摘要
缓冲区溢出攻击是目前最有效的系统攻击手段,它大体上可以分为两种类型,一种是基于堆栈的,一种是基于堆和BSS的.分析了前一种攻击的工作原理,在此基础上,提出了相应的防范措施,如采用安全函数,加入校验代码等.
So far, buffer overrun is the most dangerous attack. It has two main flows, the stack-based attack and the BSS-based attack. This article mainly concerns the stack-based one. The author analyzed the theory of attack—What is it? Why can it work? At last, the author gave some suggestions to avoid this kind of attack.
出处
《广州大学学报(自然科学版)》
CAS
2004年第4期329-332,共4页
Journal of Guangzhou University:Natural Science Edition