icon-carat-right menu search cmu-wordmark

Function Extraction (FX) Research for Computation of Software Behavior: 2010 Development and Application of Semantic Reduction Theorems for Behavior Analysis

Technical Report
In this report, the authors present research to compute the behavior of software with mathematical precision and how this research has been implemented.
Publisher

Software Engineering Institute

CMU/SEI Report Number
CMU/SEI-2011-TR-009
DOI (Digital Object Identifier)
10.1184/R1/6573932.v1

Abstract

For several years, the Software Engineering Institute (SEI) at Carnegie Mellon University has been engaged in a project to compute the behavior of software with mathematical precision to the maximum extent possible. Air Force Office of Scientific Research (AFOSR) sponsorship has played a key role in this effort. The general thrust of the research for AFOSR has been in technology for (1) overcoming difficult aspects of behavior computation and (2) analyzing and manipulating computed behavior. In 2009, the research focused on computing the behavior of loops, a process subject to theoretical limitations. This resulted in practical methods for loop computation that minimize the effects of these constraints. The 2010 research focused on foundations and implementations of algorithms that employ computed behavior and semantic reduction theorems to determine the true control flow of malware programs as an essential first step in computing overall malware behavior. Determining the true control flow of a program in the presence of computed jumps and jump table operations has been a difficult problem for some time. Syntactic methods of control flow analysis exhibit limitations that reduce their effectiveness. The semantic methods employed by behavior computation can produce improved results. The findings of this research have been implemented in a system for malware analysis and have improved capabilities for behavior computation in other applications. At the same time, the research has revealed a potential new approach to both reverse engineer and forward engineer software based on rigorous specification and verification in the context of behavior computation.

Cite This Technical Report

Linger, R., Daly, T., & Pleszkoch, M. (2011, February 1). Function Extraction (FX) Research for Computation of Software Behavior: 2010 Development and Application of Semantic Reduction Theorems for Behavior Analysis. (Technical Report CMU/SEI-2011-TR-009). Retrieved December 22, 2024, from https://doi.org/10.1184/R1/6573932.v1.

@techreport{linger_2011,
author={Linger, Richard and Daly, Tim and Pleszkoch, Mark},
title={Function Extraction (FX) Research for Computation of Software Behavior: 2010 Development and Application of Semantic Reduction Theorems for Behavior Analysis},
month={{Feb},
year={{2011},
number={{CMU/SEI-2011-TR-009},
howpublished={Carnegie Mellon University, Software Engineering Institute's Digital Library},
url={https://doi.org/10.1184/R1/6573932.v1},
note={Accessed: 2024-Dec-22}
}

Linger, Richard, Tim Daly, and Mark Pleszkoch. "Function Extraction (FX) Research for Computation of Software Behavior: 2010 Development and Application of Semantic Reduction Theorems for Behavior Analysis." (CMU/SEI-2011-TR-009). Carnegie Mellon University, Software Engineering Institute's Digital Library. Software Engineering Institute, February 1, 2011. https://doi.org/10.1184/R1/6573932.v1.

R. Linger, T. Daly, and M. Pleszkoch, "Function Extraction (FX) Research for Computation of Software Behavior: 2010 Development and Application of Semantic Reduction Theorems for Behavior Analysis," Carnegie Mellon University, Software Engineering Institute's Digital Library. Software Engineering Institute, Technical Report CMU/SEI-2011-TR-009, 1-Feb-2011 [Online]. Available: https://doi.org/10.1184/R1/6573932.v1. [Accessed: 22-Dec-2024].

Linger, Richard, Tim Daly, and Mark Pleszkoch. "Function Extraction (FX) Research for Computation of Software Behavior: 2010 Development and Application of Semantic Reduction Theorems for Behavior Analysis." (Technical Report CMU/SEI-2011-TR-009). Carnegie Mellon University, Software Engineering Institute's Digital Library, Software Engineering Institute, 1 Feb. 2011. https://doi.org/10.1184/R1/6573932.v1. Accessed 22 Dec. 2024.

Linger, Richard; Daly, Tim; & Pleszkoch, Mark. Function Extraction (FX) Research for Computation of Software Behavior: 2010 Development and Application of Semantic Reduction Theorems for Behavior Analysis. CMU/SEI-2011-TR-009. Software Engineering Institute. 2011. https://doi.org/10.1184/R1/6573932.v1