메뉴 건너뛰기




Volumn , Issue , 2011, Pages 323-328

INSeRT: Protect dynamic code generation against spraying

Author keywords

[No Author keywords available]

Indexed keywords

DYNAMIC CODE GENERATION; INTRINSIC ELEMENTS; JAVASCRIPT; MACHINE INSTRUCTIONS; OPERATING SYSTEMS; PROTECTION MECHANISMS; PROTECTION METHODS; WEB 2.0;

EID: 79957820877     PISSN: None     EISSN: None     Source Type: Conference Proceeding    
DOI: 10.1109/ICIST.2011.5765261     Document Type: Conference Paper
Times cited : (14)

References (34)
  • 1
    • 0041774258 scopus 로고
    • Technical Report CSE-91-11-04, [Online]. Available
    • Keppel, D., Eggers, S.J., and Henry, R.R. 1991. A case for runtime code generation. Technical Report CSE-91-11-04, University of Washington. [Online]. Available: http://www.cs.washington.edu/research/compiler/papers.d/rtcg-case. html
    • (1991) A Case for Runtime Code Generation
    • Keppel, D.1    Eggers, S.J.2    Henry, R.R.3
  • 2
    • 0345565890 scopus 로고    scopus 로고
    • A Brief History of Just-in-time
    • Aycock, J., "A Brief History of Just-in-time", ACM Computing Surveys, 35, 2, pp.97-113. 2003
    • (2003) ACM Computing Surveys , vol.35 , Issue.2 , pp. 97-113
    • Aycock, J.1
  • 3
    • 78649997483 scopus 로고    scopus 로고
    • [Online]. Available
    • Google Inc. 2010. V8 JavaScript Engine. [Online]. Available: http://code.google.com/apis/v8/design.html.
    • (2010) V8 JavaScript Engine
  • 4
    • 78650001763 scopus 로고    scopus 로고
    • Interpreter exploitation: Pointer inference and jit spraying
    • Blazakis, D, "Interpreter exploitation: Pointer inference and jit spraying". In Black Hat DC, USA, 2010.
    • Black Hat DC, USA, 2010
    • Blazakis, D.1
  • 6
    • 78650000357 scopus 로고    scopus 로고
    • [Online]. Available
    • Microsoft Inc. 2010. Data Execution Prevention: frequently asked questions. [Online]. Available: http://windows.microsoft.com/en-US/windows- vista/Data-Execution-Prevention-frequently-asked-questions.
    • (2010) Data Execution Prevention: Frequently Asked Questions
  • 8
    • 78649982227 scopus 로고    scopus 로고
    • [Online]. Available
    • Sintsov, A. 2010. Writing JIT-Spray Shellcode for fun and profit. Digital Security Research Group. [Online]. Available: http://www.dsecrg.com/files/pub/ pdf/Writing%20JIT-Spray%20Shellcode%20for%20fun%20and%20profit.pdf.
    • (2010) Writing JIT-Spray Shellcode for Fun and Profit
    • Sintsov, A.1
  • 9
    • 78650010195 scopus 로고    scopus 로고
    • [Online]. Available
    • Wikipedia. 2010. V8 (JavaScript engine). [Online]. Available: http://en.wikipedia.org/wiki/V8-(JavaScript-engine)
    • (2010) V8 (JavaScript Engine)
  • 10
    • 79957789966 scopus 로고    scopus 로고
    • [Online]. Available
    • Sinan Eran (noir). GetPC code. [Online]. Available: http://www. securityfocus.com/archive/82/327100/2009-02-24/1.
    • GetPC Code
    • Eran, S.1
  • 11
    • 38149090090 scopus 로고    scopus 로고
    • Instruction Set Reference
    • [Online]. Available
    • Intel Corp, IA-32 Intel® Architecture Software Developer's Manual Volume 2: Instruction Set Reference, [Online]. Available: http://developer. intel.com/design/pentiumii/manuals/243191.htm, 2001.
    • (2001) IA-32 Intel® Architecture Software Developer's Manual , vol.2
