Survey of Return-Oriented Programming Defense Mechanisms

dc.contributor.authorRuan, Yefeng
dc.contributor.authorKalyanasundaram, Sivapriya
dc.contributor.authorZou, Xukai
dc.contributor.departmentDepartment of Computer & Information Science, School of Scienceen_US
dc.date.accessioned2017-02-16T18:18:40Z
dc.date.available2017-02-16T18:18:40Z
dc.date.issued2016-07
dc.description.abstractA prominent software security violation-buffer overflow attack has taken various forms and poses serious threats until today. One such vulnerability is return-oriented programming attack. An return-oriented programming attack circumvents the dynamic execution prevention, which is employed in modern operating systems to prevent execution of data segments, and attempts to execute unintended instructions by overwriting the stack exploiting the buffer overflow vulnerability. Numerous defense mechanisms have been proposed in the past few years to mitigate/prevent the attack – compile time methods that add checking logic to the program code before compilation, dynamic methods that monitor the control-flow integrity during execution and randomization methods that aim at randomizing instruction locations. This paper discusses (i) these different static, dynamic, and randomization techniques proposed recently and (ii) compares the techniques based on their effectiveness and performances.en_US
dc.eprint.versionAuthor's manuscripten_US
dc.identifier.citationRuan, Y., Kalyanasundaram, S., & Zou, X. (2015). Survey of return‐oriented programming defense mechanisms. Security and Communication Networks, 9 (10), 1247–1265. http://dx.doi.org/10.1002/sec.1406en_US
dc.identifier.urihttps://hdl.handle.net/1805/11922
dc.language.isoenen_US
dc.publisherWileyen_US
dc.relation.isversionof10.1002/sec.1406en_US
dc.relation.journalSecurity and Communication Networksen_US
dc.rightsIUPUI Open Access Policyen_US
dc.sourceAuthoren_US
dc.subjectROPen_US
dc.subjectbuffer overflowen_US
dc.subjectcontrol flow integrityen_US
dc.titleSurvey of Return-Oriented Programming Defense Mechanismsen_US
dc.typeArticleen_US
Files
Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
Ruan_2016_survey.pdf
Size:
476.96 KB
Format:
Adobe Portable Document Format
Description:
License bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.88 KB
Format:
Item-specific license agreed upon to submission
Description: