基于细粒度逻辑隔离结构的缓冲区溢出检测方法  

Buffer overflow detection based on the structure of fine-grained logic isolation

在线阅读下载全文

作  者:李晨[1] 李瑞华[1] 张兴[1] 庄琭[1] 

机构地区:[1]北京工业大学计算机学院可信计算实验室,北京100124

出  处:《清华大学学报(自然科学版)》2009年第S2期2138-2143,共6页Journal of Tsinghua University(Science and Technology)

基  金:国家"九七三"重点基础研究项目(2007CB311100)

摘  要:在计算机信息安全领域中,提出了一种缓冲区溢出及检测方法。采用图灵机,分析了产生溢出问题的原因是状态空间简化。攻击案例表明了现有检测机制在检测范围和检测时刻的不足。设计了细粒度的缓冲区数据逻辑隔离结构,提出了一种缓冲区溢出检测的通用模型,进行了时序逻辑分析。结果表明:该模型在检测粒度和范围上比传统方法更加准确和全面;在栈空间上的应用该模型,可以弥补现有缓冲区结构和检测机制的不足。A buffer overflow detection method based on the fine-grained logic isolation structure was developed to replace existing buffer overflow and detection methods which lack theoretical support and can not accurately identify buffer overflow problem.Turing is used to describe the simplified structure of the state-space causing the overflow.Two specific attack cases are used to illustrate two problems of detection time and detection range on existing detection mechanisms.A fine-grained logic isolation structure is designed to solve these problems in a universal detecting overflow model.A temporal logic analysis demonstrates that detection of the granularity and scale of overflow is more accurate than classical methods.Improved stack designs using thus mechanism can eliminate buffer structure problems and enable overflow detection.

关 键 词:计算机信息安全 缓冲区溢出 细粒度 逻辑隔离 检测时刻 检测范围 

分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象