{"id":"https://openalex.org/W4415624904","doi":"https://doi.org/10.1109/rtsi64020.2025.11212515","title":"Deep Neural Networks Study for Advanced Code-reuse Attacks Detection","display_name":"Deep Neural Networks Study for Advanced Code-reuse Attacks Detection","publication_year":2025,"publication_date":"2025-08-24","ids":{"openalex":"https://openalex.org/W4415624904","doi":"https://doi.org/10.1109/rtsi64020.2025.11212515"},"language":null,"primary_location":{"id":"doi:10.1109/rtsi64020.2025.11212515","is_oa":false,"landing_page_url":"https://doi.org/10.1109/rtsi64020.2025.11212515","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE 9th Forum on Research and Technologies for Society and Industry (RTSI)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5103054814","display_name":"J\u00fania Ma\u00edsa Oliveira","orcid":"https://orcid.org/0000-0002-7697-2522"},"institutions":[{"id":"https://openalex.org/I9360294","display_name":"University of Bologna","ror":"https://ror.org/01111rn36","country_code":"IT","type":"education","lineage":["https://openalex.org/I9360294"]}],"countries":["IT"],"is_corresponding":true,"raw_author_name":"J\u00fania Ma\u00edsa Oliveira","raw_affiliation_strings":["University of Bologna,Electronic, and Information Engineering (DEI),Department of Electrical,Bologna,Italy"],"affiliations":[{"raw_affiliation_string":"University of Bologna,Electronic, and Information Engineering (DEI),Department of Electrical,Bologna,Italy","institution_ids":["https://openalex.org/I9360294"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5024336537","display_name":"Alberto Musa","orcid":"https://orcid.org/0009-0003-1912-3801"},"institutions":[{"id":"https://openalex.org/I9360294","display_name":"University of Bologna","ror":"https://ror.org/01111rn36","country_code":"IT","type":"education","lineage":["https://openalex.org/I9360294"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Alberto Musa","raw_affiliation_strings":["University of Bologna,Electronic, and Information Engineering (DEI),Department of Electrical,Bologna,Italy"],"affiliations":[{"raw_affiliation_string":"University of Bologna,Electronic, and Information Engineering (DEI),Department of Electrical,Bologna,Italy","institution_ids":["https://openalex.org/I9360294"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5015497724","display_name":"Emanuele Parisi","orcid":"https://orcid.org/0000-0001-6607-7367"},"institutions":[{"id":"https://openalex.org/I9617848","display_name":"Universitat Polit\u00e8cnica de Catalunya","ror":"https://ror.org/03mb6wj31","country_code":"ES","type":"education","lineage":["https://openalex.org/I9617848"]},{"id":"https://openalex.org/I2799803557","display_name":"Barcelona Supercomputing Center","ror":"https://ror.org/05sd8tv96","country_code":"ES","type":"facility","lineage":["https://openalex.org/I2799803557","https://openalex.org/I9617848"]}],"countries":["ES"],"is_corresponding":false,"raw_author_name":"Emanuele Parisi","raw_affiliation_strings":["BSC,Computer Sciences Department,Barcelona,Spain"],"affiliations":[{"raw_affiliation_string":"BSC,Computer Sciences Department,Barcelona,Spain","institution_ids":["https://openalex.org/I9617848","https://openalex.org/I2799803557"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5022195134","display_name":"Francesco Barchi","orcid":"https://orcid.org/0000-0001-5155-6883"},"institutions":[{"id":"https://openalex.org/I9360294","display_name":"University of Bologna","ror":"https://ror.org/01111rn36","country_code":"IT","type":"education","lineage":["https://openalex.org/I9360294"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Francesco Barchi","raw_affiliation_strings":["University of Bologna,Electronic, and Information Engineering (DEI),Department of Electrical,Bologna,Italy"],"affiliations":[{"raw_affiliation_string":"University of Bologna,Electronic, and Information Engineering (DEI),Department of Electrical,Bologna,Italy","institution_ids":["https://openalex.org/I9360294"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5031653904","display_name":"Andrea Acquaviva","orcid":"https://orcid.org/0000-0002-7323-759X"},"institutions":[{"id":"https://openalex.org/I9360294","display_name":"University of Bologna","ror":"https://ror.org/01111rn36","country_code":"IT","type":"education","lineage":["https://openalex.org/I9360294"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Andrea Acquaviva","raw_affiliation_strings":["University of Bologna,Electronic, and Information Engineering (DEI),Department of Electrical,Bologna,Italy"],"affiliations":[{"raw_affiliation_string":"University of Bologna,Electronic, and Information Engineering (DEI),Department of Electrical,Bologna,Italy","institution_ids":["https://openalex.org/I9360294"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5103054814"],"corresponding_institution_ids":["https://openalex.org/I9360294"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.17325684,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"332","last_page":"337"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.7249000072479248,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.7249000072479248,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.17560000717639923,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.03869999945163727,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/deep-learning","display_name":"Deep learning","score":0.5611000061035156},{"id":"https://openalex.org/keywords/trace","display_name":"TRACE (psycholinguistics)","score":0.5590999722480774},{"id":"https://openalex.org/keywords/benchmark","display_name":"Benchmark (surveying)","score":0.5576000213623047},{"id":"https://openalex.org/keywords/control-flow","display_name":"Control flow","score":0.5218999981880188},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.5076000094413757},{"id":"https://openalex.org/keywords/set","display_name":"Set (abstract data type)","score":0.4618000090122223},{"id":"https://openalex.org/keywords/reuse","display_name":"Reuse","score":0.45239999890327454},{"id":"https://openalex.org/keywords/artificial-neural-network","display_name":"Artificial neural network","score":0.44760000705718994},{"id":"https://openalex.org/keywords/embedding","display_name":"Embedding","score":0.39719998836517334}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8335000276565552},{"id":"https://openalex.org/C108583219","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep learning","level":2,"score":0.5611000061035156},{"id":"https://openalex.org/C75291252","wikidata":"https://www.wikidata.org/wiki/Q1315756","display_name":"TRACE (psycholinguistics)","level":2,"score":0.5590999722480774},{"id":"https://openalex.org/C185798385","wikidata":"https://www.wikidata.org/wiki/Q1161707","display_name":"Benchmark (surveying)","level":2,"score":0.5576000213623047},{"id":"https://openalex.org/C160191386","wikidata":"https://www.wikidata.org/wiki/Q868299","display_name":"Control flow","level":2,"score":0.5218999981880188},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.5076000094413757},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.4618000090122223},{"id":"https://openalex.org/C206588197","wikidata":"https://www.wikidata.org/wiki/Q846574","display_name":"Reuse","level":2,"score":0.45239999890327454},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.44920000433921814},{"id":"https://openalex.org/C50644808","wikidata":"https://www.wikidata.org/wiki/Q192776","display_name":"Artificial neural network","level":2,"score":0.44760000705718994},{"id":"https://openalex.org/C41608201","wikidata":"https://www.wikidata.org/wiki/Q980509","display_name":"Embedding","level":2,"score":0.39719998836517334},{"id":"https://openalex.org/C123657996","wikidata":"https://www.wikidata.org/wiki/Q12271","display_name":"Architecture","level":2,"score":0.39629998803138733},{"id":"https://openalex.org/C35525427","wikidata":"https://www.wikidata.org/wiki/Q745881","display_name":"Intrusion detection system","level":2,"score":0.3953999876976013},{"id":"https://openalex.org/C107598950","wikidata":"https://www.wikidata.org/wiki/Q259864","display_name":"Microarchitecture","level":2,"score":0.39469999074935913},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.38850000500679016},{"id":"https://openalex.org/C202491316","wikidata":"https://www.wikidata.org/wiki/Q272683","display_name":"Instruction set","level":2,"score":0.3758000135421753},{"id":"https://openalex.org/C2778583558","wikidata":"https://www.wikidata.org/wiki/Q771245","display_name":"Code