JP7568131B2 - 解析機能付与方法、解析機能付与装置及び解析機能付与プログラム - Google Patents

解析機能付与方法、解析機能付与装置及び解析機能付与プログラム Download PDF

Info

Publication number
JP7568131B2
JP7568131B2 JP2023553920A JP2023553920A JP7568131B2 JP 7568131 B2 JP7568131 B2 JP 7568131B2 JP 2023553920 A JP2023553920 A JP 2023553920A JP 2023553920 A JP2023553920 A JP 2023553920A JP 7568131 B2 JP7568131 B2 JP 7568131B2
Authority
JP
Japan
Prior art keywords
instruction
analysis
branch
virtual machine
execution
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
JP2023553920A
Other languages
English (en)
Japanese (ja)
Other versions
JPWO2023067668A1 (https=
Inventor
利宣 碓井
知範 幾世
裕平 川古谷
誠 岩村
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
NTT Inc
NTT Inc USA
Original Assignee
Nippon Telegraph and Telephone Corp
NTT Inc USA
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Nippon Telegraph and Telephone Corp, NTT Inc USA filed Critical Nippon Telegraph and Telephone Corp
Publication of JPWO2023067668A1 publication Critical patent/JPWO2023067668A1/ja
Application granted granted Critical
Publication of JP7568131B2 publication Critical patent/JP7568131B2/ja
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F9/00Arrangements for program control, e.g. control units
    • G06F9/06Arrangements for program control, e.g. control units using stored programs, i.e. using an internal store of processing equipment to receive or retain programs
    • G06F9/44Arrangements for executing specific programs
    • G06F9/455Emulation; Interpretation; Software simulation, e.g. virtualisation or emulation of application or operating system execution engines
    • G06F9/45533Hypervisors; Virtual machine monitors
    • G06F9/45558Hypervisor-specific management and integration aspects
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/55Detecting local intrusion or implementing counter-measures
    • G06F21/56Computer malware detection or handling, e.g. anti-virus arrangements
    • GPHYSICS
    • G06COMPUTING OR CALCULATING; COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F9/00Arrangements for program control, e.g. control units
    • G06F9/06Arrangements for program control, e.g. control units using stored programs, i.e. using an internal store of processing equipment to receive or retain programs
    • G06F9/44Arrangements for executing specific programs
    • G06F9/455Emulation; Interpretation; Software simulation, e.g. virtualisation or emulation of application or operating system execution engines
    • G06F9/45533Hypervisors; Virtual machine monitors
    • G06F9/45558Hypervisor-specific management and integration aspects
    • G06F2009/45591Monitoring or debugging support

Landscapes

  • Engineering & Computer Science (AREA)
  • Software Systems (AREA)
  • Theoretical Computer Science (AREA)
  • General Engineering & Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • Health & Medical Sciences (AREA)
  • General Health & Medical Sciences (AREA)
  • Virology (AREA)
  • Debugging And Monitoring (AREA)
JP2023553920A 2021-10-18 2021-10-18 解析機能付与方法、解析機能付与装置及び解析機能付与プログラム Active JP7568131B2 (ja)

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/JP2021/038502 WO2023067668A1 (ja) 2021-10-18 2021-10-18 解析機能付与方法、解析機能付与装置及び解析機能付与プログラム

Publications (2)

Publication Number Publication Date
JPWO2023067668A1 JPWO2023067668A1 (https=) 2023-04-27
JP7568131B2 true JP7568131B2 (ja) 2024-10-16

Family

ID=86058896

Family Applications (1)

Application Number Title Priority Date Filing Date
JP2023553920A Active JP7568131B2 (ja) 2021-10-18 2021-10-18 解析機能付与方法、解析機能付与装置及び解析機能付与プログラム

Country Status (3)

Country Link
US (1) US20250231786A1 (https=)
JP (1) JP7568131B2 (https=)
WO (1) WO2023067668A1 (https=)

Families Citing this family (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US11989292B2 (en) * 2018-10-11 2024-05-21 Nippon Telegraph And Telephone Corporation Analysis function imparting device, analysis function imparting method, and recording medium
JP7568130B2 (ja) * 2021-10-18 2024-10-16 日本電信電話株式会社 解析機能付与方法、解析機能付与装置及び解析機能付与プログラム
JPWO2024214265A1 (https=) * 2023-04-13 2024-10-17

Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2020075335A1 (ja) 2018-10-11 2020-04-16 日本電信電話株式会社 解析機能付与装置、解析機能付与方法及び解析機能付与プログラム
WO2021070393A1 (ja) 2019-10-11 2021-04-15 日本電信電話株式会社 解析機能付与装置、解析機能付与方法及び解析機能付与プログラム

Patent Citations (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2020075335A1 (ja) 2018-10-11 2020-04-16 日本電信電話株式会社 解析機能付与装置、解析機能付与方法及び解析機能付与プログラム
WO2021070393A1 (ja) 2019-10-11 2021-04-15 日本電信電話株式会社 解析機能付与装置、解析機能付与方法及び解析機能付与プログラム

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
大山 恵弘,例外を発生させるマルウェアのための動的解析手法,情報処理学会 シンポジウム コンピュータセキュリティシンポジウム 2019,日本,情報処理学会,2019年10月14日,pages 953-960

Also Published As

Publication number Publication date
US20250231786A1 (en) 2025-07-17
JPWO2023067668A1 (https=) 2023-04-27
WO2023067668A1 (ja) 2023-04-27

Similar Documents

Publication Publication Date Title
JP7517585B2 (ja) 解析機能付与装置、解析機能付与プログラム及び解析機能付与方法
US11423146B2 (en) Provenance-based threat detection tools and stealthy malware detection
US12093398B2 (en) Vulnerability analysis and reporting for embedded systems
US11086987B2 (en) Malware detection in event loops
JP7115552B2 (ja) 解析機能付与装置、解析機能付与方法及び解析機能付与プログラム
JP7287480B2 (ja) 解析機能付与装置、解析機能付与方法及び解析機能付与プログラム
JP7568131B2 (ja) 解析機能付与方法、解析機能付与装置及び解析機能付与プログラム
CN109101815B (zh) 一种恶意软件检测方法及相关设备
US9507933B2 (en) Program execution apparatus and program analysis apparatus
EP3547121B1 (en) Combining device, combining method and combining program
CN110096873B (zh) 通过补丁变换的自动诱饵推导
CN111291377B (zh) 一种应用漏洞的检测方法及系统
JP7568128B2 (ja) 解析機能付与方法、解析機能付与装置及び解析機能付与プログラム
JP7568129B2 (ja) 解析機能付与方法、解析機能付与装置及び解析機能付与プログラム
JP7568130B2 (ja) 解析機能付与方法、解析機能付与装置及び解析機能付与プログラム
WO2024079793A1 (ja) 脆弱性発見装置、脆弱性発見方法及び脆弱性発見プログラム
US9800588B1 (en) Automated analysis pipeline determination in a malware analysis environment
KR102941340B1 (ko) 메모리 예측을 통한 분석회피기술 탐지 장치 및 방법
WO2024214261A1 (ja) 解析装置、解析方法及び解析プログラム
WO2024079794A1 (ja) 解析機能付与装置、解析機能付与方法および解析機能付与プログラム
WO2024079803A1 (ja) 脆弱性発見装置、脆弱性発見方法及び脆弱性発見プログラム
WO2024214260A1 (ja) 解析装置、解析方法及び解析プログラム
WO2024214265A1 (ja) 解析装置、解析方法及び解析プログラム
WO2025246271A1 (zh) 一种软件检测方法及相关设备

Legal Events

Date Code Title Description
A621 Written request for application examination

Free format text: JAPANESE INTERMEDIATE CODE: A621

Effective date: 20240404

TRDD Decision of grant or rejection written
A01 Written decision to grant a patent or to grant a registration (utility model)

Free format text: JAPANESE INTERMEDIATE CODE: A01

Effective date: 20240903

A61 First payment of annual fees (during grant procedure)

Free format text: JAPANESE INTERMEDIATE CODE: A61

Effective date: 20240916

R150 Certificate of patent or registration of utility model

Ref document number: 7568131

Country of ref document: JP

Free format text: JAPANESE INTERMEDIATE CODE: R150

S533 Written request for registration of change of name

Free format text: JAPANESE INTERMEDIATE CODE: R313533

R350 Written notification of registration of transfer

Free format text: JAPANESE INTERMEDIATE CODE: R350