摘要
随着Internet的普及,信息安全问题日趋显著,近年来发生的一系列安全事件让每个连接到Internet的用户感到不安,特别是远程缓冲区溢出攻击更是防不胜防。缓冲区溢出攻击是一种常见的攻击方式,对缓冲区溢出漏洞进行恶意利用,会产生极具破坏性的蠕虫。本文对各种缓冲区溢出漏洞和利用技术进行了深入研究,建立了缓冲区溢出攻击通用模型OS-JUMP(Overflow Shellcode Jump),并利用该模型,提出了在模型的各个阶段阻截缓冲区溢出攻击的防范措施。
With the popularization of Internet,information security is becoming increasingly apparent.A series of security events during the resent years are enough to make people connect to Internet uneasy,especially the remote-distance buffer overflow.Buffer overflow is a well known attack.Internet Worms will generate enormous lose via buffer overflow attack.This paper first deeply analyzed various attack technologies of buffer overflow,then set up a general attack model OSJUMP(Overflow Shellcode Jump),at last,it pr...
出处
《微计算机信息》
北大核心
2008年第3期48-50,共3页
Control & Automation
关键词
缓冲区溢出
检测
模型
Buffer overflow
detection
model