Skip to main content

2013 | OriginalPaper | Buchkapitel

A Framework of Static Analyzer for Taint Analysis of Binary Executable File

verfasst von : Young-Hyun Choi, Jae-Won Min, Min-Woo Park, Jung-Ho Eom, Tai-Myoung Chung

Erschienen in: Information Technology Convergence

Verlag: Springer Netherlands

Aktivieren Sie unsere intelligente Suche, um passende Fachinhalte oder Patente zu finden.

search-config
loading …

Abstract

In this paper, we proposed a tool framework of static analyzer for taint analysis of binary executable file. Dynamic taint analysis is becoming principal technique in security analysis. In particular, proposed system focuses on tracing a dynamic taint analysis. Moreover, most existing approaches are focused on data-flow based tainting. The modules of this paper use two kinds of input file type which are taint_trace file and binary executable file. Proposed system analyzes the result of dynamic taint analysis and makes control flow graph. Our proposed system is divided by three modules; taint reader, crash analyzer and code tracker. Trace reader converts trace file into readable/traceable information for a manual analyzer. Crash analyzer find out a vulnerability that is a causative factor in accrued crash. Code tracker supports a variety of binary executable file analysis. In this paper, we suggest a tool framework for dynamic taint analysis.

Sie haben noch keine Lizenz? Dann Informieren Sie sich jetzt über unsere Produkte:

Springer Professional "Wirtschaft+Technik"

Online-Abonnement

Mit Springer Professional "Wirtschaft+Technik" erhalten Sie Zugriff auf:

  • über 102.000 Bücher
  • über 537 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Maschinenbau + Werkstoffe
  • Versicherung + Risiko

Jetzt Wissensvorsprung sichern!

Springer Professional "Technik"

Online-Abonnement

Mit Springer Professional "Technik" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 390 Zeitschriften

aus folgenden Fachgebieten:

  • Automobil + Motoren
  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Elektrotechnik + Elektronik
  • Energie + Nachhaltigkeit
  • Maschinenbau + Werkstoffe




 

Jetzt Wissensvorsprung sichern!

Springer Professional "Wirtschaft"

Online-Abonnement

Mit Springer Professional "Wirtschaft" erhalten Sie Zugriff auf:

  • über 67.000 Bücher
  • über 340 Zeitschriften

aus folgenden Fachgebieten:

  • Bauwesen + Immobilien
  • Business IT + Informatik
  • Finance + Banking
  • Management + Führung
  • Marketing + Vertrieb
  • Versicherung + Risiko




Jetzt Wissensvorsprung sichern!

Literatur
1.
Zurück zum Zitat Scholten M (2007) Taint analysis in practice. Vrije Universiteit Amsterdam, Amsterdam, pp 1–29 Scholten M (2007) Taint analysis in practice. Vrije Universiteit Amsterdam, Amsterdam, pp 1–29
2.
Zurück zum Zitat Newsome J, Song D (2004) Dynamic taint analysis for automatic detection, analysis, and signature generation of exploits on commodity software. Technical report. School of computer science, Carnegie Mellon University Newsome J, Song D (2004) Dynamic taint analysis for automatic detection, analysis, and signature generation of exploits on commodity software. Technical report. School of computer science, Carnegie Mellon University
3.
Zurück zum Zitat Christopher DM, Prabhakar R, Hinrich S (2008) Introduction to information retrieval. Technical report, Cambridge University Press, United Kingdom Christopher DM, Prabhakar R, Hinrich S (2008) Introduction to information retrieval. Technical report, Cambridge University Press, United Kingdom
4.
Zurück zum Zitat Denning DE, Denning PJ (1977) Certification of programs for secure information flow. Commun ACM 20:504–513CrossRefMATH Denning DE, Denning PJ (1977) Certification of programs for secure information flow. Commun ACM 20:504–513CrossRefMATH
5.
Zurück zum Zitat Kang MG, McCamant S, Poosankam P, Song D (2011) DTA ++: dynamic taint analysis with targeted control-flow propagation. In: 18th annual network and distributed system security symposium Kang MG, McCamant S, Poosankam P, Song D (2011) DTA ++: dynamic taint analysis with targeted control-flow propagation. In: 18th annual network and distributed system security symposium
6.
Zurück zum Zitat Chow J, Pfaff B, Garnkel T, Christopher K, Rosenblum M (2004) Understanding data lifetime via whole system simulation. In: 13th USENIX security symposium, San Diego, pp 321–336 Chow J, Pfaff B, Garnkel T, Christopher K, Rosenblum M (2004) Understanding data lifetime via whole system simulation. In: 13th USENIX security symposium, San Diego, pp 321–336
7.
Zurück zum Zitat Song D, Brumley D, Yin H, Caballero J, Jager I, Kang MG, Liang Z, Newsome J, Poosankam P, Saxena P (2008) BitBlaze: a new approach to computer security via binary analysis. In: 4th international conference on information systems security (ICISS), information systems security. Lecture notes in computer science, pp 1–25 Song D, Brumley D, Yin H, Caballero J, Jager I, Kang MG, Liang Z, Newsome J, Poosankam P, Saxena P (2008) BitBlaze: a new approach to computer security via binary analysis. In: 4th international conference on information systems security (ICISS), information systems security. Lecture notes in computer science, pp 1–25
8.
Zurück zum Zitat Yin H, Song D, Egele M, Kruegel C, Kirda E (2007) Panorama: capturing system-wide information flow for malware detection and analysis. In: Computer and communication security (CCS), Alexandria Yin H, Song D, Egele M, Kruegel C, Kirda E (2007) Panorama: capturing system-wide information flow for malware detection and analysis. In: Computer and communication security (CCS), Alexandria
10.
Zurück zum Zitat Rahbar A Stack overow on windows vista. White paper, Sysdream Rahbar A Stack overow on windows vista. White paper, Sysdream
Metadaten
Titel
A Framework of Static Analyzer for Taint Analysis of Binary Executable File
verfasst von
Young-Hyun Choi
Jae-Won Min
Min-Woo Park
Jung-Ho Eom
Tai-Myoung Chung
Copyright-Jahr
2013
Verlag
Springer Netherlands
DOI
https://doi.org/10.1007/978-94-007-6996-0_20

Neuer Inhalt