Evaluating Dynamic Binary Instrumentation Systems for Conspicuous Features and Artifacts


연구 분야: Cryptography



학회: Digital Threats: Research and Practice (DTRAP), Volume 3, Issue 2


초록

Dynamic binary instrumentation (DBI) systems are a popular solution for prototyping heterogeneous program analyses and monitoring tools. Several works from academic and practitioner venues have questioned the transparency of DBI systems, with anti-analysis detection sequences being found already in malware and executable protectors. The present Field Note details new and established detection methods and evaluates recent versions of popular DBI systems against them. It also sets out reflections on potential remediations and alternatives available to security researchers for their daily needs. We make available a large collection of implemented detections, hoping it can help the community build better DBI runtimes and tools.


Author Profile
Daniele Cono D’Elia

Sapienza University of Rome Rome Italy

Italy
Author Profile
Lorenzo Invidia

Sapienza University of Rome Rome Italy

Italy
Author Profile
Federico Palmaro

Prisma S.r.l. Rome Italy

Italy

📄 논문 정보

발행 연도 2022년
인용수 8
출판 국가 Italy
사이트 ACM
좋아요 수 0

연관 논문 목록 (310건)