ITS 4 : A Static Vulnerability Scanner for C and C + +

نویسندگان

  • Tadayoshi Kohno
  • Gary McGraw
چکیده

We describe ITS4, a tool for statically scanning security-critical C and C++ source code for vulnerabil-ities. Compared to other techniques, our results indicate that this approach stakes out a new middle ground on accuracy, while being eecient enough to give real-time feedback to a developer during coding. Our technique is also simple enough that it can easily be applied to C++, despite the complexities inherent in the language. We have used our tool to nd new remotely-exploitable vulnerabilities in a widely distributed software package, as well as a major piece of e-commerce software. Our tool, along with its source code, is available from

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

ITS A Static Vulnerability Scanner for C and C Code

We describe ITS a tool for statically scanning security critical C and C source code for vulnerabil ities Compared to other techniques our results indi cate that this approach stakes out a new middle ground on accuracy while being e cient enough to give real time feedback to a developer during coding Our tech nique is also simple enough that it can easily be ap plied to C despite the complexiti...

متن کامل

ITS4: A Static Vulnerability Scanner for C and C++ Code

We describe ITS4, a tool for statically scanning security-critical C source code for vulnerabilities. Compared to other approaches, our scanning technique stakes out a new middle ground between accuracy and efficiency. This method is efficient enough to offer real-time feedback to developers during coding while producing few false negatives. Unlike other techniques, our method is also simple en...

متن کامل

The modeling of induced current density in eyes from static magnetic fields produce by MR scanner

Introduction: Staff and patient Movement in static magnetic field MRI scanner induces current density in the human tissues, so cause biologic effects in people. The aim of this study was the Modelling of current density induced by moving individual with different velocities in static magnetic field of magnetic resonance imaging. Materials and Methods: current ...

متن کامل

VmiCVS: Cloud Vulnerability Scanner

Every service that runs in cloud systems comes with its own set of vulnerabilities. It is important to detect and assess those vulnerabilities to provide seamless and secure service to the users. Various scanners such as Port scanner, Network scanner, Web application security scanner, Database security scanner, Host based vulnerability scanner etc provide security assessment. But these scanners...

متن کامل

All Procedures for the Synthesis of Silver Nanosheets

Two dimensional silver(I) coordination polymer, [Ag(μ5-T4S)]n (1), (T4S- = toluene-4-sulfonate), has been synthesized and characterized by Inductively Coupled Plasma (ICP) and elemental analyses, IR spectroscopy and powder X-ray diffraction. This compound was calcined at 450, 500 and 700 °C in a furnace and static atmosphere of air. The resultin...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2000