检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:南理勇[1]
出 处:《微型机与应用》2015年第10期4-6,12,共4页Microcomputer & Its Applications
摘 要:可移动存储设备管理系统在运行时会面临攻击者采用任务管理器或第三方工具强行关闭的攻击,可能导致应用程序无法正常运行。为解决这类应用程序安全运行的问题,提出一种融合进程隐藏和进程守护技术的可移动存储设备管理系统安全运行方案。该方案利用改进的远程线程注入技术提高系统隐蔽性,利用双守护进程的两级监控体系提高系统健壮性,从而达到维护程序安全运行的目的。应用结果表明,该方案能够很好地抵抗强行关闭攻击。The removable storage device management system would be subject to force dosing attack such as using task manager or third-party tools during runtime which could cause the system not to run. To cope with these system safe running problems, an integration of process hiding and process maintaining safe running method of removable storage device management system is proposed. Using modified remote thread inject technology to improve system stealthiness, using two monitoring system based on double process maintaining to improve system robustness, and then the system can run safely. Finally, application results show that the mothed can resist force closing attack effectively.
关 键 词:进程隐藏 信息隐藏 进程守护 远程线程注入 可移动存储设备
分 类 号:TP333[自动化与计算机技术—计算机系统结构]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.15