arrow
Return

Runtime Countermeasures for Code Injection Attacks Against C and C++ Programs

delete2012-06-14
delete33
delete
OA
AI
Y
Yves Younan *
W
Wouter Joosen
F
Frank Piessens
DOI:10.1145/2187671.2187679delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
The lack of memory safety in C/C++ often leads to vulnerabilities. Code injection attacks exploit these vulnerabilities to gain control over the execution flow of applications. These attacks have played a key role in many major security incidents. Consequently, a huge body of research on countermeasures exists. We provide a comprehensive and structured survey of vulnerabilities and countermeasures that operate at runtime. These countermeasures make different trade-offs in terms of performance, effectivity, compatibility, etc., making it hard to evaluate and compare countermeasures in a given context. We define a classification and evaluation framework on the basis of which countermeasures can be assessed.
Keywords:
Security
Code injection
countermeasures
C
C plus
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

ACM Computing Surveys cover
ACM Computing Surveys
IF:
28
Papers:
2.4K
Citations:
3.5W

Organization

K
KU Leuven
Scholars:
5.7W
Papers: 5.2W
Citations: 8.1W