Nothing Special   »   [go: up one dir, main page]

skip to main content
10.1109/ISA.2008.29guideproceedingsArticle/Chapter ViewAbstractPublication PagesConference Proceedingsacm-pubtype
Article

SCV: Structure and Constant Value based Binary Diffing

Published: 24 April 2008 Publication History

Abstract

Binary diffing is a method to find differences in similar binary executables such as two different versions of security patches. Diffing methods using flow information detect control flow changes very fast, but they cannot track constant value changes. We present a binary diffing tool named SCV which utilizes both structure and value information. SCV summarizes structure and constant value information from disassembled code, and matches the summaries to find differences. By analyzing a Microsoft Windows security patch KB938827, we showed that SCV found necessary differences caused by constant value changes whichthe state-of-the-art binary diffing tool BinDiff failed to find.

Recommendations

Comments

Please enable JavaScript to view thecomments powered by Disqus.

Information & Contributors

Information

Published In

cover image Guide Proceedings
ISA '08: Proceedings of the 2008 International Conference on Information Security and Assurance (isa 2008)
April 2008
581 pages
ISBN:9780769531267

Publisher

IEEE Computer Society

United States

Publication History

Published: 24 April 2008

Author Tags

  1. Binary comparison
  2. binary control-flow graph
  3. binary diffing

Qualifiers

  • Article

Contributors

Other Metrics

Bibliometrics & Citations

Bibliometrics

Article Metrics

  • 0
    Total Citations
  • 0
    Total Downloads
  • Downloads (Last 12 months)0
  • Downloads (Last 6 weeks)0
Reflects downloads up to 18 Feb 2025

Other Metrics

Citations

View Options

View options

Figures

Tables

Media

Share

Share

Share this Publication link

Share on social media