  • 13
    • 79957860031 scopus 로고    scopus 로고
    • The HotSpot Group, [Online]. Available
    • The HotSpot Group, HotSpot, [Online]. Available: http://openjdk.java.net/ groups/hotspot/.
    • HotSpot
  • 15
    • 32444440610 scopus 로고    scopus 로고
    • [Online]. Available
    • Microsoft Corp., The .NET Framework. [Online]. Available: http://www.microsoft.com/net/.
    • The.NET Framework
  • 17
    • 79957871838 scopus 로고    scopus 로고
    • skypher.com, [Online]. Available
    • skypher.com, Hacking/Shellcode/GetPC. [Online]. Available: http://skypher.com/wiki/index.php/Hacking/Shellcode/GetPC.
    • Hacking/Shellcode/GetPC
  • 18
    • 77954641782 scopus 로고    scopus 로고
    • [Online]. Available
    • Mozilla project, JavaScript:TraceMonkey. [Online]. Available: https://wiki.mozilla.org/JavaScript:TraceMonkey.
    • JavaScript:TraceMonkey
  • 23
    • 72849140093 scopus 로고    scopus 로고
    • March [Online]. Available
    • Zeigler, A.. IE8 and Loosely-Coupled IE, March 2008. [Online]. Available: http://blogs.msdn.com/ie/archive/2008/03/11/ie8-and-loosely-coupledie-lcie. aspx.
    • (2008) IE8 and Loosely-Coupled IE
    • Zeigler, A.1
  • 24
    • 84875838249 scopus 로고    scopus 로고
    • [Online]. Available
    • WebKit Open Source Project, SunSpider 0.9.1 JavaScript Benchmark, [Online]. Available: http://www2.webkit.org/perf/sunspider-0.9.1/sunspider.html.
    • SunSpider 0.9.1 JavaScript Benchmark
  • 25
    • 4344593013 scopus 로고    scopus 로고
    • Beyond Stack Smashing: Recent Advances in Exploiting Buffer Overruns
    • Pincus, J., Baker, B., "Beyond Stack Smashing: Recent Advances in Exploiting Buffer Overruns", in IEEE Security & Privacy, 2004.
    • (2004) IEEE Security & Privacy
    • Pincus, J.1    Baker, B.2
  • 26
    • 34548146785 scopus 로고    scopus 로고
    • [Online]. Available
    • Wikipedia, Data Execution Prevention, [Online]. Available: http://en.wikipedia.org/wiki/Data-Execution-Prevention.
    • Data Execution Prevention
  • 27
    • 77952351839 scopus 로고    scopus 로고
    • The Geometry of Innocent Flesh on the Bone: Return-into-libc without Function Calls (on the x86)
    • Shacham, H.. "The Geometry of Innocent Flesh on the Bone: Return-into-libc without Function Calls (on the x86)". In Proc. 14th ACM Conf. Comp. and Comm. Sec. (CCS 2007), 2007
    • Proc. 14th ACM Conf. Comp. and Comm. Sec. (CCS 2007), 2007
    • Shacham, H.1
  • 30
    • 79957846665 scopus 로고    scopus 로고
    • [Online]. Available 2010
    • Pwn2Own 2010, [Online]. Available: http://dvlabs.tippingpoint.com/blog/ 2010/02/15/pwn2own-2010, 2010.
    • (2010) Pwn2Own
  • 32
    • 84855195743 scopus 로고    scopus 로고
    • [Online]. Available
    • Microsoft Corp., Silverlight, [Online]. Available: http://www.microsoft. com/silverlight/
    • Silverlight
  • 33
    • 84870704453 scopus 로고    scopus 로고
    • [Online]. Available
    • Adobe Corp., Adobe Flash Player, [Online]. Available: http://get.adobe.com/cn/flashplayer/.
    • Adobe Flash Player
  • 34
    • 78650448230 scopus 로고    scopus 로고
    • [Online]. Available
    • Wikipedia, Microsoft Silverlight, [Online]. Available: http://en.wikipedia.org/wiki/Microsoft-Silverlight.
    • Microsoft Silverlight


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.