Bouncer: securing software by blocking bad input
Explore this paper's citation graph
Summary
Bouncer introduces a new form of program slicing that uses a combination of static and dynamic analysis to remove unnecessary conditions from the filter and symbolic summaries for common library functions that characterize their behavior succinctly as a set of conditions on the input.
- Type
- article
- Published
- 2007-10-14
- Cited by
- 34
- References
- 43
- OpenAlex
- https://openalex.org/W2145385214
- Semantic Scholar
- https://api.semanticscholar.org/CorpusID:53223903
Keywords
Exploit, Computer science, Overhead (engineering), Symbolic execution, False positive paradox
References
- Non-Control-Data Attacks Are Realistic Threats
- Compilers: Principles, Techniques, and Tools
- The formal semantics of programming languages - an introduction
- Enhancing Server Availability and Security Through Failure-Oblivious Computing
- A Practical Dynamic Buffer Overflow Detector
- Side Effects Are Not Sufficient to Authenticate Software
- Automated Worm Fingerprinting
- StackGuard: Automatic Adaptive Detection and Prevention of Buffer-Overflow Attacks
- CUTE: a concolic unit testing engine for C
- Cost effective dynamic program slicing
- Inside the Slammer Worm
- Honeycomb
- Guarded commands, nondeterminacy and formal derivation of programs
- DART: directed automated random testing
- On deriving unknown vulnerabilities from zero-day polymorphic and metamorphic worm exploits
- Towards automatic generation of vulnerability-based signatures
- A survey of rollback-recovery protocols in message-passing systems
- Symbolic execution and program testing
- Dynamic Taint Analysis for Automatic Detection, Analysis, and SignatureGeneration of Exploits on Commodity Software
- Vigilante: End-to-end containment of Internet worm epidemics
Cited by
- Efficient Directionless Weakest Preconditions (CMU-CyLab-10-002)
- MetaSymploit: Day-One Defense against Script-based Attacks with Security-Enhanced Symbolic Analysis
- Towards Generating High Coverage Vulnerability-Based Signatures with Protocol-Level Constraint-Guided Exploration
- Using information flow tracking to protect legacy binaries
- Improving failure diagnosis via better design and analysis of log messages
- KLEE: unassisted and automatic generation of high-coverage tests for complex systems programs
- The Hidden Difficulties of Watching and Rebuilding Networks
- Crashmaker: an improved binary concolic testing tool for vulnerability detection
- First-aid: surviving and preventing memory management bugs during production runs
- Automatic exploit generation
- Vigilante: End-to-end containment of Internet worm epidemics
- Better bug reporting with better privacy
- Extracting Models of Security-Sensitive Operations using String-Enhanced White-Box Exploration on Binaries
- Grammar and model extraction for security applications using dynamic program binary analysis
- S2E: a platform for in-vivo multi-path analysis of software systems
- Sound and Precise Analysis of Multithreaded Programs through Schedule Specialization and Execution Filters
- Stable Multithreading: A New Paradigm for Reliable and Secure Threads
- Generating Vulnerability Signatures for String Manipulating Programs Using Automata-Based Forward and Backward Symbolic Analyses
- Game-theoretic intrusion response and recovery
- Maximal specification synthesis
Related papers
- Constructing a Knowledge Base for Software Security Detection Based on Similar Call Graph
- An Approach to Reachability Determination for Static Analysis Defects with the Help of Dynamic Symbolic Execution
- Malware Similarity Identification Using Call Graph Based System Call Subsequence Features
- e-NeXSh: achieving an effectively non-executable stack and heap via system-call policing
- Improving the Precision of Call Graph Construction for Webassembly with Symbolic Execution and Slicing
- Keshmesh: Bringing Advanced Static Analysis to Concurrency Bug Pattern Detectors
- BotProfiler: Detecting Malware-Infected Hosts by Profiling Variability of Malicious Infrastructure
- Bug Finder Evaluation Guided Program Analysis Improvement
- Snugglebug
- An approach of reachability determination for static analysis defects with help of dynamic symbolic execution