文档介绍:第 27 卷第 5 .5
2010 年 5 月 Vol No2010
Application Research puters May
Vista 的抵御缓冲区溢出攻击技术研究倡
魏立峰, 江荣, 赵栋
(国防科学技术大学计算机学院, 长沙 410073)
摘要: 缓冲区溢出攻击是一种在互联网时代被广泛利用并危害严重的主要攻击方式。分析了缓冲区溢出攻
击的基本原理,总结了缓冲区溢出攻击的关键步骤,并研究分析了的抵御缓冲区溢出攻击的四种
Windows Vista
关键技术,包括地址空间配置随机化( )、数据执行保护( )、栈保护和安全( 唱
ASLR DEP GS structured exception han
, )等技术;最后对抵御缓冲区溢出的整体效果进行了分析,指出了仍然不能完全
dling SEH Windows Vista Vista
抵御缓冲区溢出攻击。
关键词: 缓冲区溢出; ; 地址空间配置随机化; 数据执行保护; 栈保护; 安全
Vista GS SEH
中图分类号: 301 文献标志码: 文章编号: 1001唱3695(2010)05唱1853唱03
TP A
: /. .
doi j issn
Research for resisting buffer overflow attack technologies of Vista
桘, ,
WEI Li feng JIANG Rong ZHAO Dong
(School puter Science, National University of Defense Technology, Changsha 410073, China)
Abstract: , 唱
. Buffer overflow attack is a main attack method in which has been widely used and could, cause great dam
age Analyzed the principle of buffer overflow attacks and summed up the key steps of buffer, overflow attacks, researched, and
analyzed the, four key technologies for resisting buffer( overflow). attack of the Windows Vista including ASLR DEP GS stack
protection and, safe structured exception handling’ SafeSEH finally analyzed the total effect. of resisting buffer overflow of
Windows Vista and pointed out that Vista couldn t resist the buffer overflow attack absolu