APIASO: A Novel API Call Obfuscation Technique Based on Address Space Obscurity

نویسندگان

چکیده

API calls are programming interfaces used by applications. When it is difficult for an analyst to perform a direct reverse analysis of program, the provides important basis analyzing behavior and functionality program. address spaces essential analysts identify call information, therefore obfuscation as protection strategy prevent from obtaining information spaces. avoids aims create more complex calling process. Unfortunately, current methods not effective in preventing usable space. To solve this issue, paper, we propose model based on space obscurity. The key functions within encrypted moved user code execution. This breaks relationship between its space, making impossible obtain about known In our experiments, developed archetypical compiler-level system automate input source into obfuscated file. results show that approach can thwart existing deobfuscation techniques highly resistant various open-source dynamic platforms. Compared other techniques, scheme improves obscurity than two times, detection rate such Scylla, etc. zero, increase overhead 20%. above APIASO has better effect practicability.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A Video Scrambling Technique Based On Space

1) 2) 3) The transmitted signal is analog. The transmission rate is very high. The allowabie bandwidth is limited, and can be accommodated only when the grey levels of adjacent pixels are highly correlated. Wyner [Wl,W2] suggested a method of scrambling a discrete time analog sequence by using a large family of linear orthogonal invertible transformations which he described, that result in a ne...

متن کامل

A Novel Image Denoising Method Based on Incoherent Dictionary Learning and Domain Adaptation Technique

In this paper, a new method for image denoising based on incoherent dictionary learning and domain transfer technique is proposed. The idea of using sparse representation concept is one of the most interesting areas for researchers. The goal of sparse coding is to approximately model the input data as a weighted linear combination of a small number of basis vectors. Two characteristics should b...

متن کامل

A Novel Technique for Steganography Method Based on Improved Genetic Algorithm Optimization in Spatial Domain

This paper devotes itself to the study of secret message delivery using cover image and introduces a novel steganographic technique based on genetic algorithm to find a near-optimum structure for the pair-wise least-significant-bit (LSB) matching scheme. A survey of the related literatures shows that the LSB matching method developed by Mielikainen, employs a binary function to reduce the numbe...

متن کامل

Fully Differential Current Buffers Based on a Novel Common Mode Separation Technique

In this paper a novel common mode separation technique for implementing fully differential current buffers is introduced.  Using the proposed method two high CMRR (Common Mode Rejection Ratio) and high PSRR (Power Supply Rejection Ratio) fully differential current buffers in BIPOLAR and CMOS technologies are implemented.   Simulation results by HSPICE using 0.18μm TSMC process for CMOS based st...

متن کامل

A Static Birthmark of Binary Executables Based on API Call Structure

A software birthmark is a unique characteristic of a program that can be used as a software theft detection. In this paper we suggest and empirically evaluate a static birthmark of binary executables based on API call structure. The program properties employed in this birthmark are functions and standard API calls when the functions are executed. The API calls from a function includes the API c...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

ژورنال

عنوان ژورنال: Applied sciences

سال: 2023

ISSN: ['2076-3417']

DOI: https://doi.org/10.3390/app13169056