Author Login Editor-in-Chief Peer Review Editor Work Office Work

Computer Engineering ›› 2011, Vol. 37 ›› Issue (11): 7-9. doi: 10.3969/j.issn.1000-3428.2011.11.003

• Networks and Communications • Previous Articles     Next Articles

Design and Implementation of BIOS Sampling and Analyzing System

WANG Xiao-zhen  1,2, ZHOU Zhen-liu  3, LIU Bao-xu  1   

  1. (1. Computing Center, Institute of High Energy Physics, Chinese Academy of Sciences, Beijing 100049, China; 2. Graduate University of Chinese Academy of Sciences, Beijing 100049, China; 3. Shenyang Key Laboratory of Information Security for Power System, Shenyang Institute of Engineering, Shenyang 110136, China)
  • Received:2010-12-12 Online:2011-06-05 Published:2011-06-05

BIOS采样分析系统的设计与实现

王晓箴1, 2,周振柳3,刘宝旭1   

  1. (1. 中国科学院高能物理研究所计算中心,北京 100049;2. 中国科学院研究生院,北京100049; 3. 沈阳工程学院电力系统信息安全沈阳市重点实验室,沈阳 110136)
  • 作者简介:王晓箴(1985-),女,博士研究生,主研方向:信息安全;周振柳,副教授;刘宝旭,副研究员
  • 基金资助:

    国家科技支撑计划基金资助重点项目(2009BAH52B06);中国科学院知识创新重点方向性基金资助项目

Abstract:

Based on the research of SMBIOS entry point structure, SMBIOS structure tables and memory-mapped I/O, this paper puts forward a method of universal Basic Input/Output System(BIOS) image file sampling and formatting, and establishes a BIOS image file security detection model. Experiments prove this method can analyze multiple IBV’s(Independent BIOS Vendor) BIOS image files successfully, thus it solves a critical problem in BIOS security risk analysis and detection system.

Key words: Basic Input/Output System(BIOS), security risk, security detection, firmware security, memory mapping

摘要:

通过研究BIOS镜像文件中遵循的SMBIOS规范、EPSON表结构及高端物理内存映射方法,提出一种通用的BIOS镜像文件采样及分析技术手段,建立BIOS镜像文件安全检测模型。实验证明,该方案能对多种厂商的BIOS镜像文件进行采样及格式处理,解决BIOS安全风险分析检测系统中存在的技术难点,为固件层的安全分析提供有效保障。

关键词: 基本输入/输出系统, 安全风险, 安全检测, 固件安全, 内存映射

CLC Number: