Affiliation:
1. University of Maryland, College Park
2. Columbia University
Abstract
This article makes three contributions regarding reverse-engineering of executables. First, techniques are presented for recovering a precise and correct stack-memory model in executables while addressing executable-specific challenges such as indirect control transfers. Next, the enhanced memory model is employed to define a novel symbolic analysis framework for executables that can perform the same types of program analyses as source-level tools. Third, a demand-driven framework is presented to enhance the scalability of the symbolic analysis framework. Existing symbolic analysis frameworks for executables fail to simultaneously maintain the properties of correct representation, a precise stack-memory model, and scalability. Furthermore, they ignore memory-allocated variables when defining symbolic analysis mechanisms. Our methods do not use symbolic, relocation or debug information, which are usually absent in deployed binaries. We describe our framework, highlighting the novel intellectual contributions of our approach and demonstrating its efficacy and robustness. Our techniques improve the precision of existing stack-memory models by 25%, enhance scalability of our basic symbolic analysis mechanism by 10×, and successfully uncovers five previously undiscovered information-flow vulnerabilities in several widely used programs.
Publisher
Association for Computing Machinery (ACM)
Reference69 articles.
1. A compiler-level intermediate representation based binary analysis and rewriting system
2. K. Anand K. Wazeer A. Kotha M. Smithson and R. Barua. 2013b. A symbolic analysis framework for analyzing executables. http://www.ece.umd.edu/ ∼ barua/icsm13-extended.pdf. K. Anand K. Wazeer A. Kotha M. Smithson and R. Barua. 2013b. A symbolic analysis framework for analyzing executables. http://www.ece.umd.edu/ ∼ barua/icsm13-extended.pdf.
3. Analyzing Memory Accesses in x86 Executables
Cited by
2 articles.
订阅此论文施引文献
订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献