{"id":"https://openalex.org/W4399396312","doi":"https://doi.org/10.1109/host55342.2024.10545381","title":"A Security Assessment of Protected Execute-Only Firmware in Microcontrollers Through Selective Chemical Engraving","display_name":"A Security Assessment of Protected Execute-Only Firmware in Microcontrollers Through Selective Chemical Engraving","publication_year":2024,"publication_date":"2024-05-06","ids":{"openalex":"https://openalex.org/W4399396312","doi":"https://doi.org/10.1109/host55342.2024.10545381"},"language":"en","primary_location":{"id":"doi:10.1109/host55342.2024.10545381","is_oa":false,"landing_page_url":"http://dx.doi.org/10.1109/host55342.2024.10545381","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5089542640","display_name":"Xiaomei Zeng","orcid":"https://orcid.org/0000-0001-9101-1677"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":true,"raw_author_name":"Xiaomei Zeng","raw_affiliation_strings":["Nanyang Technological University,Singapore","Nanyang Technological University, Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University,Singapore","institution_ids":["https://openalex.org/I172675005"]},{"raw_affiliation_string":"Nanyang Technological University, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103031632","display_name":"Qing Liu","orcid":"https://orcid.org/0009-0006-6017-141X"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Liu Qing","raw_affiliation_strings":["Nanyang Technological University,Singapore","Nanyang Technological University, Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University,Singapore","institution_ids":["https://openalex.org/I172675005"]},{"raw_affiliation_string":"Nanyang Technological University, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5077877722","display_name":"Samuel Chef","orcid":"https://orcid.org/0000-0002-1729-7432"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Samuel Chef","raw_affiliation_strings":["Nanyang Technological University,Singapore","Nanyang Technological University, Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University,Singapore","institution_ids":["https://openalex.org/I172675005"]},{"raw_affiliation_string":"Nanyang Technological University, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5006684936","display_name":"Chee Lip Gan","orcid":"https://orcid.org/0000-0002-8420-3168"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Chee Lip Gan","raw_affiliation_strings":["Nanyang Technological University,Singapore","Nanyang Technological University, Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University,Singapore","institution_ids":["https://openalex.org/I172675005"]},{"raw_affiliation_string":"Nanyang Technological University, Singapore","institution_ids":["https://openalex.org/I172675005"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5089542640"],"corresponding_institution_ids":["https://openalex.org/I172675005"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.06776417,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"12","last_page":"20"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.994700014591217,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.994700014591217,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/firmware","display_name":"Firmware","score":0.9935064315795898},{"id":"https://openalex.org/keywords/microcontroller","display_name":"Microcontroller","score":0.7662373781204224},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7604575157165527},{"id":"https://openalex.org/keywords/microcode","display_name":"Microcode","score":0.6860899329185486},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.6438975930213928},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.5684158205986023},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.5670501589775085},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.49398499727249146},{"id":"https://openalex.org/keywords/computer-hardware","display_name":"Computer hardware","score":0.46185505390167236},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.11219355463981628}],"concepts":[{"id":"https://openalex.org/C67212190","wikidata":"https://www.wikidata.org/wiki/Q104851","display_name":"Firmware","level":2,"score":0.9935064315795898},{"id":"https://openalex.org/C173018170","wikidata":"https://www.wikidata.org/wiki/Q165678","display_name":"Microcontroller","level":2,"score":0.7662373781204224},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7604575157165527},{"id":"https://openalex.org/C22174128","wikidata":"https://www.wikidata.org/wiki/Q175869","display_name":"Microcode","level":2,"score":0.6860899329185486},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.6438975930213928},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.5684158205986023},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.5670501589775085},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.49398499727249146},{"id":"https://openalex.org/C9390403","wikidata":"https://www.wikidata.org/wiki/Q3966","display_name":"Computer