Randomization Technology Based on Pointer Backups

Qin Li · Jisuanji gongcheng · 2007

Control data vulnerability,characterized by buffer overflow,is the most common security problems.When exploited,the attacker tries to rewrite the value of some control data in the target process to redirect the control flow to the prepared malicious code.In this way,the malicious code is executed under the current user's rights of the target process.Randomization is an effective technique to defend against control data vulnerability,but it still can not protect the control data from being modified.This article proposes a randomization technology based on pointer backups.The model can act upon attacks in time and exactly,so it strengthens the original technique a lot.

Read the paper · More papers on PaperTik