• Home
  • Search
  • Enforcement of Architectural Safety Guards to Deter Malicious Code Attacks through Buffer Overflow Vulnerabilities
  • https://doi.org/10.1007/978-3-540-24714-2_6Copy DOI Icon

Enforcement of Architectural Safety Guards to Deter Malicious Code Attacks through Buffer Overflow Vulnerabilities

  • Jan 1, 2004
  • Lynn Choi +1 more
Show More
  • Abstract
  • Literature Map
  • References
  • Similar Papers
Abstract

The buffer overflow attack is the single most dominant and lethal form of security exploits as evidenced by recent worm outbreaks such as Code Red and SQL Slammer. In this paper, we propose a new architectural solution to detect and deter the buffer overflow exploit. The idea is that the buffer overflow attacks usually exhibit abnormal symptoms in the system. This kind of unusual behavior can be simply detected by checking the integrity of instruction and data references at runtime, avoiding the potential data or control corruptions made by such attacks. Both the hardware cost and the performance penalty of enforcing the integrity rules are negligible. By performing detailed execution-driven simulations on the programs selected from SPEC CPU2000 benchmark, we evaluate the effectiveness of the proposed safety guards. By randomly corrupting stack and other data sections of a process’s address space during simulation, we create various buffer overflow scenarios, including both stack and heap smashing. Experimental data shows that enforcing two safety guards not only reduces the number of system failures substantially but it also circumvents virtually all forms of malicious code execution made by stack smashing or function pointer corruptions.KeywordsReturn AddressMalicious CodeBuffer OverflowData CorruptionBranch TargetThese keywords were added by machine and not by the authors. This process is experimental and the keywords may be updated as the learning algorithm improves.

Similar Papers
  • Research Article

Buffer Overflow Vulnerabilities and Prevention

  • Jun 26, 2022
  • INTERANTIONAL JOURNAL OF SCIENTIFIC RESEARCH IN ENGINEERING AND MANAGEMENT
  • Shreenivas Hegde +1
  • Book Chapter
  • Citations1

Features for Behavioral Anomaly Detection of Connectionless Network Buffer Overflow Attacks

  • Jan 01, 2017
  • Ivan Homoliak +2
  • Conference Article
  • Citations6

Classification of Buffer Overflow Vulnerability Monitors

  • Feb 01, 2010
  • Hossain Shahriar +1
  • Conference Article
  • Citations74

A processor architecture defense against buffer overflow attacks

  • Jan 01, 2003
  • J.P Mcgregor +3
  • Research Article
  • Citations4

Secure Patrol: Patrolling Against Buffer Overflow Exploits

  • May 04, 2014
  • Information Security Journal: A Global Perspective
  • Jaydeep Solanki +2
  • Conference Article
  • Citations4

Secure Bit Enhanced Canary: Hardware Enhanced Buffer-Overflow Protection

  • Oct 01, 2008
  • Krerk Piromsopa +1
  • Conference Article
  • Citations38

BovInspector: automatic inspection and repair of buffer overflow vulnerabilities

  • Aug 25, 2016
  • Fengjuan Gao +2
  • Research Article
  • Citations1

Analysis of Buffer Overflow Exploits and Prevention Strategies

  • Feb 06, 2014
  • Applied Mechanics and Materials
  • Shu Xin Xu +1
  • Research Article

A novel approach against the system buffer overflow

  • Jan 01, 2010
  • International Journal of Internet Technology and Secured Transactions
  • Yi Tung F Chan +2
  • Conference Article
  • Citations2

Smart Parser for Identifying and Detecting Insecure Functions

  • Oct 01, 2017
  • Esraa Al-Shammari +2
  • Conference Article
  • Citations43

Multi-variant Program Execution: Using Multi-core Systems to Defuse Buffer-Overflow Vulnerabilities

  • Jan 01, 2008
  • Babak Salamat +5
  • Conference Article
  • Citations21

Scalable network-based buffer overflow attack detection

  • Dec 03, 2006
  • Fu-Hau Hsu +2
  • Conference Article
  • Citations1

A Segment-based Approach of Defending Against Buffer Overflow Attacks

  • Jan 01, 2005
  • Yu-An Tan +2
  • Conference Article

Evaluation of the Runtime Intrusion Prevention of ARM-Based Systems in Wireless Networks

  • Aug 01, 2020
  • Sun Zhou
  • Conference Article
  • Citations5

Efficient array & pointer bound checking against buffer overflow attacks via hardware/software

  • Jan 01, 2005
  • Zili Shao +4
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.