본문 바로가기
  • Home

A Study on Injection Attacks and Defenses on Microsoft Windows

  • Journal of Software Assessment and Valuation
  • Abbr : JSAV
  • 2020, 16(2), pp.9-23
  • Publisher : Korea Software Assessment and Valuation Society
  • Research Area : Engineering > Computer Science
  • Received : November 15, 2020
  • Accepted : December 21, 2020
  • Published : December 31, 2020

Ho Jun Seong 1 Jo Chang Yeon 1 Howoong Lee 2 SEONG JE CHO 1

1단국대학교
2호서대학교

Candidate

ABSTRACT

Microsoft's Windows system is widely used as an operating system for the desktops and enterprise servers of companies or organizations, and is a major target of cyber attacks. Microsoft provides various protection technologies and strives for defending the attacks through periodic security patches, however the threats such as DLL injection and process injection still exist. In this paper, we analyze 12 types of injection techniques in Microsoft Windows, and perform injection attack experiments on four application programs. Through the results of the experiments, we identify the risk of injection techniques, and verify the effectiveness of the mitigation technology for defending injection attacks provided by Microsoft. As a result of the experiments, we have found that the current applications are vulnerable to several injection techniques. Finally, we have presented the mitigation techniques for these injection attacks and analyzed their effectiveness.

Citation status

* References for papers published after 2023 are currently being built.