Cross-architecture bug search in binary executables
Autor(en):
Zusammenfassung
With the general availability of closed-source software for various CPU architectures, there is a need to identify security-critical vulnerabilities at the binary level. Unfortunately, existing bug finding methods fall short in that they i) require source code, ii) only work on a single architecture (typically x86), or iii) rely on dynamic analysis, which is difficult for embedded devices. In this paper, we propose a system to derive bug signatures for known bugs. First, we compute semantic hashes for the basic blocks of the binary. When can then use these semantics to find code parts in the binary that behave similarly to the bug signature, effectively revealing code parts that contain the bug. As a result, we can find vulnerabilities, e.g., the famous Heartbleed vulnerabilities, in buggy binary code for any of the supported architectures (currently, ARM, MIPS and x86).
- Vollständige Referenz
- BibTeX
Pewny, J., Garmany, B., Gawlik, R., Rossow, C. & Holz, T.,
(2017).
Cross-architecture bug search in binary executables.
it - Information Technology: Vol. 59, No. 5.
Berlin:
De Gruyter.
(S. 83).
DOI: 10.1515/itit-2016-0040
@article{mci/Pewny2017,
author = {Pewny, Jannik AND Garmany, Behrad AND Gawlik, Robert AND Rossow, Christian AND Holz, Thorsten},
title = {Cross-architecture bug search in binary executables},
journal = {it - Information Technology},
volume = {59},
number = {5},
year = {2017},
,
pages = { 83 } ,
doi = { 10.1515/itit-2016-0040 }
}
author = {Pewny, Jannik AND Garmany, Behrad AND Gawlik, Robert AND Rossow, Christian AND Holz, Thorsten},
title = {Cross-architecture bug search in binary executables},
journal = {it - Information Technology},
volume = {59},
number = {5},
year = {2017},
,
pages = { 83 } ,
doi = { 10.1515/itit-2016-0040 }
}
Sollte hier kein Volltext (PDF) verlinkt sein, dann kann es sein, dass dieser aus verschiedenen Gruenden (z.B. Lizenzen oder Copyright) nur in einer anderen Digital Library verfuegbar ist. Versuchen Sie in diesem Fall einen Zugriff ueber die verlinkte DOI: 10.1515/itit-2016-0040
Haben Sie fehlerhafte Angaben entdeckt? Sagen Sie uns Bescheid: Feedback abschicken
Mehr Information
ISSN: 1611-2776
Datum: 2017
Sprache:
(en)
(en)
Typ: Text/Journal Article

