{"id":"https://openalex.org/W4230251846","doi":"https://doi.org/10.1109/ias.2007.86","title":"Accurate Application-Specific Sandboxing for Win32/Intel Binaries","display_name":"Accurate Application-Specific Sandboxing for Win32/Intel Binaries","publication_year":2007,"publication_date":"2007-08-01","ids":{"openalex":"https://openalex.org/W4230251846","doi":"https://doi.org/10.1109/ias.2007.86"},"language":"en","primary_location":{"id":"doi:10.1109/ias.2007.86","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ias.2007.86","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Third International Symposium on Information Assurance and Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5052226698","display_name":"Wei Li","orcid":"https://orcid.org/0000-0002-0789-0320"},"institutions":[{"id":"https://openalex.org/I59553526","display_name":"Stony Brook University","ror":"https://ror.org/05qghxh33","country_code":"US","type":"education","lineage":["https://openalex.org/I59553526"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Wei Li","raw_affiliation_strings":["Computer Science Department, Stony Brook University, USA"],"affiliations":[{"raw_affiliation_string":"Computer Science Department, Stony Brook University, USA","institution_ids":["https://openalex.org/I59553526"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5109545876","display_name":"Lap-chung Lam","orcid":null},"institutions":[{"id":"https://openalex.org/I59553526","display_name":"Stony Brook University","ror":"https://ror.org/05qghxh33","country_code":"US","type":"education","lineage":["https://openalex.org/I59553526"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Lap-chung Lam","raw_affiliation_strings":["Computer Science Department, Stony Brook University, USA"],"affiliations":[{"raw_affiliation_string":"Computer Science Department, Stony Brook University, USA","institution_ids":["https://openalex.org/I59553526"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5111960386","display_name":"Tzi\u2010cker Chiueh","orcid":null},"institutions":[{"id":"https://openalex.org/I59553526","display_name":"Stony Brook University","ror":"https://ror.org/05qghxh33","country_code":"US","type":"education","lineage":["https://openalex.org/I59553526"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Tzi-cker Chiueh","raw_affiliation_strings":["Computer Science Department, Stony Brook University, USA"],"affiliations":[{"raw_affiliation_string":"Computer Science Department, Stony Brook University, USA","institution_ids":["https://openalex.org/I59553526"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5052226698"],"corresponding_institution_ids":["https://openalex.org/I59553526"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.50577059,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"1","issue":null,"first_page":"375","last_page":"382"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9991999864578247,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.9060302972793579},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.6874990463256836},{"id":"https://openalex.org/keywords/x86","display_name":"x86","score":0.6527994871139526},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.5239044427871704},{"id":"https://openalex.org/keywords/source-code","display_name":"Source code","score":0.511223316192627},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.4708145558834076},{"id":"https://openalex.org/keywords/virtual-machine","display_name":"Virtual machine","score":0.4670478403568268},{"id":"https://openalex.org/keywords/latency","display_name":"Latency (audio)","score":0.4435029923915863},{"id":"https://openalex.org/keywords/buffer-overflow","display_name":"Buffer overflow","score":0.4370933771133423},{"id":"https://openalex.org/keywords/plug-in","display_name":"Plug-in","score":0.4240318238735199},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3746219873428345}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.9060302972793579},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.6874990463256836},{"id":"https://openalex.org/C170723468","wikidata":"https://www.wikidata.org/wiki/Q182933","display_name":"x86","level":3,"score":0.6527994871139526},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.5239044427871704},{"id":"https://openalex.org/C43126263","wikidata":"https://www.wikidata.org/wiki/Q128751","display_name":"Source code","level":2,"score":0.511223316192627},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.4708145558834076},{"id":"https://openalex.org/C25344961","wikidata":"https://www.wikidata.org/wiki/Q192726","display_name":"Virtual machine","level":2,"score":0.4670478403568268},{"id":"https://openalex.org/C82876162","wikidata":"https://www.wikidata.org/wiki/Q17096504","display_name":"Latency (audio)","level":2,"score":0.4435029923915863},{"id":"https://openalex.org/C40842320","wikidata":"https://www.wikidata.org/wiki/Q19423","display_name":"Buffer