Software protection aims at protecting the integrity of software applications deployed on un-trusted hosts and being subject to illegal analysis. Within an un-trusted environment a possibly malicious user has complete access to system resources and tools in order to analyze and tamper with the application code. To address this research problem, we propose a novel binary obfuscation approach based on the deployment of an incomplete application whose code arrives from a trusted network entity as a flow of mobile code blocks which are arranged in memory with a different customized memory layout. This paper presents our approach to contrast reverse engineering by defeating static and dynamic analysis, and discusses its effectiveness.

Exploiting code mobility for dynamic binary obfuscation / Falcarin, Paolo; DI CARLO, Stefano; Cabutto, Alessandro; Garazzino, Nicola; Barberis, Davide. - STAMPA. - (2011), pp. 114-120. (Intervento presentato al convegno IEEE World Congress on Internet Security (WorldCIS) tenutosi a London, UK nel 21-23 Feb. 2011) [10.1109/WorldCIS17046.2011.5749894].

Exploiting code mobility for dynamic binary obfuscation

FALCARIN, PAOLO;DI CARLO, STEFANO;CABUTTO, ALESSANDRO;GARAZZINO, NICOLA;BARBERIS, DAVIDE
2011

Abstract

Software protection aims at protecting the integrity of software applications deployed on un-trusted hosts and being subject to illegal analysis. Within an un-trusted environment a possibly malicious user has complete access to system resources and tools in order to analyze and tamper with the application code. To address this research problem, we propose a novel binary obfuscation approach based on the deployment of an incomplete application whose code arrives from a trusted network entity as a flow of mobile code blocks which are arranged in memory with a different customized memory layout. This paper presents our approach to contrast reverse engineering by defeating static and dynamic analysis, and discusses its effectiveness.
2011
9781424488797
File in questo prodotto:
File Dimensione Formato  
2011-WorldCIS-Mobility.pdf

non disponibili

Tipologia: 2a Post-print versione editoriale / Version of Record
Licenza: Non Pubblico - Accesso privato/ristretto
Dimensione 110.24 kB
Formato Adobe PDF
110.24 kB Adobe PDF   Visualizza/Apri   Richiedi una copia
2011-WorldCIS-Mobility-AuthorVersion.pdf

accesso aperto

Descrizione: Manuscript author version
Tipologia: 2. Post-print / Author's Accepted Manuscript
Licenza: PUBBLICO - Tutti i diritti riservati
Dimensione 7.37 MB
Formato Adobe PDF
7.37 MB Adobe PDF Visualizza/Apri
Pubblicazioni consigliate

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11583/2424125