Protocol format extraction at semantic level

Present methods for protocol format extraction analyze the execution traces of programs at syntax level,which leads to redundancy and conflict in the results of fie identification.In order to improve the accuracy of field identifica-tion,a semantic level method was proposed for protocol format extra...

Full description

Saved in:
Bibliographic Details
Main Authors: Zheng HONG, Zhen-ji ZHOU, Li-fa WU, Fan PAN
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2013-10-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/doi/10.3969/j.issn.1000-436x.2013.10.019/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841539792532144128
author Zheng HONG
Zhen-ji ZHOU
Li-fa WU
Fan PAN
author_facet Zheng HONG
Zhen-ji ZHOU
Li-fa WU
Fan PAN
author_sort Zheng HONG
collection DOAJ
description Present methods for protocol format extraction analyze the execution traces of programs at syntax level,which leads to redundancy and conflict in the results of fie identification.In order to improve the accuracy of field identifica-tion,a semantic level method was proposed for protocol format extraction.The method firstly translated the binary in-structions into equivalent intermediate language,and tracked the parsing process of field semantics through fine-grained dynamic taint analysis.Further,it extracted otocol format using semantic level policies of field identifica-tion,based on the semantic indivisibility of fields.Experimental results show that the proposed method can achieve high identification accuracy with low complexity.
format Article
id doaj-art-26abe6c767f24a4e98c9e0c140957d0c
institution Kabale University
issn 1000-436X
language zho
publishDate 2013-10-01
publisher Editorial Department of Journal on Communications
record_format Article
series Tongxin xuebao
spelling doaj-art-26abe6c767f24a4e98c9e0c140957d0c2025-01-14T06:41:32ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2013-10-013416217359675975Protocol format extraction at semantic levelZheng HONGZhen-ji ZHOULi-fa WUFan PANPresent methods for protocol format extraction analyze the execution traces of programs at syntax level,which leads to redundancy and conflict in the results of fie identification.In order to improve the accuracy of field identifica-tion,a semantic level method was proposed for protocol format extraction.The method firstly translated the binary in-structions into equivalent intermediate language,and tracked the parsing process of field semantics through fine-grained dynamic taint analysis.Further,it extracted otocol format using semantic level policies of field identifica-tion,based on the semantic indivisibility of fields.Experimental results show that the proposed method can achieve high identification accuracy with low complexity.http://www.joconline.com.cn/zh/article/doi/10.3969/j.issn.1000-436x.2013.10.019/protocol reverse engineeringprotocol format extractiondynamic taint analysisintermediate language
spellingShingle Zheng HONG
Zhen-ji ZHOU
Li-fa WU
Fan PAN
Protocol format extraction at semantic level
Tongxin xuebao
protocol reverse engineering
protocol format extraction
dynamic taint analysis
intermediate language
title Protocol format extraction at semantic level
title_full Protocol format extraction at semantic level
title_fullStr Protocol format extraction at semantic level
title_full_unstemmed Protocol format extraction at semantic level
title_short Protocol format extraction at semantic level
title_sort protocol format extraction at semantic level
topic protocol reverse engineering
protocol format extraction
dynamic taint analysis
intermediate language
url http://www.joconline.com.cn/zh/article/doi/10.3969/j.issn.1000-436x.2013.10.019/
work_keys_str_mv AT zhenghong protocolformatextractionatsemanticlevel
AT zhenjizhou protocolformatextractionatsemanticlevel
AT lifawu protocolformatextractionatsemanticlevel
AT fanpan protocolformatextractionatsemanticlevel