ISCAS OpenIR  > 互联网软件技术实验室
a practical covert channel identification approach in source code based on directed information flow graph
Wu JingZheng; Ding Liping; Wang Yongji; Han Wei
2011
Conference Name2011 5th International Conference on Secure Software Integration and Reliability Improvement, SSIRI 2011
SourceProceedings - 2011 5th International Conference on Secure Software Integration and Reliability Improvement, SSIRI 2011
Pages98-107
Conference Date27-Jun-02
Conference PlaceJeju Island, Korea, Republic of
Indexed TypeEI
Publish PlaceUnited States
ISBN9780769544533
Department(1) National Engineering Research Center for Fundamental Software, Institute of Software, China; (2) State Key Laboratory of Computer Science, Institute of Software, China; (3) Graduate School, Chinese Academy of Science, Beijing, China
English AbstractCovert channel analysis is an important requirement when building secure information systems and identification is the most difficult task. Although some approaches were presented they are either experimental or constrained to some particular systems. This paper presents a practical approach based on directed information flow graph taking advantage of the source code analysis. The approach divides the whole system into serval independent modules and analyzes them respectively. All the shared variables and their caller functions are found out from the source codes and modeled into directed information flow graphs. When the information flow branches are visible and modifiable to the external interface a potential covert channel exists. Contributions made in this paper are as follows a modularized analysis scheme is proved and reduces the workloads of identifying a directed information flow graph algorithm is presented and used to model the covert channels more than 30 covert channels have been identified in Linux kernel source code using this scheme and a typical channel scenario is constructed. © 2011 IEEE.
KeywordAlgorithms Building Codes Computer Operating Systems Computer Programming Languages Graphic Methods Software Reliability
SponsorshipKorea Software Engineering Society
Content Type会议论文
URIhttp://ir.iscas.ac.cn/handle/311060/14377
Collection互联网软件技术实验室
Recommended Citation
GB/T 7714
Wu JingZheng,Ding Liping,Wang Yongji,et al. a practical covert channel identification approach in source code based on directed information flow graph[C]. United States,2011:98-107.
Files in This Item:
File Name/Size DocType Version Access License
a practical covert c(204KB) 开放获取--Application Full Text
Related Services
Recommend this item
Bookmark
Usage statistics
Export to Endnote
Google Scholar
Similar articles in Google Scholar
[Wu JingZheng]'s Articles
[Ding Liping]'s Articles
[Wang Yongji]'s Articles
Baidu academic
Similar articles in Baidu academic
[Wu JingZheng]'s Articles
[Ding Liping]'s Articles
[Wang Yongji]'s Articles
Bing Scholar
Similar articles in Bing Scholar
[Wu JingZheng]'s Articles
[Ding Liping]'s Articles
[Wang Yongji]'s Articles
Terms of Use
No data!
Social Bookmark/Share
All comments (0)
No comment.
 

Items in the repository are protected by copyright, with all rights reserved, unless otherwise indicated.