11 papers · ranked by Valyu relevance
Rasha Omar, Mostafa Abbas, Ahmed El-Mahdy, Erven Rohou + 1 more
'Rafael Sachetto Oliveira'] With the widespread of multicore systems, automatic parallelization becomes more pronounced, particularly for legacy programs, where the source code is not generally available. An essential operation in any parallelization system is detecting data dependence among parallelization candidate…
Bing Xia, Jianmin Pang, Xin Zhou, Zheng Shan + 2 more
'Feng Yue'] Binary code similarity analysis is widely used in the field of vulnerability search where source code may not be available to detect whether two binary functions are similar or not. Based on deep learning and natural processing techniques, several approaches have been proposed to perform cross-platform…
Lei Yan, Guanghuai Zhao, Xiaohui Li, Pengxuan Sun + 1 more
The inconsistency in software development standards frequently leads to vulnerabilities that can jeopardize an application’s cryptographic integrity. This situation can result in incomplete or flawed encryption processes. Vulnerabilities may manifest as missing, bypassed, or improperly executed encryption functions or…
Shudan Yue, Guimin Zhang, Qingbao Li, Wenbo Zhang + 3 more
'Weihua Jiao' 'Mudassir Khan'] In the field of firmware security analysis for Internet of Things (IoT) devices, border binary detection has become an important research focus. However, the existing methods for border binary detection have problems such as insufficient feature characterization, high false-negative…
Seokwoo Choi, Taejoo Chang, Yongsu Park, Francesco Mercaldo
Despite recent remarkable advances in binary code analysis, malware developers still use complex anti-reversing techniques that make analysis difficult. Packers are used to protect malware, which are (commercial) tools that contain diverse anti-reversing techniques, including code encryption, anti-debugging, and code…
Gang-Cheng Huang, Ko-Chin Chang, Tai-Hung Lai, Valderi R. Q. Leithardt
In this study, we propose a method for successfully evading antivirus detection by encoding malicious shellcode with fountain codes. The Meterpreter framework for Microsoft Windows 32-bit and 64-bit architectures was used to produce the shellcode used in this investigation. The experimental results proved that…
Zhenliang An, Weike Wang, Wenxin Li, Senyang Li + 2 more
'Arman Roohi'] The growing prevalence of embedded systems in various applications has raised concerns about their vulnerability to malicious code reuse attacks. Current software-based and hardware-assisted security techniques struggle to detect or block these attacks with minor performance and implementation overhead.…
Daehyeon Bae, Jaecheol Ha, Nikos Fotiou
With the development of 5G and network technology, the usage of IoT devices has become popular. Because most of these IoT devices can be controlled by an adversary away from the administrator, several security issues such as firmware dumping can arise. Firmware dumping is the cornerstone or goal of many types of…
Ajit Narayanan, Yi Chen, Shaoning Pang, Ban Tao
The continuous growth of malware presents a problem for internet computing due to increasingly sophisticated techniques for disguising malicious code through mutation and the time required to identify signatures for use by antiviral software systems (AVS). Malware modelling has focused primarily on semantics due to the…
Alasdair Armstrong, Brian Campbell, Ben Simner, Christopher Pulte + 1 more
Architecture specifications such as Armv8-A and RISC-V are the ultimate foundation for software verification and the correctness criteria for hardware verification. They should define the allowed sequential and relaxed-memory concurrency behaviour of programs, but hitherto there has been no integration of full-scale…
Rashmi Yadav, Ravindra Patel, Abhay Kothari
Introduction The comprehension of legacy codes is difficult to understand. Various commercial reengineering tools are available that have unique working styles, and are equipped with their inherent capabilities and shortcomings. The focus of the available tools is in visualizing static behavior not the dynamic one.…