为提高物联网(Internet of Things,IoT)设备漏洞分析的准确度,在深入分析了50余个MIPS架构的IoT设备固件漏洞的基础上,提出了一种基于导向式模糊测试的动静结合IoT设备固件漏洞分析方法。获取固件程序中所有函数信息,依据数据引入函数...为提高物联网(Internet of Things,IoT)设备漏洞分析的准确度,在深入分析了50余个MIPS架构的IoT设备固件漏洞的基础上,提出了一种基于导向式模糊测试的动静结合IoT设备固件漏洞分析方法。获取固件程序中所有函数信息,依据数据引入函数与漏洞触发函数的函数调用关系图,定位危险代码区域。基于危险代码区域详细控制流图,计算执行路径中基本块到达漏洞触发函数的距离,动态调控种子能量,实现面向漏洞触发函数的导向性模糊测试。设计实现了面向MIPS架构的IoT设备固件漏洞分析系统DirFirmFuzz。实验结果表明,相较于已有工具,系统漏洞分析的误报率平均缩减了73.31%,到达漏洞触发函数的平均速度加快了1.1~7倍。同时,在实际环境测试过程中,发现了D-Link、Cisco等多个厂商的12个0-day漏洞,均已报送相关厂商进行修补。展开更多
Based on the double-layered foundation theory, the composite ground with partially penetrated cement fly-ash gravel(CFG) piles was regarded as a double-layered foundation including the surface reinforced area and the ...Based on the double-layered foundation theory, the composite ground with partially penetrated cement fly-ash gravel(CFG) piles was regarded as a double-layered foundation including the surface reinforced area and the underlying untreated stratum. Due to the changing permeability property of CFG piles, the whole consolidation process of the composite ground with CFG piles was divided into two stages, i.e., the early stage(permeable CFG pile bodies) and the later stage(impermeable pile bodies). Then, the consolidation equation of the composite foundation with CFG piles was established by using the Terzaghi one-dimensional consolidation theory. Consequently, the unified formula to calculate the excess pore water pressure was derived with the specific solutions for the consolidation degree of composite ground, reinforced area and underlying stratum under instant load obtained respectively. Finally, combined with a numerical example, influencing rules by main factors(including the replacement rate m, the treatment depth h1, the permeability coefficient Ks1, Kv2 and compression modulus Es1, Es2 of reinforced area and underlying stratum) on the consolidation property of composite ground with CFG piles were discussed in detail. The result shows that the consolidation velocity of underlying stratum is slower than that of the reinforced area. However, the consolidation velocity of underlying stratum is slow at first then fast as a result of the transferring of effective stress to the underlying stratum during the dissipating process of excess pore water pressure.展开更多
From the continuum mechanics perspective, an attempt was made to clarify the role of Terzaghi's effective stress in the theoretical analysis of saturated soil subjected to seepage. The necessity of performing a co...From the continuum mechanics perspective, an attempt was made to clarify the role of Terzaghi's effective stress in the theoretical analysis of saturated soil subjected to seepage. The necessity of performing a coupled hydromechanical analysis to solve the seepage-deformation interaction problem was illustrated by examining the equations of static equilibrium among the effective stress, seepage force, pore-water pressure and total stress. The conceptual definition of stress variable that satisfies the principles of continuum mechanics is applied in the coupled hydromechanical analysis. It is shown that Terzaghi's effective stress is in fact not a stress variable under seepage conditions, and the seepage force acting on the soil skeleton cannot be viewed as a body force. This offers a clue to the underlying cause of a paradox between the real Pascal's hydrostatic state and the hydrostatic state predicted by a class of continuum hydromechanical theories.展开更多
A stress analysis of the Sarafix external fixator design was performed using finite element analysis (FEA) and experimental tensometric measurements. The study was conducted at one of the Sarafix fixator configurati...A stress analysis of the Sarafix external fixator design was performed using finite element analysis (FEA) and experimental tensometric measurements. The study was conducted at one of the Sarafix fixator configurations that have a clinical application in the treatment of tibia fractures. The intensity of principal and yon Mises stresses generated at two measuring points (MP) on the fixator connecting rod were monitored and analyzed during the testing on axial compression on the fixator design and its finite element model (FEM). The 3D geometrical and FEM model of the fixator was formed using the computer aided design/computer aided engineering (CAD/CAE) software system CATIA. Verification of the results for the dominant principal stresses obtained from FEA was carried out through tensometric measurements. The measuring chain consisted of strain gauges connected into two Wheatstone half-bridges, digital measuring amplifier system and a computer with software for acquisition and monitoring of measurement results. A quite good agreement was observed between the results obtained on the basis of FEA and results of experimental tensometric analysis,展开更多
