跳到主要导航 跳到搜索 跳到主要内容

Defending embedded systems against buffer overflow via hardware/software

  • University of Texas at Dallas

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

Buffer over-flow attacks have been causing serious security problems for decades. With more embedded systems networked, it becomes an important research problem to defend embedded systems against buffer overflow attacks. We propose the hardware/software address protection (HSAP) technique to solve this problem. We first classify buffer overflow attacks into two categories (stack smashing attacks and function pointer attacks) and then provide two corresponding defending strategies. In our technique, hardware boundary check method and function pointer XOR method are used to protect a system against stack smashing attacks and function pointer attacks, respectively. Although the focus of the HSAP technique is on embedded systems because of the availability of hardware support, we show that the HSAP technique is applied to any type of processors to defend against buffer overflow attacks. We use four classes of processors to illustrate that the applicability of our technique is independent of architectures. We experiment with our HSAP technique in ARM Evaluator-7T simulation development environments. The results show that our HSAP technique defends a system against more types of buffer overflow attacks with little overhead.

源语言英语
主期刊名Proceedings - 19th Annual Computer Security Applications Conference, ACSAC 2003
出版商IEEE Computer Society
352-361
页数10
ISBN(电子版)0769520413
DOI
出版状态已出版 - 2003
已对外发布
活动19th Annual Computer Security Applications Conference, ACSAC 2003 - Las Vegas, 美国
期限: 8 12月 200312 12月 2003

出版系列

姓名Proceedings - Annual Computer Security Applications Conference, ACSAC
2003-January
ISSN(印刷版)1063-9527

会议

会议19th Annual Computer Security Applications Conference, ACSAC 2003
国家/地区美国
Las Vegas
时期8/12/0312/12/03

指纹

探究 'Defending embedded systems against buffer overflow via hardware/software' 的科研主题。它们共同构成独一无二的指纹。

引用此