Abstract

This paper presents Flow Walker, a new dynamic taint analysis framework which focuses on eliminating the bottlenecks of the existing tools. The framework proposes a multi-taint-tag assemble level taint propagation strategy. Flow Walker separates taint tracking operations from execution with an off-line structure, uses memory-mapped file to enhance IO efficiency and processes taint paths during execution playback. Based on tainted path information, this paper presents a file format cognition algorithm. According to test data, the average program execution slowdown is less than seven times as original while the speed enhancement is about 15% compared to other cognate tools on Windows, and simple file formats are correctly partitioned with all constant fields extracted. Due to its efficiency and scalability, Flow Walker can be used in further security-related researches.

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call

Disclaimer: All third-party content on this website/platform is and will remain the property of their respective owners and is provided on "as is" basis without any warranties, express or implied. Use of third-party content does not indicate any affiliation, sponsorship with or endorsement by them. Any references to third-party content is to identify the corresponding services and shall be considered fair use under The CopyrightLaw.