overflow","level":2,"score":0.4370933771133423},{"id":"https://openalex.org/C4924752","wikidata":"https://www.wikidata.org/wiki/Q184148","display_name":"Plug-in","level":2,"score":0.4240318238735199},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3746219873428345},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/ias.2007.86","is_oa":false,"landing_page_url":"https://doi.org/10.1109/ias.2007.86","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Third International Symposium on Information Assurance and Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Industry, innovation and infrastructure","score":0.5299999713897705,"id":"https://metadata.un.org/sdg/9"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":33,"referenced_works":["https://openalex.org/W1112477","https://openalex.org/W123548525","https://openalex.org/W1524758670","https://openalex.org/W1600911019","https://openalex.org/W1690077620","https://openalex.org/W1774418490","https://openalex.org/W1903577715","https://openalex.org/W1947347140","https://openalex.org/W1972235549","https://openalex.org/W1988927353","https://openalex.org/W2040183246","https://openalex.org/W2074497238","https://openalex.org/W2109219878","https://openalex.org/W2117115928","https://openalex.org/W2123886726","https://openalex.org/W2135143063","https://openalex.org/W2149918819","https://openalex.org/W2402789968","https://openalex.org/W2911234530","https://openalex.org/W3136767761","https://openalex.org/W3158541704","https://openalex.org/W4232576303","https://openalex.org/W6600040955","https://openalex.org/W6604982192","https://openalex.org/W6631538995","https://openalex.org/W6635828606","https://openalex.org/W6638136218","https://openalex.org/W6639770171","https://openalex.org/W6640877134","https://openalex.org/W6677520968","https://openalex.org/W6682030157","https://openalex.org/W6713079407","https://openalex.org/W6758550656"],"related_works":["https://openalex.org/W47352601","https://openalex.org/W2981957539","https://openalex.org/W4287378204","https://openalex.org/W2461489085","https://openalex.org/W2545422590","https://openalex.org/W3215381467","https://openalex.org/W3033191713","https://openalex.org/W2383174935","https://openalex.org/W1515628377","https://openalex.org/W3208781723"],"abstract_inverted_index":{"Comparing":[0],"the":[1,23,35,43,51,106,117,144,210],"system":[2,55,125],"call":[3,56],"sequence":[4],"of":[5,37,53,83,122,190,206],"a":[6,10,14,38,88,98,123,132,139,158,187],"network":[7,195],"application":[8,40,107,169],"against":[9],"sandboxing":[11,64,108,124,136],"policy":[12,137,146],"is":[13,59,72,155,217],"popular":[15],"approach":[16,58],"to":[17,32,50,61,96,101,183],"detecting":[18],"control-hijacking":[19],"attack,":[20],"in":[21,91],"which":[22,92,166],"attacker":[24],"exploits":[25],"such":[26],"software":[27],"vulnerabilities":[28],"as":[29],"buffer":[30],"overflow":[31],"take":[33,81],"over":[34],"control":[36],"victim":[39],"and":[41,86,120,142,161,177,179,199,203],"possibly":[42],"underlying":[44],"machine.":[45],"The":[46,201],"long-standing":[47],"technical":[48],"barrier":[49],"acceptance":[52],"this":[54,84],"monitoring":[57],"how":[60],"derive":[62],"accurate":[63,134],"policies":[65],"for":[66,186,208],"Windows":[67],"applications":[68,211],"whose":[69],"source":[70],"code":[71],"unavailable.":[73],"In":[74],"fact,":[75],"many":[76],"commercial":[77],"computer":[78],"security":[79],"companies":[80],"advantage":[82],"fact":[85],"fashion":[87],"business":[89],"model":[90],"their":[93],"users":[94],"have":[95,213],"pay":[97],"subscription":[99],"fee":[100],"receive":[102],"periodic":[103],"updates":[104],"on":[105,157],"policies,":[109],"much":[110],"like":[111],"anti-virus":[112],"signatures.":[113],"This":[114],"paper":[115],"describes":[116],"design,":[118],"implementation":[119],"evaluation":[121],"called":[126,164],"BASS":[127,154,207],"that":[128],"can":[129,167],"automatically":[130],"extract":[131],"highly":[133],"application-specific":[135],"from":[138],"Win32/X86":[140],"binary,":[141],"enforce":[143],"extracted":[145],"at":[147],"run":[148],"time":[149],"with":[150,171],"low":[151],"performance":[152],"overhead.":[153],"built":[156],"binary":[159],"interpretation":[160],"analysis":[162],"infrastructure":[163],"BIRD,":[165],"handle":[168],"binaries":[170],"dynamically":[172],"linked":[173],"libraries,":[174],"exception":[175],"handlers":[176],"multi-threading,":[178],"has":[180],"been":[181],"shown":[182],"work":[184],"correctly":[185],"large":[188],"number":[189],"commercially":[191],"distributed":[192],"Windows-":[193],"based":[194],"applications,":[196],"including":[197],"IIS":[198],"Apache.":[200],"throughput":[202],"latency":[204],"penalty":[205],"all":[209],"we":[212],"tested":[214],"except":[215],"one":[216],"under":[218],"8%.":[219]},"counts_by_year":[],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
