作者
Juan Lopez, Leonardo Babun, Hidayet Aksu, A. Selcuk Uluagac
发表日期
2017/9/21
期刊
Journal of Hardware and Systems Security
卷号
1
期号
1
出版商
Springer International Publishing
简介
Functions and system calls are effective indicators of the behavior of a process. These subroutines are useful for identifying unauthorized behavior caused by malware or for developing a better understanding of the lower-level operations of an application. Code obfuscation, however, often prevents user monitoring and modification of subroutine calls. Subroutine hooking offers a solution to this limitation. Function and system call hooking approaches allow for subroutine instrumentation, making hooking a valuable and versatile skill across industry and academia. In this survey, we present several criteria for the classification and selection of hooking tools and techniques as well as an examination of the major hooking approaches used on Windows, Linux, macOS, iOS, and Android operating systems. We also evaluate and compare the performance of different subroutine hooking tools and techniques based …
引用总数
201920202021202220232024861110136
学术搜索中的文章
J Lopez, L Babun, H Aksu, AS Uluagac - Journal of Hardware and Systems Security, 2017