참고문헌
- Cert coordination center, http://www.cert.org/advisories
- OWASP, 'The Ten Most Critical Web Application Security Vulnerabilities', http://www.owasp.org/documentation/topten.html
- PSS Security Response Team Alert-New Worm: W32. Slammer, http://www.microsoft.com/technet/security/alerts/slammer.mspx
- J. Viega, J. Bloch, T. Kohno and G. McGRaw, 'ITS4: A static vulnerability scanner for c and c++ code', In proceeding of the 16th Annual Computer Security Applications Conference, Dec., 2000
- Eric Gaugh, Matt Bishop, 'Testing C Programs for Buffer Overflow Vulnerabilities', In proceedings of the 2003 Symposium on Networked and Distributed System Security, Feb., 2003
- Crispin Cowan, Calton Pu, Dave Maier, Heather Ginton, Jonathan Walpole, Peat Bakke, Steve Bettie, Aaron Grier, Perry Wagle and Qian Zhang, 'StackGuard: Automatic Adaptive Detection and Prevention of Buffer-Overflow Attacks', In proceeding of the 7th USENIX Security Conference. 1998
- Microsoft MDSN, 'Compiler Security Checks In Depth', http://msdn.microsoft.com/default.asp=/library/en-us/dv_vstechart/html/vctchcompiersecuritychecksin depth.sap
- 김종의, 이성욱, 홍만표, '버퍼오버플로우 공격 방지를 위한 컴파일러 기법', 정보처리학회논문지C 제9-C권 제4호, pp.453-458, 2002 https://doi.org/10.3745/KIPSTC.2002.9C.4.453
- A. Baratloo, N. Singh and T. Tasi, 'Transparent run-time defense against stack smashing attacks', In proceedings of USENIX Annual Technical Conference, June, 2000
- Make Frantzen, Mike Shuey, 'StackGhost: Hardware facilitated stack protection', In 10th USENIX Security Symposium, Aug., 2001
- D. Wagner, J. Foster, E. Brewer, and A. Aiken, 'A first step towards automated detection of buffer overrun vulnerabilities', In symposium on Network and Distributed System Security, pages 3-17, Feb., 2000
- M. Prasad and T. Chiueh, 'A Binary Rewriting Defense against Stack-based Buffer Overflow Attacks', In proceedings of the IEEE Symposium on Security and Pricvacy, May, 1996
- Tzi-Cker Chiueh and Fu-Hau Hsu, 'RAD: A Compile-time Solution to Buffer Overflow Attacks', In proceedings of Intermational Conference on Distributed Computing Systems (ICDCS), Phoenix, Arizona, USA, April, 2001 https://doi.org/10.1109/ICDSC.2001.918971
- 조 상, Windows disassembler, http://www.geocities.com/mysimpc/