跳到主要导航 跳到搜索 跳到主要内容

Buffer overflow attacks defending using a segment-based approach

  • Wei Zhi Yang*
  • , Yu An Tan
  • *此作品的通讯作者
  • Northeastern University China

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

A segment-based non-executable stack approach is proposed and evaluated to defend against stack-based buffer overflow attacks under Windows NT/2000/2003/XP and Intel 32-bit CPUs. A kernel device driver is designed to relocate the application's usermode stack to the higher address and to modify the effective limit in the code segment descriptor, in order to exclude the relocated stack from the code segment. Once any code that attempts to execute the malicious code residing in the stack, a general-protection exception of exceeding the segment limit is triggered so the malicious code will be terminated. It is highly effective In preventing both known and yet unknown stack smashing attacks and its performance overhead is lower than the page-based non-executable stack approach.

源语言英语
主期刊名2006 International Conference on Computational Intelligence and Security, ICCIAS 2006
出版商IEEE Computer Society
1559-1562
页数4
ISBN(印刷版)1424406056, 9781424406050
DOI
出版状态已出版 - 2006
活动2006 International Conference on Computational Intelligence and Security, ICCIAS 2006 - Guangzhou, 中国
期限: 3 10月 20066 10月 2006

出版系列

姓名2006 International Conference on Computational Intelligence and Security, ICCIAS 2006
2

会议

会议2006 International Conference on Computational Intelligence and Security, ICCIAS 2006
国家/地区中国
Guangzhou
时期3/10/066/10/06

指纹

探究 'Buffer overflow attacks defending using a segment-based approach' 的科研主题。它们共同构成独一无二的指纹。

引用此