首页> 外文会议>International conference on information technology and industrial engineering >A Framework for Safeguarding System against Code Injection Attacks
【24h】

A Framework for Safeguarding System against Code Injection Attacks

机译:防止代码注入攻击系统的框架

获取原文

摘要

A framework based on Native API is proposed to prevent code injection attacks. This framework is implemented in a two-tier framework by adopting the idea of diversity. The first tier rearranges the Native API dispatch ID number so that only the Native API calls from legitimate sources are executed. The second tier provides an authentication process in case an attacker guesses the first-tier permutation order. The function call stack is back-traced to verify whether the original caller's return address resides within the legitimate process. When an attack is suspected, the process is terminated and an alert is generated. The experiments show that the approach has no significant overhead.
机译:提出了一种基于本机API的框架,以防止代码注入攻击。该框架是通过采用多样性的思想在双层框架中实现。第一层重新排列本机API调度ID号,以便仅执行来自合法源的本机API呼叫。在攻击者猜测第一层排列顺序的情况下,第二层提供了认证过程。函数调用堆栈被返回追踪以验证原始呼叫者的返回地址是否在合法过程中驻留。当怀疑攻击时,将终止此过程并生成警报。实验表明,该方法没有明显的开销。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号