วิธีนี้สามารถหลบระบบป้องกัน Intel Control‑Flow Enforcement Technology (CET) ได้ เพราะการเรียก signal handler เป็นการเปลี่ยน control flow ที่ถูกต้องตามระบบปฏิบัติการ [3][5]
แนวทางป้องกันที่เสนอมีทั้งการปรับปรุง Linux kernel และกลไกเสริมชื่อ PLaTypus ที่จำกัดการกระโดดข้ามไลบรารีของโปรแกรม เพื่อลดพื้นผิวการโจมตีของ code‑reuse [39][40]
What is the newly disclosed Segmentation Fault Oriented Programming (SFOP) attack presented by CISPA researchers at the IEEE Symposium on SeSFOP chains segmentation faults and signal handlers to manipulate execution flow even when hardware protections like Intel CET are enabled.
AI พรอมต์
Create a landscape editorial hero image for this Studio Global article: What is the newly disclosed Segmentation Fault Oriented Programming (SFOP) attack presented by CISPA researchers at the IEEE Symposium on Se. Article summary: SFOP, or Segmentation Fault Oriented Programming, is a newly disclosed serial code-reuse attack by CISPA researchers that abuses Linux SIGSEGV signal handling to bypass Intel CET on Linux by deliberately triggering segme. Topic tags: general, education, general web, documentation. Reference image context from search candidates: Reference image 1: visual subject "IEEE Symposium on Security and Privacy IEEE Symposium on Security and Privacy. Home IEEE Symposium on Security and Privacy: Academic Security Research That Matters. # IEEE Symposiu" source context "IEEE Symposium on Security and Privacy: Academic Security Research That Matters | netguardia.com" Referenc
นักวิจัยจาก CISPA Helmholtz Center for Information Security ได้เปิดเผยเทคนิคใหม่ชื่อ Segmentation Fault Oriented Programming (SFOP) ซึ่งสามารถหลบ CET บน Linux ได้โดยอาศัยกลไกการจัดการสัญญาณ (signal handling) ของระบบปฏิบัติการ งานวิจัยนี้ถูกนำเสนอในบริบทของการประชุม IEEE Symposium on Security and Privacy ปี 2026
Studio Global AI
ทำการวิจัยต่อ
หน้านี้รวมคำตอบที่ได้รับการสนับสนุนจากแหล่งที่มาซึ่งคุณสามารถดำเนินการต่อภายใน Studio Global
แม้เทคโนโลยีอย่าง Intel CET จะออกแบบมาเพื่อต้านการโจมตีขั้นสูง แต่ผู้โจมตีก็ยังสามารถใช้กลไกปกติของระบบ เช่น signal handling เพื่อสร้างเส้นทางการโจมตีใหม่