Invention Grant
- Patent Title: Software security via control flow integrity checking
-
Application No.: US14060506Application Date: 2013-10-22
-
Publication No.: US09846717B2Publication Date: 2017-12-19
- Inventor: Lee Pike , Patrick Christopher Hickey , Aaron Tomb , Eric Mertens
- Applicant: Galois, Inc.
- Applicant Address: US OR Portland
- Assignee: Galois, Inc.
- Current Assignee: Galois, Inc.
- Current Assignee Address: US OR Portland
- Agency: Klarquist Sparkman, LLP
- Main IPC: G06F21/55
- IPC: G06F21/55 ; G06F17/30 ; G06F11/36 ; G06F21/52 ; G06F21/56

Abstract:
Various technologies related to control flow integrity checking are described herein and can be used to greatly improve software security. During static analysis, a canonical control flow graph can be built. Execution of a program can be interrupted at runtime, and the call stack can be observed to verify control flow integrity of the program using the canonical control flow graph. Attacks using stack tampering can be avoided, regardless of how the stack tampering is achieved. Non-invasive techniques can be used, making the technologies applicable in situations where source code is not available. Real-time operating system protection can be supported.
Public/Granted literature
- US20160300060A1 SOFTWARE SECURITY VIA CONTROL FLOW INTEGRITY CHECKING Public/Granted day:2016-10-13
Information query