A Generic Testbed for Security Enhancement Tools
Bing Mao · Computer Engineering and Applications Journal · 2006
So far,although many approaches have been proposed to solve buffer overflows and format string attacks,unfortunately few of them can prevent all possible attacks.Most of them can only defeat particular types of exploitation and there is lack of a criterion to evaluate the effectiveness of them.In this paper we implement a generic testbed which can be used to test nearly all existing security enhancement tools and evaluate their effectiveness.