hardware","level":1,"score":0.46185505390167236},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.11219355463981628},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/host55342.2024.10545381","is_oa":false,"landing_page_url":"http://dx.doi.org/10.1109/host55342.2024.10545381","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 IEEE International Symposium on Hardware Oriented Security and Trust (HOST)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.6600000262260437}],"awards":[{"id":"https://openalex.org/G3637115877","display_name":null,"funder_award_id":"NRF2018NCR-NCR009-000l","funder_id":"https://openalex.org/F4320320671","funder_display_name":"National Research Foundation"}],"funders":[{"id":"https://openalex.org/F4320320671","display_name":"National Research Foundation","ror":"https://ror.org/05s0g1g46"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":31,"referenced_works":["https://openalex.org/W1980073965","https://openalex.org/W2004134527","https://openalex.org/W2013408570","https://openalex.org/W2093154965","https://openalex.org/W2128045766","https://openalex.org/W2582567389","https://openalex.org/W2738836551","https://openalex.org/W2751981393","https://openalex.org/W2754110826","https://openalex.org/W2790716956","https://openalex.org/W2887957107","https://openalex.org/W2898044559","https://openalex.org/W2911869194","https://openalex.org/W2914982603","https://openalex.org/W2949797438","https://openalex.org/W3009034279","https://openalex.org/W3015744303","https://openalex.org/W3158373903","https://openalex.org/W3174944769","https://openalex.org/W3195447706","https://openalex.org/W3216850052","https://openalex.org/W4236786653","https://openalex.org/W4285123900","https://openalex.org/W4312255755","https://openalex.org/W4312966603","https://openalex.org/W4386859128","https://openalex.org/W4387243791","https://openalex.org/W4387952084","https://openalex.org/W6744567818","https://openalex.org/W6767070217","https://openalex.org/W6782297160"],"related_works":["https://openalex.org/W1966431236","https://openalex.org/W608147619","https://openalex.org/W1984676852","https://openalex.org/W2026551898","https://openalex.org/W2068967940","https://openalex.org/W270731569","https://openalex.org/W4252104358","https://openalex.org/W2062160093","https://openalex.org/W2025981307","https://openalex.org/W1998626163"],"abstract_inverted_index":{"Execute-only":[0],"memory":[1],"acts":[2],"as":[3],"a":[4,44,51,172],"security":[5,46,180],"scheme":[6],"intended":[7],"to":[8,22,101,116,161,175,186],"protect":[9],"critical":[10],"microcontroller":[11],"firmware,":[12,57],"including":[13],"Intellectual":[14],"Property":[15],"(IP)":[16],"and":[17,32,82,98,121,137,182],"sensitive":[18],"configuration":[19],"functions":[20],"related":[21],"system":[23],"security.":[24],"The":[25,87,108],"execute-only":[26,56,141,163],"firmware":[27,89,128,164],"exclusively":[28],"permits":[29],"code":[30,104,111],"execution":[31],"prevents":[33],"any":[34],"external":[35],"attempts":[36],"at":[37],"reading":[38],"the":[39,67,78,135,140,144,150,155,177],"content.":[40],"As":[41],"part":[42],"of":[43,80,127,139],"hardware":[45,179],"assessment,":[47],"this":[48],"research":[49],"reveals":[50],"potential":[52],"vulnerability":[53],"in":[54,165],"protected":[55,162],"illustrating":[58],"that":[59],"its":[60],"content":[61],"can":[62,112,130],"be":[63,113,131],"fully":[64],"extracted":[65],"using":[66],"invasive":[68,156,190],"selective":[69,157],"chemical":[70,158],"engraving":[71,159],"technique.":[72],"This":[73,124],"technique":[74,160],"relies":[75],"on":[76],"visualizing":[77],"data":[79,122],"\u20180\u2019":[81],"\u20181\u2019":[83],"through":[84],"electrochemical":[85],"reactions.":[86],"subsequent":[88],"recovery":[90,129],"process":[91],"involves":[92],"direct":[93],"binary":[94],"extraction,":[95],"physical-to-Iogical":[96],"mapping,":[97],"error":[99],"correction":[100],"obtain":[102],"machine":[103,110],"with":[105],"100%":[106],"accuracy.":[107],"resulting":[109],"further":[114],"disassembled":[115],"analyse":[117],"various":[118],"instructions,":[119],"functions,":[120],"libraries.":[123],"bottom-up":[125],"approach":[126],"invaluable":[132],"for":[133],"assessing":[134],"integrity":[136],"authenticity":[138],"memory.":[142],"On":[143],"other":[145],"hand,":[146],"these":[147],"findings":[148],"demonstrate":[149],"significant":[151],"threat":[152],"posed":[153],"by":[154],"widely":[166],"deployed":[167],"microcontrollers.":[168],"Consequently,":[169],"there":[170],"is":[171],"pressing":[173],"need":[174],"reassess":[176],"current":[178],"schemes":[181],"implement":[183],"robust":[184],"measures":[185],"effectively":[187],"counteract":[188],"such":[189],"attacks.":[191]},"counts_by_year":[],"updated_date":"2025-12-23T23:11:35.936235","created_date":"2025-10-10T00:00:00"}
