Chinese Journal of Network and Information Security ›› 2017, Vol. 3 ›› Issue (9): 31-39.doi: 10.11959/j.issn.2096-109x.2017.00200

• Papers • Previous Articles     Next Articles

Analysis model of binary code security flaws based on structure characteristics

Tuan XU,Lei-lei QU(),Wen-chang SHI   

  1. School of Information,Renmin University of China,Beijing 100872,China
  • Revised:2017-08-13 Online:2017-09-01 Published:2017-10-18
  • Supported by:
    The National Natural Science Foundation of China(61472429);The Natural Science Foundation of Beijing(4122041)

Abstract:

Aiming at the shortcomings of the existing methods to detect the security flaws that have complex structures,a new analysis model and its application method was proposed.First,analysis models based on key information of code structures extracted from path subsets of characteristic element sets that are generated by source code element sets of code security flaws were constructed.Then the analysis model according to the statistical probability of each kind of IR statement was calculated,and the IR code group which matched the feature model was found.Finally,through the translating relation between binary codes and IR codes,various code security flaws of binary program were found out.The analysis models can be applied to both common single-process binary programs and binary parallel programs.Experimental results show that compared with the existing methods,the application of the analysis model can be more comprehensive and in-depth in detecting various types of complex binary code security flaws with higher accuracy.

Key words: binary analysis, analysis model, software security detection, flaw code recognition

CLC Number: 

No Suggested Reading articles found!