Summary of ObfSec: Measuring the Security of Obfuscations from a Testing Perspective


연구 분야: Analysis



학회: IFIP International Conference on Testing Software and Systems


초록

Code obfuscation is a widely used technique to protect the intellectual property of software by altering its structure to make it harder to understand or reverse-engineer. However, these modifications to the control flow and data flow can inadvertently compromise the security of the software. With a broad range of obfuscation methods available, each altering the program’s structure differently, these changes can introduce new bugs or exacerbate existing ones, potentially increasing the risk of vulnerabilities. In this context, we introduce ObfSec (Obfuscation Security), a novel approach to evaluate the security implications of software obfuscation. ObfSec systematically detects pre-existing errors in software and analyzes how obfuscation can alter the nature of these errors, particularly focusing on transformations that might convert benign bugs into exploitable vulnerabilities. Our study, conducted on a corpus of approximately 70,000 programs subjected to various obfuscation techniques, demonstrates that obfuscation can indeed degrade the security of software.


Author Profile
Héctor D. Menéndez

Department of Informatics King’s College London London UK

정보 없음
Author Profile
Guillermo Suárez-Tangil

IMDEA Networks Institute Madrid Spain

Spain

📄 논문 정보

발행 연도 2025년
인용수 0
출판 국가 Spain
사이트 Springer
좋아요 수 0

연관 논문 목록 (331건)