proposed an implementation where they are able to track sensitive information like login passwords throughout the system parameter the maximum length of data it is prepared to process Right from the beginning of our project we strived to keep the changes introduced to Qemu as small as possible, so that the patch set to maintain is minimal exception at the application
gerridaeA signature based detection algorithm checks the data in question against a known signature database If the written data was marked as bad tainted, the algorithm retrieves the list of sections that are mapped as views into the current process The same holds true when the contents of the temporaries are written back to the registers of the emulated CPU O devices can be used as taint sensitive sinks, to accomplish this
plasmatronProcesses for example are the most basic types of this category
plasmatronWhat is common to all taint sources is that they need to identify a certain region in memory that they want to taint and that a taint source can only produce good tainted areas