14 papers · ranked by Valyu relevance
Rhys Compton, Eibe Frank, Panos Patros, Abigail Koay
Automatic source code analysis in key areas of software engineering, such as code security, can benefit from Machine Learning (ML). However, many standard ML approaches require a numeric representation of data and cannot be applied directly to source code. Thus, to enable ML, we need to embed source code into numeric…
Parvez Faruki, Hossein Fereidooni, Vijay Laxmi, Mauro Conti + 1 more
'Manoj Singh Gaur'] Mobile devices have become ubiquitous due to centralization of private user information, contacts, messages and multiple sensors. Google Android, an open-source mobile Operating System (OS), is currently the market leader. Android popularity has motivated the malware authors to employ set of cyber…
Hui Xu, Yangfan Zhou, Yu Kang, Michael R. Lyu
—Program obfuscation is a widely employed approach for software intellectual property protection. However, general obfuscation methods (e.g., lexical obfuscation, control obfuscation) implemented in mainstream obfuscation tools are heuristic and have little security guarantee. Recently in 2013, Garg et al. have…
Ali Ajorian, Erick Lavoie, Christian Tschudin
In this paper, we propose instruction decorrelation as a new approach that makes the instructions of a set of real-world programs appear independent from one another. We contribute: a formal definition of instruction independence with multiple instantiations for various aspects of programs; a combination of program…
Dominik Picheta
- 1. Has a full bibliography attached laid out according to the guidelines specified in the Student Project Handbook - 2. Contains full acknowledgement of all secondary sources used (paper-based and electronic) - 3. Does not exceed the specified page limit - 4. Is clearly presented and proof-read - 5. Is submitted on…
Rémi Géraud, Mirko Koscina, Paul Lenczner, David Naccache + 1 more
'David Saulpic'] Abstract. One of the big challenges in program obfuscation consists in modifying not only the program's straight-line code (SLC) but also the program's control flow graph (CFG). Indeed, if only SLC is modified, the program's CFG can be extracted and analyzed. Usually, the CFG leaks a considerable…
Zhou, Dongchao, Ying, Lingyun + 4 more
—JavaScript's widespread adoption has made it an attractive target for malicious attackers who employ sophisticated obfuscation techniques to conceal harmful code. Current deobfuscation tools suffer from critical limitations that severely restrict their practical effectiveness. Existing tools struggle with diverse…
Yunqian Luo, Mingyu Gao
Side-channel vulnerabilities, particularly timing and access-pattern-based attacks, have become critical issues for confidential data processing in trusted environments. Oblivious programming is an effective approach to alleviate these attacks by making program execution not leak any secret through execution time and…
Adrian Herrera
—JavaScript is a popular attack vector for releasing malicious payloads on unsuspecting Internet users. Authors of this malicious JavaScript often employ numerous obfuscation techniques in order to prevent the automatic detection by antivirus and hinder manual analysis by professional malware analysts. Consequently…
Johannes Schneider, Thomas Locher
—Protecting source code against reverse engineering and theft is an important problem. The goal is to carry out computations using confidential algorithms on an untrusted party while ensuring confidentiality of algorithms. This problem has been addressed for Boolean circuits known as 'circuit privacy'. Circuits…
Lorenzo De Tomasi, Claudio Di Sipio, Antinisca Di Marco, Phuong T. Nguyen
'Phuong T. Nguyen'] Code obfuscation is the conversion of original source code into a functionally equivalent but less readable form, aiming to prevent reverse engineering and intellectual property theft. This is a challenging task since it is crucial to maintain functional correctness of the code while substantially…
Shangtong Cao, Ningyu He, Yao Guo, Haoyu Wang
WebAssembly (Wasm) is an emerging binary format that draws great attention from our community. However, Wasm binaries are weakly protected, as they can be read, edited, and manipulated by adversaries using either the officially provided readable text format (i.e., wat) or some advanced binary analysis tools. Reverse…
Pei Wang, Shuai Wang, Jiang Ming, Yufei Jiang + 1 more
—Program obfuscation is an important software protection technique that prevents attackers from revealing the programming logic and design of the software. We introduce translingual obfuscation, a new software obfuscation scheme which makes programs obscure by "misusing" the unique features of certain programming…
Renuka Kumar, Anjana Mariam Kurian
Control flow obfuscation (CFO) alters the control flow path of a program without altering its semantics. Existing literature has proposed several techniques; however, a quick survey reveals a lack of clarity in the types of techniques proposed, and how many are unique. What is also unclear is whether there is a…