Efficient shellcode detection on commodity hardware

Donghai Tian, Mo Chen, Changzhen Hu, Xuanya Li

科研成果: 期刊稿件文章同行评审

摘要

As more and more software vulnerabilities are exposed, shellcode has become very popular in recent years. It is widely used by attackers to exploit vulnerabilities and then hijack program's execution. Previous solutions suffer from limitations in that: 1) Some methods based on static analysismay fail to detect the shellcode using obfuscation techniques. 2) Other methods based on dynamic analysis could impose considerable performance overhead. In this paper, we propose Lemo, an efficient shellcode detection system. Our system is compatible with commodity hardware and operating systems, which enables deployment. To improve the performance of our system, we make use of the multi-core technology. The experiments show that our system can detect shellcode efficiently.

源语言英语
页(从-至)2272-2276
页数5
期刊IEICE Transactions on Information and Systems
E96-D
10
DOI
出版状态已出版 - 10月 2013

指纹

探究 'Efficient shellcode detection on commodity hardware' 的科研主题。它们共同构成独一无二的指纹。

引用此