期刊文献+

软件漏洞自动利用研究进展 被引量:10

下载PDF
导出
摘要 软件漏洞发掘是当前的热点问题。尽管模糊测试技术帮助人们解决了程序漏洞的自动发现问题,并行模糊测试平台已经可以高效地发现大量的程序错误,但无论是防御者还是攻击者,都更关心这些程序漏洞或错误是否可能被利用。如何快速分析、评估漏洞的可利用性是当前漏洞发掘与分析的关键问题之一。
作者 和亮 苏璞睿
出处 《中国教育网络》 2016年第2期46-48,共3页 China Education Network
  • 相关文献

参考文献8

  • 1C.Miller, J.Caballero, N.M.Johnson, M.G.Kang, S.McCamanl, P.Poosankam and D.Song. Crash AflIllYSJ:i with HI/Blaze. BlackHat, 2010.
  • 2S.HeeJan and D.Kroening. Automatic Cenerotion of Control Flow Hi'lJcl(/ilg Explo.its for Software Vu/nera.hJlilies. MSc Computer Science Dissertation, University of Oxford, 2009.
  • 3D.Brumley, P.Poosankam, D.song and J.Zheng. A utometrc Patch-Based Exploi/ Genera/ion is Possible: Techniques and Implications. In Proceedings of the IEEE Symposium on Security and Privacy (S&P), 2008.
  • 4T.Avgerinos, S.K.Cha, RL.T.Tao and D.Brumley.AEC: Automstic Explo.it Geoereuon, In Proceedings of the Network and Distributed System Security Symposium (NDSS), 20 II.
  • 5S.K.Cha, T.Avgerinos, A.Rebert and D.BrumJey. Ullleashing ,If A YHJ:,'A{ 011 Hinary Code. In Proceedings of the IEEE: Symposium on Security and Privacy (S&P). 2012.
  • 6M.H.Wang, P.R.Su, Q.Li, L.Y.Ying, Y.Yang and D.G.Peng. Automatic Polymorphic Exploit Generation for Software Vulnerabilities. In Proceedings of International Conference on Security and Privacy in Communication Networks (SecureComm),2013.
  • 7Ecl.Schwarte. T.Avgerinos and D.Brumley. Q: ExplOIt hardening made easy. In Proceedings of the USENIX Security Symposium, 2011.
  • 8H.Hu, Z.L.Chua, S.Adrian, P.Saxena and Z.K.Liang. Aut omet ic Gencrsrion of Data-Oriented Exploits. l n Proceedings of the USENIX Security Symposium, 2015.

同被引文献33

引证文献10

二级引证文献28

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部