IE Browser the Attack Key Technology Research

MAO Ning-xiang,WEN Wei-ping,FU Jun
DOI: https://doi.org/10.3969/j.issn.1671-1122.2011.07.010
2011-01-01
Abstract:The harm caused by software vulnerabilities is increasing.To increase the difficulty of the attack launched by attacker,Windows gradually supports DEP and ASLR and other security mechanisms at the system level.Other software can apply these mechanisms easily.So IE browser can also apply these mechanisms to increase its security.However,there are still many methods which can bypass these mechanisms in IE browser.This paper provides details about DEP and ASLR protection mechanisms and also gives examples which demonstrate how Heap Spray and ROP attack happen.
What problem does this paper attempt to address?