A Search-based Firmware Code Analysis Method for IoT Devices

被引:0
|
作者
Xu, Yifei [1 ]
Liu, Ting [2 ]
Liu, Pengfei [2 ]
Sun, Hong [2 ]
机构
[1] Xi An Jiao Tong Univ, Sch Software Engn, Xian, Shaanxi, Peoples R China
[2] Xi An Jiao Tong Univ, Sch Elect & Informat Engn, Xian, Shaanxi, Peoples R China
基金
中国国家自然科学基金; 国家重点研发计划;
关键词
Firmware Code Analysis; Security; Internet-of-Things;
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
The firmware vulnerability is one of the most serious threats for Internet-of-Things (IoT) security. However, it is hard to investigate firmware, due to the lack of source code and the complicated structure. In this paper, a search-based firmware code analysis method is proposed to associate the program functionalities with the assembly code. In the experiment, the firmware of Siemens PAC4200 power meter is selected to demonstrate how to search the assembly code of device information interface. Moreover, one vulnerability of this interface is shown, which would be exploited to manipulate the data of device.
引用
收藏
页数:2
相关论文
共 50 条
  • [21] Code Naturalness to Assist Search Space Exploration in Search-Based Program Repair Methods
    Dantas, Altino
    de Souza, Eduardo F.
    Souza, Jerffeson
    Camilo-Junior, Celso G.
    SEARCH-BASED SOFTWARE ENGINEERING, SSBSE 2019, 2019, 11664 : 164 - 170
  • [22] Exploring Firmware-Based Anti-forensics in IoT Devices: Techniques and Implications
    Mariya Shafat Kirmani
    M. Tariq Banday
    SN Computer Science, 5 (8)
  • [23] Physical Devices-Agnostic Hybrid Fuzzing of IoT Firmware
    Situ, Lingyun
    Zhang, Chi
    Guan, Le
    Zuo, Zhiqiang
    Wang, Linzhang
    Li, Xuandong
    Liu, Peng
    Shi, Jin
    IEEE INTERNET OF THINGS JOURNAL, 2023, 10 (23) : 20718 - 20734
  • [24] An Over-the-Blockchain Firmware Update Framework for IoT Devices
    Yohan, Alexander
    Lo, Nai-Wei
    2018 IEEE CONFERENCE ON DEPENDABLE AND SECURE COMPUTING (DSC), 2018, : 22 - 29
  • [25] A local search-based method for sphere packing problems
    Hifi, Mhand
    Yousef, Labib
    EUROPEAN JOURNAL OF OPERATIONAL RESEARCH, 2019, 274 (02) : 482 - 500
  • [26] Search-based optimization
    Wheeler, WC
    CLADISTICS-THE INTERNATIONAL JOURNAL OF THE WILLI HENNIG SOCIETY, 2003, 19 (04): : 348 - 355
  • [27] Over-the-air firmware update for IoT devices on the wild
    Berriel de Sousa, Maria Julia
    Gomez Gonzalez, Luis Fernando
    Ferdinando, Erick Mascagni
    Borin, Juliana Freitag
    INTERNET OF THINGS, 2022, 19
  • [28] Improving Source-Code Representations to Enhance Search-based Software Repair
    Reiter, Pemma
    Espinoza, Antonio M.
    Doupe, Adam
    Wang, Ruoyu
    Weimer, Westley
    Arizona, Stephanie Forrest
    PROCEEDINGS OF THE 2022 GENETIC AND EVOLUTIONARY COMPUTATION CONFERENCE (GECCO'22), 2022, : 1336 - 1344
  • [29] A Search-Based Testing Framework for Deep Neural Networks of Source Code Embedding
    Pour, Maryam Vahdat
    Li, Zhuo
    Ma, Lei
    Hemmati, Hadi
    2021 14TH IEEE CONFERENCE ON SOFTWARE TESTING, VERIFICATION AND VALIDATION (ICST 2021), 2021, : 36 - 46
  • [30] WhoReview: A multi-objective search-based approach for code reviewers recommendation in modern code review
    Chouchen, Moataz
    Ouni, Ali
    Mkaouer, Mohamed Wiem
    Kula, Raula Gaikovina
    Inoue, Katsuro
    APPLIED SOFT COMPUTING, 2021, 100