Pubblicazioni

Semantic-based Code Obfuscation by Abstract Interpretation  (2009)

Autori:
DALLA PREDA, Mila; Giacobazzi, Roberto
Titolo:
Semantic-based Code Obfuscation by Abstract Interpretation
Anno:
2009
Tipologia prodotto:
Articolo in Rivista
Tipologia ANVUR:
Articolo su rivista
Lingua:
Inglese
Formato:
A Stampa
Referee:
Nome rivista:
JOURNAL OF COMPUTER SECURITY
ISSN Rivista:
0926-227X
N° Volume:
17
Numero o Fascicolo:
6
Intervallo pagine:
855-908
Parole chiave:
Code obfuscation; abstract interpretation; program semantics; static program analysis
Breve descrizione dei contenuti:
In recent years code obfuscation has attracted research interest as a promising technique for protecting secret properties of programs. The basic idea of code obfuscation is to transform programs in order to hide their sensitive information while preserving their functionality. One of the major drawbacks of code obfuscation is the lack of a rigorous theoretical framework that makes it difficult to formally analyze and certify the effectiveness of obfuscating techniques. We face this problem by providing a formal framework for code obfuscation based on abstract interpretation and program semantics. In particular, we show that what is hidden and what is preserved by an obfuscating transformation can be expressed as abstract interpretations of program semantics. Being able to specify what is masked and what is preserved by an obfuscation allows us to understand its potency, namely the amount of obscurity that the transformation adds to programs. In the proposed framework, obfuscation and attackers are modeled as approximations of program semantics and the lattice of abstract interpretations provides a formal tool for comparing obfuscations with respect to their potency. In particular, we prove that our framework provides an adequate setting to measure not only the potency of an obfuscation but also its resilience, i.e., the difficulty of undoing the obfuscation. We consider code obfuscation by opaque predicate insertion and we show how the degree of abstraction needed to disclose different opaque predicates allows us to compare their potency and resilience.
Pagina Web:
http://iospress.metapress.com/content/d441n2341j810827/?p=2241c1b6e5984556aa9f0121d33e42fd&pi=1
Id prodotto:
56307
Handle IRIS:
11562/342463
depositato il:
2 aprile 2012
ultima modifica:
15 novembre 2022
Citazione bibliografica:
DALLA PREDA, Mila; Giacobazzi, Roberto, Semantic-based Code Obfuscation by Abstract Interpretation «JOURNAL OF COMPUTER SECURITY» , vol. 17 , n. 62009pp. 855-908

Consulta la scheda completa presente nel repository istituzionale della Ricerca di Ateneo IRIS

<<indietro

Attività

Strutture

Condividi