{"id":"https://openalex.org/W4407361208","doi":"https://doi.org/10.1109/rsp64122.2024.10871078","title":"Decoding Attack Behaviors by Analyzing Patterns in Instruction-Based Attacks using gem5","display_name":"Decoding Attack Behaviors by Analyzing Patterns in Instruction-Based Attacks using gem5","publication_year":2024,"publication_date":"2024-10-03","ids":{"openalex":"https://openalex.org/W4407361208","doi":"https://doi.org/10.1109/rsp64122.2024.10871078"},"language":"en","primary_location":{"id":"doi:10.1109/rsp64122.2024.10871078","is_oa":false,"landing_page_url":"https://doi.org/10.1109/rsp64122.2024.10871078","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 International Workshop on Rapid System Prototyping (RSP)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://telecom-paris.hal.science/hal-05160886v1/file/Decoding_Attack_Behaviors_by_Analyzing_Patterns_in_Instruction-Based_Attacks_using_gem5.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5004392757","display_name":"Muhammad Awais","orcid":"https://orcid.org/0000-0002-5536-2661"},"institutions":[{"id":"https://openalex.org/I12356871","display_name":"T\u00e9l\u00e9com Paris","ror":"https://ror.org/01naq7912","country_code":"FR","type":"education","lineage":["https://openalex.org/I12356871","https://openalex.org/I205703379","https://openalex.org/I4210145102"]}],"countries":["FR"],"is_corresponding":true,"raw_author_name":"Muhammad Awais","raw_affiliation_strings":["Institut Polytechnique de Paris,Comelec, Telecom-Paris,Palaiseau,France"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Institut Polytechnique de Paris,Comelec, Telecom-Paris,Palaiseau,France","institution_ids":["https://openalex.org/I12356871"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5048830959","display_name":"Maria Mushtaq","orcid":"https://orcid.org/0000-0003-0046-2582"},"institutions":[{"id":"https://openalex.org/I12356871","display_name":"T\u00e9l\u00e9com Paris","ror":"https://ror.org/01naq7912","country_code":"FR","type":"education","lineage":["https://openalex.org/I12356871","https://openalex.org/I205703379","https://openalex.org/I4210145102"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Maria Mushtaq","raw_affiliation_strings":["Institut Polytechnique de Paris,Comelec, Telecom-Paris,Palaiseau,France"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Institut Polytechnique de Paris,Comelec, Telecom-Paris,Palaiseau,France","institution_ids":["https://openalex.org/I12356871"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5018022196","display_name":"L\u00edrida Naviner","orcid":"https://orcid.org/0000-0002-6320-4153"},"institutions":[{"id":"https://openalex.org/I12356871","display_name":"T\u00e9l\u00e9com Paris","ror":"https://ror.org/01naq7912","country_code":"FR","type":"education","lineage":["https://openalex.org/I12356871","https://openalex.org/I205703379","https://openalex.org/I4210145102"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Lirida Naviner","raw_affiliation_strings":["Institut Polytechnique de Paris,Comelec, Telecom-Paris,Palaiseau,France"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Institut Polytechnique de Paris,Comelec, Telecom-Paris,Palaiseau,France","institution_ids":["https://openalex.org/I12356871"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5004938751","display_name":"Florent Bruguier","orcid":"https://orcid.org/0000-0002-7897-5700"},"institutions":[{"id":"https://openalex.org/I1294671590","display_name":"Centre National de la Recherche Scientifique","ror":"https://ror.org/02feahw73","country_code":"FR","type":"government","lineage":["https://openalex.org/I1294671590"]},{"id":"https://openalex.org/I19894307","display_name":"Universit\u00e9 de Montpellier","ror":"https://ror.org/051escj72","country_code":"FR","type":"education","lineage":["https://openalex.org/I19894307"]},{"id":"https://openalex.org/I4210101743","display_name":"Laboratoire d'Informatique, de Robotique et de Micro\u00e9lectronique de Montpellier","ror":"https://ror.org/013yean28","country_code":"FR","type":"facility","lineage":["https://openalex.org/I1294671590","https://openalex.org/I1294671590","https://openalex.org/I1326498283","https://openalex.org/I151295451","https://openalex.org/I19894307","https://openalex.org/I4210101743","https://openalex.org/I4210159245","https://openalex.org/I4405261681"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Florent Bruguier","raw_affiliation_strings":["University of Montpellier,Lirmm, CNRS,Montpellier,France","LIRMM | ADAC - ADAptive Computing (LIRMM, 161 rue Ada, 34000 Montpellier - France)"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Montpellier,Lirmm, CNRS,Montpellier,France","institution_ids":["https://openalex.org/I19894307","https://openalex.org/I1294671590","https://openalex.org/I4210101743"]},{"raw_affiliation_string":"LIRMM | ADAC - ADAptive Computing (LIRMM, 161 rue Ada, 34000 Montpellier - France)","institution_ids":["https://openalex.org/I4210101743"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5019739002","display_name":"Jawad Haj-Yahya","orcid":"https://orcid.org/0000-0003-2911-0329"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Jawad Haj Yahya","raw_affiliation_strings":["Rivos Ins,Santa Clara,USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Rivos Ins,Santa Clara,USA","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5039823257","display_name":"Pascal Benoit","orcid":"https://orcid.org/0000-0002-2945-5725"},"institutions":[{"id":"https://openalex.org/I1294671590","display_name":"Centre National de la Recherche Scientifique","ror":"https://ror.org/02feahw73","country_code":"FR","type":"government","lineage":["https://openalex.org/I1294671590"]},{"id":"https://openalex.org/I19894307","display_name":"Universit\u00e9 de Montpellier","ror":"https://ror.org/051escj72","country_code":"FR","type":"education","lineage":["https://openalex.org/I19894307"]},{"id":"https://openalex.org/I4210101743","display_name":"Laboratoire d'Informatique, de Robotique et de Micro\u00e9lectronique de Montpellier","ror":"https://ror.org/013yean28","country_code":"FR","type":"facility","lineage":["https://openalex.org/I1294671590","https://openalex.org/I1294671590","https://openalex.org/I1326498283","https://openalex.org/I151295451","https://openalex.org/I19894307","https://openalex.org/I4210101743","https://openalex.org/I4210159245","https://openalex.org/I4405261681"]}],"countries":["FR"],"is_corresponding":false,"raw_author_name":"Pascal Benoit","raw_affiliation_strings":["University of Montpellier,Lirmm, CNRS,Montpellier,France","LIRMM | ADAC - ADAptive Computing (LIRMM, 161 rue Ada, 34000 Montpellier - France)"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Montpellier,Lirmm, CNRS,Montpellier,France","institution_ids":["https://openalex.org/I19894307","https://openalex.org/I1294671590","https://openalex.org/I4210101743"]},{"raw_affiliation_string":"LIRMM | ADAC - ADAptive Computing (LIRMM, 161 rue Ada, 34000 Montpellier - France)","institution_ids":["https://openalex.org/I4210101743"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5004392757"],"corresponding_institution_ids":["https://openalex.org/I12356871"],"apc_list":null,"apc_paid":null,"fwci":0.3223,"has_fulltext":true,"cited_by_count":1,"citation_normalized_percentile":{"value":0.59672967,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.8981999754905701,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.8981999754905701,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.788825511932373},{"id":"https://openalex.org/keywords/decoding-methods","display_name":"Decoding methods","score":0.7886868715286255},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.3853362500667572},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.380587637424469},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.09673961997032166}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.788825511932373},{"id":"https://openalex.org/C57273362","wikidata":"https://www.wikidata.org/wiki/Q576722","display_name":"Decoding methods","level":2,"score":0.7886868715286255},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.3853362500667572},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.380587637424469},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.09673961997032166}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/rsp64122.2024.10871078","is_oa":false,"landing_page_url":"https://doi.org/10.1109/rsp64122.2024.10871078","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2024 International Workshop on Rapid System Prototyping (RSP)","raw_type":"proceedings-article"},{"id":"pmh:oai:HAL:hal-05160886v1","is_oa":true,"landing_page_url":"https://telecom-paris.hal.science/hal-05160886","pdf_url":"https://telecom-paris.hal.science/hal-05160886v1/file/Decoding_Attack_Behaviors_by_Analyzing_Patterns_in_Instruction-Based_Attacks_using_gem5.pdf","source":{"id":"https://openalex.org/S4306402512","display_name":"HAL (Le Centre pour la Communication Scientifique Directe)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1294671590","host_organization_name":"Centre National de la Recherche Scientifique","host_organization_lineage":["https://openalex.org/I1294671590"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"RSP 