arrow
返回

Program Characterization Using Runtime Values and Its Application to Software Plagiarism Detection

delete2015-09-01
delete35
PRE
AI
Y
Yoon‐Chan Jhi
X
Xiaoqi Jia *
X
Xinran Wang
S
Sencun Zhu
P
Peng Liu
D
Dinghao Wu
DOI:10.1109/TSE.2015.2418777delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Illegal code reuse has become a serious threat to the software community. Identifying similar or identical code fragments becomes much more challenging in code theft cases where plagiarizers can use various automated code transformation or obfuscation techniques to hide stolen code from being detected. Previous works in this field are largely limited in that (i) most of them cannot handle advanced obfuscation techniques, and (ii) the methods based on source code analysis are not practical since the source code of suspicious programs typically cannot be obtained until strong evidences have been collected. Based on the observation that some critical runtime values of a program are hard to be replaced or eliminated by semantics-preserving transformation techniques, we introduce a novel approach to dynamic characterization of executable programs. Leveraging such invariant values, our technique is resilient to various control and data obfuscation techniques. We show how the values can be extracted and refined to expose the critical values and how we can apply this runtime property to help solve problems in software plagiarism detection. We have implemented a prototype with a dynamic taint analyzer atop a generic processor emulator. Our value-based plagiarism detection method (VaPD) uses the longest common subsequence based similarity measuring algorithms to check whether two code fragments belong to the same lineage. We evaluate our proposed method through a set of real-world automated obfuscators. Our experimental results show that the value-based method successfully discriminates 34 plagiarisms obfuscated by SandMark, plagiarisms heavily obfuscated by KlassMaster, programs obfuscated by Thicket, and executables obfuscated by Loco/Diablo.
Keyword:
Software plagiarism detection
dynamic code identification
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

IEEE Transactions on Software Engineering 封面图
IEEE Transactions on Software Engineering
IF:
5.6
论文数:
2.8K
被引数:
1.1W

机构

P
pennsylvania state university - university park
学者数:
1.3W
论文数: 1.0W
被引数: 24
I
institute of information engineering, cas
学者数:
474
论文数: 466
被引数: 0
P
Pennsylvania State University
学者数:
3.0W
论文数: 2.6W
被引数: 7.2W
P
pennsylvania commonwealth system of higher education (pcshe)
学者数:
12.9W
论文数: 11.7W
被引数: 177
C
chinese academy of sciences
学者数:
56.7W
论文数: 44.9W
被引数: 704
学者 查看更多机构