Detailed Information

Cited 0 time in webofscience Cited 0 time in scopus
Metadata Downloads

IBV-CFI: Efficient fine-grained control-flow integrity preserving CFG precision

Full metadata record
DC Field Value Language
dc.contributor.authorJang, Hyerean-
dc.contributor.authorPark, Moon Chan-
dc.contributor.authorLee, Dong Hoon-
dc.date.accessioned2021-08-30T20:31:17Z-
dc.date.available2021-08-30T20:31:17Z-
dc.date.created2021-06-18-
dc.date.issued2020-07-
dc.identifier.issn0167-4048-
dc.identifier.urihttps://scholar.korea.ac.kr/handle/2021.sw.korea/54924-
dc.description.abstractControl-flow integrity (CFI) is a software security solution that prevents software attacks such as controlflow hijacking by restricting the indirect control-flow transfers (ICT) to a pre-computed control-flow graph (CFG). Since the validity of ICTs are determined based on CFG on the CFI mechanism, CFG precision is an important factor in determining CFI security level. However, checking the validity of ICTs based on a precise CFG can incur significant runtime overhead. For this reason, many existing CFI schemes have used a runtime check mechanism that compromises the precision of the CFG. In this paper, we present an Index-based Bit Vector Control-Flow Integrity scheme (IBV-CFI), which performs an efficient runtime check while preserving CFG precision. IBV-CFI generates independent bit vectors for all ICTs and stores a valid target set for each ICT in the bit vector. Independent bit vectors accurately reflect the CFG, so they do not compromise the precision of CFG. In addition, it is possible to determine the validity of the target of the indirect branch through a simple bit value comparison, which enables an efficient runtime check. We implemented a prototype model, IBV-CFI, and performed performance measurements using the SPEC CPU 2017 benchmarks and three real-world applications. The results show that IBV-CFI introduces approximately 1.42% performance overhead. (C) 2020 Elsevier Ltd. All rights reserved.-
dc.languageEnglish-
dc.language.isoen-
dc.publisherELSEVIER ADVANCED TECHNOLOGY-
dc.titleIBV-CFI: Efficient fine-grained control-flow integrity preserving CFG precision-
dc.typeArticle-
dc.contributor.affiliatedAuthorLee, Dong Hoon-
dc.identifier.doi10.1016/j.cose.2020.101828-
dc.identifier.scopusid2-s2.0-85084070566-
dc.identifier.wosid000536764600014-
dc.identifier.bibliographicCitationCOMPUTERS & SECURITY, v.94-
dc.relation.isPartOfCOMPUTERS & SECURITY-
dc.citation.titleCOMPUTERS & SECURITY-
dc.citation.volume94-
dc.type.rimsART-
dc.type.docTypeArticle-
dc.description.journalClass1-
dc.description.journalRegisteredClassscie-
dc.description.journalRegisteredClassscopus-
dc.relation.journalResearchAreaComputer Science-
dc.relation.journalWebOfScienceCategoryComputer Science, Information Systems-
dc.subject.keywordAuthorControl-flow integrity-
dc.subject.keywordAuthorControl-flow hijacking-
dc.subject.keywordAuthorSoftware security-
dc.subject.keywordAuthorSecurity-
dc.subject.keywordAuthorComputer architecture-
Files in This Item
There are no files associated with this item.
Appears in
Collections
School of Cyber Security > Department of Information Security > 1. Journal Articles

qrcode

Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher Lee, Dong Hoon photo

Lee, Dong Hoon
정보보호학과
Read more

Altmetrics

Total Views & Downloads

BROWSE