Comparative analysis of baseband software implementation and cellular specification for layer 3 protocols이동 통신 베이스밴드 소프트웨어 구현과 표준의 비교분석

Cited 0 time in webofscience Cited 0 time in scopus
  • Hit : 165
  • Download : 0
hence, we can statically extract the data structures and compare them with the specification. Leveraging this approach, we analyze two essential parts of baseband software: message decoding and handling routines. Through a manual yet one-time analysis of the baseband software, we first pinpoint the routines from the software. Then, for the decoder routine, we extract the embedded message structures, used for parsing incoming messages, and compare them with the specification. In the case of the handling routine, we extract the message dispatch table and state variables, which are used for selecting proper handler functions for incoming messages, and compare them with the specification. Consequently, we discovered 15 erroneous cases from the baseband software, including three critical 0-days. We believe that our findings demonstrate the significance of software analysis for baseband security.; Cellular basebands play a critical role in mobile communication. However, because of the complexity and obscurity of the baseband software, it is significantly challenging to assess their security. Therefore, most previous approaches dynamically analyzed the security of smartphones while assuming the baseband software as a black box. As a result, such approaches may suffer from a lack of implementation details and cannot efficiently generate test cases, resulting in a potential miss of bugs. In this dissertation, we present a novel baseband analysis approach that compares baseband software implementation and cellular specifications. Our key intuition is that the baseband software may embed parts of cellular specifications in a form of machine-friendly data structures to process cellular protocols
Description
한국과학기술원 :정보보호대학원,
Publisher
한국과학기술원
Issue Date
2022
Identifier
325007
Language
eng
Description

학위논문(박사) - 한국과학기술원 : 정보보호대학원, 2022.2,[iv, 63 p. :]

Keywords

Cellular network▼aBaseband processor▼aSoftware analysis▼aSoftware security▼aEmbedded system; 이동 통신▼a베이스밴드▼a소프트웨어 분석▼a소프트웨어 보안▼a임베디드 기기

URI
http://hdl.handle.net/10203/309284
Link
http://library.kaist.ac.kr/search/detail/view.do?bibCtrlNo=1000315&flag=dissertation
Appears in Collection
IS-Theses_Ph.D.(박사논문)
Files in This Item
There are no files associated with this item.

qr_code

  • mendeley

    citeulike


rss_1.0 rss_2.0 atom_1.0