Title :
Protocol Reverse Engineering Based on DynamoRIO
Author :
He, Yongjun ; Shu, Hui ; Xiong, Xiaobing
Author_Institution :
Dept. of Comput. Sci., Zhengzhou Inf. Sci. & Technol. Inst., Zhengzhou, China
Abstract :
Research on Protocol Reverse Engineering is of great significance in network security applications. This paper firstly describes the existing Protocol Reverse Engineering technologies, and then detailedly analyses their advantages and disadvantages. Finally, a new approach of unknown Protocol reverse extraction based on DynamoRIO is proposed, adopting both dynamic binary analysis and dynamic taint analysis techniques to extract protocol format from the data flow information revealed by the protocol application while processing the protocol data.
Keywords :
protocols; reverse engineering; system monitoring; telecommunication security; DynamoRIO; data flow information; dynamic binary analysis; dynamic taint analysis techniques; network security applications; protocol data processing; protocol format extraction; protocol reverse engineering; protocol reverse extraction; Access protocols; Application software; Computer science; Data analysis; Data mining; Information analysis; Information science; Monitoring; Production; Reverse engineering; DynamoRIO; Protocol Reverse Engineering; Unknown Protocol reverse extraction; dynamic binary analysis; dynamic taint analysis;
Conference_Titel :
Information and Multimedia Technology, 2009. ICIMT '09. International Conference on
Conference_Location :
Jeju Island
Print_ISBN :
978-0-7695-3922-5
DOI :
10.1109/ICIMT.2009.26