利列表
DOI:10.1109/tmc.2023.3277212
发表时间:2024-05
期刊:IEEE Transactions on Mobile Computing
影响因子:7.9
作者:Hao Han;Kunming Xie;Tongyu Wang;Xiaojun Zhu;Yanchao Zhao;Fengyuan Xu
通讯作者:Hao Han;Kunming Xie;Tongyu Wang;Xiaojun Zhu;Yanchao Zhao;Fengyuan Xu
DOI:10.1109/tii.2020.2966511
发表时间:2020-01
期刊:IEEE Transactions on Industrial Informatics
影响因子:12.3
作者:Yushu Zhang;Ping Wang;Liming Fang;Xing He;Hao Han;Bing Chen
通讯作者:Yushu Zhang;Ping Wang;Liming Fang;Xing He;Hao Han;Bing Chen
DOI:10.1145/3614440
发表时间:2023-08
期刊:ACM Transactions on Internet of Things
影响因子:--
作者:Yanchao Zhao;Yiming Zhao;Si Li;Hao Han;Linfu Xie
通讯作者:Yanchao Zhao;Yiming Zhao;Si Li;Hao Han;Linfu Xie
DOI:10.1109/tmc.2022.3207745
发表时间:2021-02
期刊:IEEE Transactions on Mobile Computing
影响因子:7.9
作者:Lizhi Sun;Shuocheng Wang;Hao Wu;Yuhang Gong;Fengyuan Xu;Yunxin Liu;Hao Han;Sheng Zhong
通讯作者:Lizhi Sun;Shuocheng Wang;Hao Wu;Yuhang Gong;Fengyuan Xu;Yunxin Liu;Hao Han;Sheng Zhong
国内基金
海外基金