2024 - IEEE International Workshop on Rapid System Prototyping, Oct 2024, Raleigh, North Carolina, United States. pp.1-6, &#x27E8;10.1109/RSP64122.2024.10871078&#x27E9;","raw_type":"Conference papers"}],"best_oa_location":{"id":"pmh:oai:HAL:hal-05160886v1","is_oa":true,"landing_page_url":"https://telecom-paris.hal.science/hal-05160886","pdf_url":"https://telecom-paris.hal.science/hal-05160886v1/file/Decoding_Attack_Behaviors_by_Analyzing_Patterns_in_Instruction-Based_Attacks_using_gem5.pdf","source":{"id":"https://openalex.org/S4306402512","display_name":"HAL (Le Centre pour la Communication Scientifique Directe)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1294671590","host_organization_name":"Centre National de la Recherche Scientifique","host_organization_lineage":["https://openalex.org/I1294671590"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"RSP 2024 - IEEE International Workshop on Rapid System Prototyping, Oct 2024, Raleigh, North Carolina, United States. pp.1-6, &#x27E8;10.1109/RSP64122.2024.10871078&#x27E9;","raw_type":"Conference papers"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4407361208.pdf","grobid_xml":"https://content.openalex.org/works/W4407361208.grobid-xml"},"referenced_works_count":12,"referenced_works":["https://openalex.org/W1967576688","https://openalex.org/W2156212081","https://openalex.org/W2337480911","https://openalex.org/W2532499458","https://openalex.org/W2963163273","https://openalex.org/W3036557299","https://openalex.org/W3164916130","https://openalex.org/W4226237846","https://openalex.org/W4233119454","https://openalex.org/W6628261430","https://openalex.org/W6779824479","https://openalex.org/W6796961280"],"related_works":["https://openalex.org/W4391375266","https://openalex.org/W2899084033","https://openalex.org/W2748952813","https://openalex.org/W2390279801","https://openalex.org/W4391913857","https://openalex.org/W2358668433","https://openalex.org/W4396701345","https://openalex.org/W2376932109","https://openalex.org/W2001405890","https://openalex.org/W4396696052"],"abstract_inverted_index":{"The":[0],"diversity":[1],"of":[2,128,141,167],"Instruction":[3],"Set":[4],"Architectures":[5],"(ISAs),":[6],"each":[7],"with":[8,82],"its":[9],"unique":[10],"constraints":[11],"and":[12,18,33,40,70,76,107,112,143,183],"optimization":[13],"strategies,":[14],"presents":[15],"significant":[16],"opportunities":[17],"challenges":[19],"in":[20],"processor":[21,24],"design.":[22],"Modern":[23],"vendors":[25],"exploit":[26],"these":[27],"ISAs":[28],"to":[29,63,79,96,174,178],"enhance":[30],"security,":[31],"reliability,":[32],"performance.":[34],"Recent":[35],"security":[36,50],"vulnerabilities,":[37],"notably":[38],"Spectre":[39,66],"Meltdown,":[41],"have":[42],"highlighted":[43],"the":[44,65,115,119,165,168],"critical":[45],"need":[46],"for":[47,73,134,163],"robust":[48],"hardware":[49],"measures.":[51],"In":[52,114],"this":[53,176],"paper,":[54],"we":[55,117,154],"employ":[56],"gem5,":[57,124],"a":[58,126],"state-of-the-art":[59],"cycle-accurate":[60],"simulation":[61,87],"tool,":[62],"simulate":[64],"attack.":[67],"We":[68],"developed":[69],"modified":[71],"scripts":[72],"both":[74],"x86":[75],"ARM":[77],"architectures":[78],"ensure":[80],"compatibility":[81],"gem5":[83,152],"version":[84],"23.1.":[85],"Our":[86,170],"setup":[88],"involved":[89],"running":[90],"attack":[91,158,181,186,191],"scenarios":[92],"under":[93],"various":[94],"configurations":[95],"gather":[97],"comprehensive":[98],"data":[99,149],"on":[100],"cache":[101,103,110,142],"misses,":[102],"hits,":[104],"mispredicted":[105],"branches,":[106],"level":[108],"2":[109],"hits":[111],"misses.":[113],"simulation,":[116],"analyzed":[118],"trace":[120],"files":[121],"generated":[122],"by":[123,151],"utilizing":[125],"range":[127],"debug":[129,148],"flags":[130],"such":[131],"as":[132],"Exec":[133],"disassembly":[135],"(dasm)":[136],"insights.":[137],"By":[138],"detailed":[139,147],"analysis":[140,177],"branch":[144],"prediction":[145],"using":[146],"revealed":[150],"traces,":[153],"identify":[155],"some":[156],"specific":[157],"patterns":[159],"that":[160],"are":[161],"useful":[162],"automating":[164],"detection":[166],"attacks.":[169],"future":[171],"work":[172],"aims":[173],"expand":[175],"include":[179],"additional":[180],"vectors":[182],"find":[184],"more":[185],"patterns,":[187],"thereby":[188],"strengthening":[189],"our":[190],"pattern":[192],"recognition":[193],"capabilities.":[194]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2026-05-07T13:39:58.223016","created_date":"2025-10-10T00:00:00"}
