Detect Windows Code Injection by Cross-validating Stack and VAD Information
Windows 32/64-bit code injection attacks are a common attack technique by malware. In the field of memory forensics, the existing code injection attack detection technologies cannot handle dynamic content in terms of verification integrity, and cannot be compatible with different versions of Windows...
Saved in:
| Main Authors: | ZHAI Jiqiang, HAN Xu, WANG Jiaqian, SUN Haixu, YANG Hailu |
|---|---|
| Format: | Article |
| Language: | zho |
| Published: |
Harbin University of Science and Technology Publications
2024-04-01
|
| Series: | Journal of Harbin University of Science and Technology |
| Subjects: | |
| Online Access: | https://hlgxb.hrbust.edu.cn/#/digest?ArticleID=2311 |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
-
Stack Forensics Based on Meta Data and Instruction Flow of 64-bit Windows
by: ZHAI Ji-qiang, et al.
Published: (2021-10-01) -
The Ventricular Assist Device team in the management of patients treated with long-term Mechanical Circulatory Support
by: Simone Amato, et al.
Published: (2024-09-01) -
Enhancing the Capacitive Memory Window of HZO FeCap Through Nanolaminate Stack Design
by: Mostafa Habibi, et al.
Published: (2025-06-01) -
Hybrid Window Decoding for Joint Source Channel Anytime Coding System
by: Li Deng, et al.
Published: (2024-11-01) -
LIFO-STACK SIZE DETERMINATION FOR GROWING OF THE IMAGE REGIONS
by: V. Yu. Tsviatkou
Published: (2020-03-01)