Gadget Weighted Tagging: A Flexible Framework to Protect Against Code Reuse Attacks

Abstract : The code reuse attack (CRA) has become one of the most common attack methods. In this paper, we propose gadget weighted tagging (GWT), a flexible framework to protect against CRAs. In GWT, we firstly find all possible gadgets, which can be used in CRAs. Then, we attach weighted tags to these gadgets based on the lengths and types of the gadgets, and the weighted values are configurable. At last, GWT monitors the weighted tag information at runtime to detect and prevent CRAs. Furthermore, combining with the rule-based CFI, GWT+CFI can precisely confirm the gadget start and greatly reduce the number of possible gadgets, compared to the baseline GWT. We implement a hardware/software co-design framework to support GWT and GWT+CFI. The results show that the performance overheads of GWT and GWT+CFI are 2.31% and 3.55% respectively, and GWT can defeat variants of CRAs, especially those generated by automated tools.
Type de document :
Communication dans un congrès
Sabrina De Capitani di Vimercati; Fabio Martinelli. 32th IFIP International Conference on ICT Systems Security and Privacy Protection (SEC), May 2017, Rome, Italy. Springer International Publishing, IFIP Advances in Information and Communication Technology, AICT-502, pp.568-584, 2017, ICT Systems Security and Privacy Protection. 〈10.1007/978-3-319-58469-0_38〉
Liste complète des métadonnées

Littérature citée [18 références]  Voir  Masquer  Télécharger

https://hal.inria.fr/hal-01649002
Contributeur : Hal Ifip <>
Soumis le : lundi 27 novembre 2017 - 10:31:33
Dernière modification le : lundi 27 novembre 2017 - 10:34:08

Fichier

 Accès restreint
Fichier visible le : 2020-01-01

Connectez-vous pour demander l'accès au fichier

Licence


Distributed under a Creative Commons Paternité 4.0 International License

Identifiants

Citation

Liwei Chen, Mengyu Ma, Wenhao Zhang, Gang Shi, Dan Meng. Gadget Weighted Tagging: A Flexible Framework to Protect Against Code Reuse Attacks. Sabrina De Capitani di Vimercati; Fabio Martinelli. 32th IFIP International Conference on ICT Systems Security and Privacy Protection (SEC), May 2017, Rome, Italy. Springer International Publishing, IFIP Advances in Information and Communication Technology, AICT-502, pp.568-584, 2017, ICT Systems Security and Privacy Protection. 〈10.1007/978-3-319-58469-0_38〉. 〈hal-01649002〉

Partager

Métriques

Consultations de la notice

40