Code Obfuscation Using Pseudo-random Number Generators

John Aycock, Juan Manuel Gutiérrez-Cárdenas, Daniel Medeiros Nunes de Castro · 2009

We describe a novel method for malicious code obfuscation that uses code already present in systems: a pseudo-randomnumber generator. This can also be seen as an anti-disassembly and anti-debugging technique, depending on deployment, because the actual code does not exist until run - it is generated dynamically by the pseudo-random number generator.A year's worth of experiments are used to demonstrate thatthis technique is a viable code obfuscation option for a malicious adversary with access to large amounts of computing power.

Read the paper · More papers on PaperTik