ISCAS OpenIR  > 信息安全国家重点实验室
HyperCrop: A Hypervisor-Based Countermeasure for Return Oriented Programming
Jun Jiang; Xiaoqi Jia; Dengguo Feng; Shengzhi Zhang; Peng Liu
2011-11
会议名称International Conference on Information and Communications Security
会议录名称Lecture Notes in Computer Science, 2011, Volume 7043/2011 (Proceedings of the 13th International Conference on Information and Communications Security)
会议日期2011/11/23-2011/11/26
会议地点Friendship Hotel, Haidian District, Beijing, China
收录类别CPCI(ISTP) ; EI
合作性质国际
出版地Berlin Heidelberg
出版者Springer-Verlag
ISSN0302-9743
ISBN978-3-642-25242-6
摘要
Return oriented programming (ROP) has recently caught great attention of both academia and industry. It reuses existing binary code instead of injecting its own code and is able to perform arbitrary computation due to its Turing-completeness. Hence, It can successfully bypass state-of-the-art code integrity mechanisms such as NICKLE and SecVisor. In this paper, we present HyperCrop, a hypervisor-based approach to counter such attacks. Since ROP attackers extract short instruction sequences ending in ret called “gadgets” and craft stack content to “chain” these gadgets together, our method recognizes that the key characteristics of ROP is to fill the stack with plenty of addresses that are within the range of libraries (e.g. libc). Accordingly, we inspect the content of the stack to see if a potential ROP attack exists. We have implemented a proof-of-concept system based on the open source Xen hypervisor. The evaluation results exhibit that our solution is effective and efficient.
关键词Return Oriented Programming Hypervisor-based Security Hardware Assisted Virtualization
学科领域数据安全与计算机安全 ; 计算机系统设计 ; 操作系统与操作环境 ; 程序设计及其语言 ; 编译系统 ; 软件工程
URL查看原文
语种英语
内容类型会议论文
URI标识http://ir.iscas.ac.cn/handle/311060/14506
专题信息安全国家重点实验室
推荐引用方式
GB/T 7714
Jun Jiang,Xiaoqi Jia,Dengguo Feng,et al. HyperCrop: A Hypervisor-Based Countermeasure for Return Oriented Programming[C]. Berlin Heidelberg:Springer-Verlag,2011.
条目包含的文件
文件名称/大小 文献类型 版本类型 开放类型 使用许可
fulltext.pdf(280KB) 开放获取使用许可请求全文
个性服务
推荐该条目
保存到收藏夹
查看访问统计
导出为Endnote文件
谷歌学术
谷歌学术中相似的文章
[Jun Jiang]的文章
[Xiaoqi Jia]的文章
[Dengguo Feng]的文章
百度学术
百度学术中相似的文章
[Jun Jiang]的文章
[Xiaoqi Jia]的文章
[Dengguo Feng]的文章
必应学术
必应学术中相似的文章
[Jun Jiang]的文章
[Xiaoqi Jia]的文章
[Dengguo Feng]的文章
相关权益政策
暂无数据
收藏/分享
所有评论 (0)
暂无评论
 

除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。