摘要:
Provided are a fuzzing system and method of a distributed computing environment (DCE) remote procedure call (RPC) object. The fuzzing system includes a file manager, a random data generator, a RPC packet, and a packet injector. The file manager obtains necessary information by parsing and analyzing an idl file for a target object for fuzzing and a file having information about a Named Pipe file. The random data generator generates a random value using a system clock as a factor. The RPC packet creator embodies protocols used for RPC communication by functions and generating a RPC packet for RPC communication. The packet injector inserts the necessary information and the random value into the generated RPC packet and transmits the generated RPC packet to the target object for fuzzing.
摘要:
An apparatus and method for managing the execution of ActiveX control are provided. The apparatus includes a server list managing module for managing an approved server list for allowing the execution of predetermined ActiveX control and a disapproved server list for disallowing the execution of predetermined ActiveX control, an API hooking module for detecting installation or execution of ActiveX control in a HTML (Hyper Text Markup Language) document while visiting a web site, and a process module for reading the approved and disapproved server lists if the API hooking module detects the execution of the ActiveX control, allowing the execution of each ActiveX control only within approved web sites, and interrupting the execution of ActiveX control in disapproved web sites.
摘要:
An apparatus and method for managing the execution of ActiveX control are provided. The apparatus includes a server list managing module for managing an approved server list for allowing the execution of predetermined ActiveX control and a disapproved server list for disallowing the execution of predetermined ActiveX control, an API hooking module for detecting installation or execution of ActiveX control in a HTML (Hyper Text Markup Language) document while visiting a web site, and a process module for reading the approved and disapproved server lists if the API hooking module detects the execution of the ActiveX control, allowing the execution of each ActiveX control only within approved web sites, and interrupting the execution of ActiveX control in disapproved web sites.