12 papers · ranked by Valyu relevance
Bing Xia, Jianmin Pang, Xin Zhou, Zheng Shan + 2 more
'Feng Yue'] Binary code similarity analysis is widely used in the field of vulnerability search where source code may not be available to detect whether two binary functions are similar or not. Based on deep learning and natural processing techniques, several approaches have been proposed to perform cross-platform…
Yuhao Jia, Zhicheng Yu, Zhen Hong, Asadullah Shaikh
Binary code similarity detection plays a crucial role in various applications within binary security, including vulnerability detection, malicious software analysis, etc. However, existing methods suffer from limited differentiation in binary embedding representations across different compilation environments, lacking…
Lei Yan, Guanghuai Zhao, Xiaohui Li, Pengxuan Sun + 1 more
The inconsistency in software development standards frequently leads to vulnerabilities that can jeopardize an application’s cryptographic integrity. This situation can result in incomplete or flawed encryption processes. Vulnerabilities may manifest as missing, bypassed, or improperly executed encryption functions or…
Shudan Yue, Guimin Zhang, Qingbao Li, Wenbo Zhang + 3 more
'Weihua Jiao' 'Mudassir Khan'] In the field of firmware security analysis for Internet of Things (IoT) devices, border binary detection has become an important research focus. However, the existing methods for border binary detection have problems such as insufficient feature characterization, high false-negative…
Seokwoo Choi, Taejoo Chang, Yongsu Park, Francesco Mercaldo
Despite recent remarkable advances in binary code analysis, malware developers still use complex anti-reversing techniques that make analysis difficult. Packers are used to protect malware, which are (commercial) tools that contain diverse anti-reversing techniques, including code encryption, anti-debugging, and code…
Gang-Cheng Huang, Ko-Chin Chang, Tai-Hung Lai, Valderi R. Q. Leithardt
In this study, we propose a method for successfully evading antivirus detection by encoding malicious shellcode with fountain codes. The Meterpreter framework for Microsoft Windows 32-bit and 64-bit architectures was used to produce the shellcode used in this investigation. The experimental results proved that…
Qiang Hao, Dongdong Xu, Yusen Qin, Ruyin Li + 4 more
'Yunyan You' 'Xiang Wang' 'Zhongrui Wang'] The branch prediction units (BPUs) generally have security vulnerabilities, which can be used by attackers to tamper with the branches, and the existing protection methods cannot defend against these attacks. Therefore, this article proposes a hardware security protection…
Zhenliang An, Weike Wang, Wenxin Li, Senyang Li + 2 more
'Arman Roohi'] The growing prevalence of embedded systems in various applications has raised concerns about their vulnerability to malicious code reuse attacks. Current software-based and hardware-assisted security techniques struggle to detect or block these attacks with minor performance and implementation overhead.…
Daehyeon Bae, Jaecheol Ha, Nikos Fotiou
With the development of 5G and network technology, the usage of IoT devices has become popular. Because most of these IoT devices can be controlled by an adversary away from the administrator, several security issues such as firmware dumping can arise. Firmware dumping is the cornerstone or goal of many types of…
Broderick Crawford, Benjamín López Cortés, Felipe Cisternas-Caneo, José Manuel Gómez-Pulido + 7 more
Binarizing continuous metaheuristics to solve challenging NP-hard binary optimization problems is a fundamental step in adapting continuous algorithms for discrete domains. Binary optimization problems, such as the Set Covering Problem and the 0-1 Knapsack Problem, demand tailored approaches to efficiently explore and…
Alasdair Armstrong, Brian Campbell, Ben Simner, Christopher Pulte + 1 more
Architecture specifications such as Armv8-A and RISC-V are the ultimate foundation for software verification and the correctness criteria for hardware verification. They should define the allowed sequential and relaxed-memory concurrency behaviour of programs, but hitherto there has been no integration of full-scale…
Yuzhuo Zhao, Qiqin Shi, Qun Ding, Christos Volos + 4 more
'Karthikeyan Rajagopal' 'Sajad Jafari' 'Jacques Kengne' 'Jesus M. Munoz-Pacheco'] In recent years, many chaotic image encryption algorithms have been cracked by chosen plaintext attack. Therefore, the method of associating the key with the plaintext to resist the cryptanalysis has received extensive attention from…