Software vulnerability detection method based on short system call sequences
A detection method and software vulnerability technology, applied in the field of information security, can solve problems such as inability to detect unknown vulnerabilities, and achieve the effect of enhancing detection capabilities
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Examples
Embodiment Construction
[0029] Examples are given below to describe the present invention in detail.
[0030]The basic idea of the present invention is: run the target program in a safe environment, monitor its system call sequence and stack information, "segment" the system call sequence into short sequences according to the STIDE algorithm, and establish a normal behavior feature library. Then expose the target program to the attack, use the same algorithm to obtain short sequences for pattern matching, and calculate the Hamming distance and system call deviation value to determine whether behavior deviation occurs. When the behavior deviates beyond the threshold, a vulnerability is detected, and the vulnerability is located according to the stack information of the current system call.
[0031] The method steps are as follows:
[0032] The first step is to establish the function call chain CS of the system under test. CS is used to record the function name corresponding to the return address in...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com