低功耗广域网(low power wide area network,LPWAN)作为一个强调低功耗的协议通常运行在资源受限设备上。一方面,受限的资源给协议实现的安全性带来了严峻的挑战,厂商通常难以在安全性与资源消耗上进行取舍。另一方面,协议栈以裸机固件...低功耗广域网(low power wide area network,LPWAN)作为一个强调低功耗的协议通常运行在资源受限设备上。一方面,受限的资源给协议实现的安全性带来了严峻的挑战,厂商通常难以在安全性与资源消耗上进行取舍。另一方面,协议栈以裸机固件的形式部署在设备上,各异的硬件特性使得其自动化分析较为困难。因此,本文专门针对资源受限设备提出了一种基于符号执行与污点分析的协议栈分析框架ProSE,能够针对固件中存在的协议漏洞进行检测。本文以LPWAN中最具代表性的LoRaWAN协议作为分析对象,实现了多种漏洞的自动化检测,并成功检测出6个厂商LoRaWAN实现中存在的20个潜在安全漏洞。展开更多
文摘为提高物联网(Internet of Things,IoT)设备漏洞分析的准确度,在深入分析了50余个MIPS架构的IoT设备固件漏洞的基础上,提出了一种基于导向式模糊测试的动静结合IoT设备固件漏洞分析方法。获取固件程序中所有函数信息,依据数据引入函数与漏洞触发函数的函数调用关系图,定位危险代码区域。基于危险代码区域详细控制流图,计算执行路径中基本块到达漏洞触发函数的距离,动态调控种子能量,实现面向漏洞触发函数的导向性模糊测试。设计实现了面向MIPS架构的IoT设备固件漏洞分析系统DirFirmFuzz。实验结果表明,相较于已有工具,系统漏洞分析的误报率平均缩减了73.31%,到达漏洞触发函数的平均速度加快了1.1~7倍。同时,在实际环境测试过程中,发现了D-Link、Cisco等多个厂商的12个0-day漏洞,均已报送相关厂商进行修补。
基金Project(51378197)supported by the National Natural Science Foundation of China
文摘Based on the double-layered foundation theory, the composite ground with partially penetrated cement fly-ash gravel(CFG) piles was regarded as a double-layered foundation including the surface reinforced area and the underlying untreated stratum. Due to the changing permeability property of CFG piles, the whole consolidation process of the composite ground with CFG piles was divided into two stages, i.e., the early stage(permeable CFG pile bodies) and the later stage(impermeable pile bodies). Then, the consolidation equation of the composite foundation with CFG piles was established by using the Terzaghi one-dimensional consolidation theory. Consequently, the unified formula to calculate the excess pore water pressure was derived with the specific solutions for the consolidation degree of composite ground, reinforced area and underlying stratum under instant load obtained respectively. Finally, combined with a numerical example, influencing rules by main factors(including the replacement rate m, the treatment depth h1, the permeability coefficient Ks1, Kv2 and compression modulus Es1, Es2 of reinforced area and underlying stratum) on the consolidation property of composite ground with CFG piles were discussed in detail. The result shows that the consolidation velocity of underlying stratum is slower than that of the reinforced area. However, the consolidation velocity of underlying stratum is slow at first then fast as a result of the transferring of effective stress to the underlying stratum during the dissipating process of excess pore water pressure.
基金Project(51278171)supported by the National Natural Science Foundation of ChinaProject(B13024)supported by the"111"Project,China+1 种基金Projects(2014B04914,2011B02814,2010B28114)supported by the Fundamental Research Funds for the Central Universities of ChinaProject(617608)supported by the Research Grants Council of the Hong Kong Special Administrative Region of China
文摘From the continuum mechanics perspective, an attempt was made to clarify the role of Terzaghi's effective stress in the theoretical analysis of saturated soil subjected to seepage. The necessity of performing a coupled hydromechanical analysis to solve the seepage-deformation interaction problem was illustrated by examining the equations of static equilibrium among the effective stress, seepage force, pore-water pressure and total stress. The conceptual definition of stress variable that satisfies the principles of continuum mechanics is applied in the coupled hydromechanical analysis. It is shown that Terzaghi's effective stress is in fact not a stress variable under seepage conditions, and the seepage force acting on the soil skeleton cannot be viewed as a body force. This offers a clue to the underlying cause of a paradox between the real Pascal's hydrostatic state and the hydrostatic state predicted by a class of continuum hydromechanical theories.
文摘A stress analysis of the Sarafix external fixator design was performed using finite element analysis (FEA) and experimental tensometric measurements. The study was conducted at one of the Sarafix fixator configurations that have a clinical application in the treatment of tibia fractures. The intensity of principal and yon Mises stresses generated at two measuring points (MP) on the fixator connecting rod were monitored and analyzed during the testing on axial compression on the fixator design and its finite element model (FEM). The 3D geometrical and FEM model of the fixator was formed using the computer aided design/computer aided engineering (CAD/CAE) software system CATIA. Verification of the results for the dominant principal stresses obtained from FEA was carried out through tensometric measurements. The measuring chain consisted of strain gauges connected into two Wheatstone half-bridges, digital measuring amplifier system and a computer with software for acquisition and monitoring of measurement results. A quite good agreement was observed between the results obtained on the basis of FEA and results of experimental tensometric analysis,
文摘低功耗广域网(low power wide area network,LPWAN)作为一个强调低功耗的协议通常运行在资源受限设备上。一方面,受限的资源给协议实现的安全性带来了严峻的挑战,厂商通常难以在安全性与资源消耗上进行取舍。另一方面,协议栈以裸机固件的形式部署在设备上,各异的硬件特性使得其自动化分析较为困难。因此,本文专门针对资源受限设备提出了一种基于符号执行与污点分析的协议栈分析框架ProSE,能够针对固件中存在的协议漏洞进行检测。本文以LPWAN中最具代表性的LoRaWAN协议作为分析对象,实现了多种漏洞的自动化检测,并成功检测出6个厂商LoRaWAN实现中存在的20个潜在安全漏洞。