ROPGMN: Effective ROP and variants discovery using dynamic feature and graph matching network

被引:0
|
作者
Niu, Weina [1 ,2 ]
Zhang, Kexuan [1 ]
Yan, Ran [1 ]
Li, Jie [1 ]
Zhang, Yan [2 ]
Zhang, Xiaosong [1 ,2 ]
机构
[1] Univ Elect Sci & Technol China UESTC, Inst Cyber Secur, Sch Comp Sci & Engn, Chengdu 611731, Peoples R China
[2] Univ Elect Sci & Technol China, Shenzhen Inst Adv Study, Shenzhen 518110, Peoples R China
基金
美国国家科学基金会;
关键词
Return oriented programming; ROP variant attacks; Execution flow; Multiple filtering; Graph matching network; Attribution execution flow graph;
D O I
10.1016/j.future.2024.107567
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Return Oriented Programming (ROP) is one of the most challenging threats to operating systems. Traditional detection and defense techniques for ROP such as stack protection, address randomization, compiler optimization, control flow integrity, and basic block thresholds have certain limitations inaccuracy or efficiency. At the same time, they cannot effectively detect ROP variant attacks, such as COP, COOP, JOP. In this paper, we propose a novel ROP and its variants detection approach that first filters the normal execution flow according to four strategies provided and then adopts Graph Matching Network (GMN) to determine whether there is ROP or its variant attack. Moreover, we developed a prototype named ROPGMN with shared memory to solve cross-language and cross-process problems. Using real-world vulnerable programs and constructed programs with dangerous function calls, we conduct extensive experiments with 6 ROP detectors to evaluate ROPGMN. The experimental results demonstrate the effectiveness of ROPGMN in discovering ROPs and their variant attacks with low performance overhead.
引用
收藏
页数:13
相关论文
共 50 条
  • [21] Electricity Theft Detection Using Dynamic Graph Construction and Graph Attention Network
    Liao, Wenlong
    Zhu, Ruijin
    Yang, Zhe
    Liu, Kuangpu
    Zhang, Bin
    Zhu, Shuyang
    Feng, Bin
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2024, 20 (04) : 5074 - 5086
  • [22] Accurate Graph-Based Scene Segmentation Using Object Matching and Audio Feature
    Yamamoto, Makoto
    Haseyama, Miki
    ISCE: 2009 IEEE 13TH INTERNATIONAL SYMPOSIUM ON CONSUMER ELECTRONICS, VOLS 1 AND 2, 2009, : 670 - 671
  • [23] Feature point matching of affine model images using Hopfield network
    Tian, JS
    Su, JB
    ADVANCES IN NEURAL NETWORKS - ISNN 2005, PT 2, PROCEEDINGS, 2005, 3497 : 405 - 410
  • [24] Topological SLAM Using Omnidirectional Images: Merging Feature Detectors and Graph-Matching
    Romero, Anna
    Cazorla, Miguel
    ADVANCED CONCEPTS FOR INTELLIGENT VISION SYSTEMS, PT I, 2010, 6474 : 464 - 475
  • [25] StickyPillars: Robust and Efficient Feature Matching on Point Clouds using Graph Neural Networks
    Fischer, Kai
    Simon, Martin
    Oelsner, Florian
    Milz, Stefan
    Gross, Horst-Michael
    Maeder, Patrick
    2021 IEEE/CVF CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION, CVPR 2021, 2021, : 313 - 323
  • [26] Effective Streaming Evolutionary Feature Selection Using Dynamic Optimization
    Boulesnane, Abdennour
    Meshoul, Souham
    COMPUTATIONAL INTELLIGENCE AND ITS APPLICATIONS, 2018, 522 : 329 - 340
  • [27] An Effective Feature Selection Method Using Dynamic Information Criterion
    Liu, Huawen
    Li, Minshuo
    Zhao, Jianmin
    Mo, Yuchang
    ARTIFICIAL INTELLIGENCE AND COMPUTATIONAL INTELLIGENCE, PT I, 2011, 7002 : 450 - 455
  • [28] Effective Car Video Retrieval Using Feature Matching in a Mobile Video Cloud
    Lee, Kuan-Hui
    Hwang, Jenq-Neng
    Yoo, Jang-Hee
    Choi, Kyoung-Ho
    2012 SIXTH INTERNATIONAL CONFERENCE ON DISTRIBUTED SMART CAMERAS (ICDSC), 2012,
  • [29] Feature-guided dynamic graph convolutional network for wetland hyperspectral image classification
    Li, Zhongwei
    Meng, Qiao
    Guo, Fangming
    Wang, Leiquan
    Huang, Wenhao
    Hu, Yabin
    Liang, Jian
    INTERNATIONAL JOURNAL OF APPLIED EARTH OBSERVATION AND GEOINFORMATION, 2023, 123
  • [30] Occluded person re-identification based on embedded graph matching network for contrastive feature relation
    Shuren Zhou
    Mengsi Zhang
    Pattern Analysis and Applications, 2023, 26 : 487 - 503