Detailed Information

Cited 0 time in webofscience Cited 0 time in scopus
Metadata Downloads

버퍼 오버플로우 공격 방지를 위한 취약 함수 변환기 구현Implementation of a function translator converting vulnerable functions for preventing buffer overflow attacks

Other Titles
Implementation of a function translator converting vulnerable functions for preventing buffer overflow attacks
Authors
김익수조용윤
Issue Date
Mar-2010
Publisher
(사)디지털산업정보학회
Keywords
Buffer Overflow; Vulnerable Function; Secure Programming; Security
Citation
(사)디지털산업정보학회 논문지, v.6, no.1, pp.105 - 114
Journal Title
(사)디지털산업정보학회 논문지
Volume
6
Number
1
Start Page
105
End Page
114
URI
http://scholarworks.bwise.kr/ssu/handle/2018.sw.ssu/14873
ISSN
1738-6667
Abstract
C language is frequently used to develop application and system programs. However,programs using C language are vulnerable to buffer overflow attacks. To prevent buffer overflow, programmers have to check boundaries of buffer areas when they develop programs. But vulnerable programs frequently result from improper programming habits and mistakes of programmers. Existing researches for preventing buffer overflow attacks only inform programmers of warnings about vulnerabilities and not remove vulnerabilities in advance so that the programs still include vulnerabilities. In this paper,we propose a function translator which prevents creating programs including buffer overflow vulnerabilities. To prevent creating binary from source including vulnerabilities,the proposed translator searches vulnerable functions which cause buffer overflows, and converts them into secure functions. Accordingly, developing vulnerable programs by programmers which lack in knowledge on security can be prevented.
Files in This Item
Go to Link
Appears in
Collections
College of Information Technology > School of Computer Science and Engineering > 1. Journal Articles

qrcode

Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher Kim, Ik su photo

Kim, Ik su
College of Information Technology (School of Computer Science and Engineering)
Read more

Altmetrics

Total Views & Downloads

BROWSE