Buffer overflow vulnerabilities emerge and are announced frequently. Exploitation details and exploits are publicly available for interested parties. These codebased attacks allow malicious code to be executed on the vulnerable systems. This paper provides a brief introduction to buffer overflow vulnerabilities and methods of exploiting them and how the prevent these attacks using compiler tools. The tools used in this project are StackGuard from Wirex Immunix and Stack Smashing Protection aka ProPolice from IBM. A survey is made of exploits that are easily available to everyone, including the underground community. Articles on buffer overflows are reviewed, and the exploits presented are examined in terms of functionality. A platform is setup where these protections will be tested. An attempt to compile a vulnerable program is made to verify the capabilities of each compiler. Whether these compilers can detect, prevent or stop vulnerable programs from being compiled or executed
| Item Type: | Student Project |
|---|---|
| Creators: | Creators Email / ID Num. Zainon Aznan, Mohd Nor Effendy 2001189075 |
| Contributors: | Contribution Name Email / ID Num. UNSPECIFIED Othman, Abdul Hamid UNSPECIFIED |
| Subjects: | Q Science > Q Science (General) Q Science > QA Mathematics |
| Divisions: | Universiti Teknologi MARA, Shah Alam > Faculty of Computer and Mathematical Sciences |
| Programme: | Bachelor of Science (Hons) in Data Communication and Networking |
| Keywords: | Buffer overflow, Stackguard, Stack-smashing protection |
| Date: | 2003 |
| URI: | https://ir.uitm.edu.my/id/eprint/103454 |
103454.pdf

