Dynamic Diluted Taint Analysis for Evaluating Detected Policy Violations

Dynamic taint analysis is a well-known technique. This article describes some difficulties that have to be dealt with when using dynamic taint analysis with full-system emulation. A new method is proposed to evaluate the risk of a detected policy violation. The method is called Diluted Taint: each tainted byte has an assigned integer value that shows how…