Random table and hash coding‐based binary code obfuscation against stack trace analysis

Xin Xie, Bin Lu, Daofu Gong, Xiangyang Luo, Fenlin Liu · IET Information Security · 2015

Code obfuscation is intended to thwart reverse engineering by making programmes hard to understand. Call chains collected by stack tracing can be used to understand the behaviour of programmes. To hinder reverse analysis of stack tracing, a binary code obfuscation method based on random obfuscated table and hash coding is proposed. Random obfuscated table is used to map call addresses while call and ret instructions are executing. Hash coding and random value can be used to encode and decode the data of stack frames in the run‐time programmes. Experiment and analysis show that the obfuscation can effectively impede stack trace analysis and increase the cost of reverse analysis for programmes.

Read the paper · More papers on PaperTik