Protocol format extraction at semantic level
Present methods for protocol format extraction analyze the execution traces of programs at syntax level,which leads to redundancy and conflict in the results of fie identification.In order to improve the accuracy of field identifica-tion,a semantic level method was proposed for protocol format extra...
Saved in:
Main Authors: | , , , |
---|---|
Format: | Article |
Language: | zho |
Published: |
Editorial Department of Journal on Communications
2013-10-01
|
Series: | Tongxin xuebao |
Subjects: | |
Online Access: | http://www.joconline.com.cn/zh/article/doi/10.3969/j.issn.1000-436x.2013.10.019/ |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
_version_ | 1841539792532144128 |
---|---|
author | Zheng HONG Zhen-ji ZHOU Li-fa WU Fan PAN |
author_facet | Zheng HONG Zhen-ji ZHOU Li-fa WU Fan PAN |
author_sort | Zheng HONG |
collection | DOAJ |
description | Present methods for protocol format extraction analyze the execution traces of programs at syntax level,which leads to redundancy and conflict in the results of fie identification.In order to improve the accuracy of field identifica-tion,a semantic level method was proposed for protocol format extraction.The method firstly translated the binary in-structions into equivalent intermediate language,and tracked the parsing process of field semantics through fine-grained dynamic taint analysis.Further,it extracted otocol format using semantic level policies of field identifica-tion,based on the semantic indivisibility of fields.Experimental results show that the proposed method can achieve high identification accuracy with low complexity. |
format | Article |
id | doaj-art-26abe6c767f24a4e98c9e0c140957d0c |
institution | Kabale University |
issn | 1000-436X |
language | zho |
publishDate | 2013-10-01 |
publisher | Editorial Department of Journal on Communications |
record_format | Article |
series | Tongxin xuebao |
spelling | doaj-art-26abe6c767f24a4e98c9e0c140957d0c2025-01-14T06:41:32ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2013-10-013416217359675975Protocol format extraction at semantic levelZheng HONGZhen-ji ZHOULi-fa WUFan PANPresent methods for protocol format extraction analyze the execution traces of programs at syntax level,which leads to redundancy and conflict in the results of fie identification.In order to improve the accuracy of field identifica-tion,a semantic level method was proposed for protocol format extraction.The method firstly translated the binary in-structions into equivalent intermediate language,and tracked the parsing process of field semantics through fine-grained dynamic taint analysis.Further,it extracted otocol format using semantic level policies of field identifica-tion,based on the semantic indivisibility of fields.Experimental results show that the proposed method can achieve high identification accuracy with low complexity.http://www.joconline.com.cn/zh/article/doi/10.3969/j.issn.1000-436x.2013.10.019/protocol reverse engineeringprotocol format extractiondynamic taint analysisintermediate language |
spellingShingle | Zheng HONG Zhen-ji ZHOU Li-fa WU Fan PAN Protocol format extraction at semantic level Tongxin xuebao protocol reverse engineering protocol format extraction dynamic taint analysis intermediate language |
title | Protocol format extraction at semantic level |
title_full | Protocol format extraction at semantic level |
title_fullStr | Protocol format extraction at semantic level |
title_full_unstemmed | Protocol format extraction at semantic level |
title_short | Protocol format extraction at semantic level |
title_sort | protocol format extraction at semantic level |
topic | protocol reverse engineering protocol format extraction dynamic taint analysis intermediate language |
url | http://www.joconline.com.cn/zh/article/doi/10.3969/j.issn.1000-436x.2013.10.019/ |
work_keys_str_mv | AT zhenghong protocolformatextractionatsemanticlevel AT zhenjizhou protocolformatextractionatsemanticlevel AT lifawu protocolformatextractionatsemanticlevel AT fanpan protocolformatextractionatsemanticlevel |