reuse","level":3,"score":0.3391999900341034},{"id":"https://openalex.org/C118524514","wikidata":"https://www.wikidata.org/wiki/Q173212","display_name":"Computer architecture","level":1,"score":0.3264999985694885},{"id":"https://openalex.org/C2780586882","wikidata":"https://www.wikidata.org/wiki/Q7520643","display_name":"Simple (philosophy)","level":2,"score":0.3249000012874603},{"id":"https://openalex.org/C113775141","wikidata":"https://www.wikidata.org/wiki/Q428691","display_name":"Computer engineering","level":1,"score":0.3075000047683716},{"id":"https://openalex.org/C120314980","wikidata":"https://www.wikidata.org/wiki/Q180634","display_name":"Distributed computing","level":1,"score":0.3070000112056732},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.29910001158714294},{"id":"https://openalex.org/C26771161","wikidata":"https://www.wikidata.org/wiki/Q16980","display_name":"ARM architecture","level":2,"score":0.2985999882221222},{"id":"https://openalex.org/C2775924081","wikidata":"https://www.wikidata.org/wiki/Q55608371","display_name":"Control (management)","level":2,"score":0.2867000102996826},{"id":"https://openalex.org/C63540848","wikidata":"https://www.wikidata.org/wiki/Q3140932","display_name":"Fault tolerance","level":2,"score":0.26840001344680786},{"id":"https://openalex.org/C2775928411","wikidata":"https://www.wikidata.org/wiki/Q2041312","display_name":"Fault injection","level":3,"score":0.2678000032901764},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.26440000534057617},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.2612000107765198},{"id":"https://openalex.org/C43126263","wikidata":"https://www.wikidata.org/wiki/Q128751","display_name":"Source code","level":2,"score":0.260699987411499},{"id":"https://openalex.org/C2984842247","wikidata":"https://www.wikidata.org/wiki/Q197536","display_name":"Deep neural networks","level":3,"score":0.25780001282691956},{"id":"https://openalex.org/C2777210771","wikidata":"https://www.wikidata.org/wiki/Q4927124","display_name":"Block (permutation group theory)","level":2,"score":0.2547999918460846},{"id":"https://openalex.org/C147168706","wikidata":"https://www.wikidata.org/wiki/Q1457734","display_name":"Recurrent neural network","level":3,"score":0.2533999979496002}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/rtsi64020.2025.11212515","is_oa":false,"landing_page_url":"https://doi.org/10.1109/rtsi64020.2025.11212515","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2025 IEEE 9th Forum on Research and Technologies for Society and Industry (RTSI)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":11,"referenced_works":["https://openalex.org/W1969501726","https://openalex.org/W1993682390","https://openalex.org/W2089448621","https://openalex.org/W3018703760","https://openalex.org/W3023052894","https://openalex.org/W3210270067","https://openalex.org/W4226062947","https://openalex.org/W4312750449","https://openalex.org/W4388734634","https://openalex.org/W4390189095","https://openalex.org/W4401568796"],"related_works":[],"abstract_inverted_index":{"The":[0],"RISC-V":[1,46,173],"architecture":[2,54],"is":[3,18,197],"becoming":[4],"increasingly":[5],"common":[6],"in":[7,45,158,203,209],"embedded":[8],"systems,":[9],"including":[10],"industrial":[11],"controllers":[12],"and":[13,33,97,114,133,135,149,175,206],"autonomous":[14],"vehicles,":[15],"where":[16],"security":[17],"a":[19,128,190],"critical":[20],"concern.":[21],"These":[22,140],"systems":[23,47],"require":[24],"protection":[25],"against":[26,62],"cyberattacks":[27],"that":[28,189],"can":[29,89,99],"compromise":[30],"program":[31],"flow":[32],"trigger":[34],"malicious":[35],"behavior.":[36],"Recent":[37],"approaches":[38],"to":[39,154,199],"applying":[40],"Control":[41],"Flow":[42],"Integrity":[43],"(CFI)":[44],"involve":[48],"either":[49],"modifying":[50],"the":[51,86,177],"instruction":[52,104],"set":[53],"or":[55,77,106],"implementing":[56],"custom":[57,75],"hardware":[58],"IP.":[59],"Although":[60],"effective":[61],"many":[63],"Code":[64],"Reuse":[65],"Attacks":[66],"(CRAs),":[67],"these":[68],"countermeasures":[69],"often":[70],"depend":[71],"on":[72,85,172,182,194],"specialized":[73],"toolchains,":[74],"binaries,":[76],"dedicated":[78],"CFI":[79],"hardware.":[80],"Deep":[81,117],"Learning":[82],"(DL)-based":[83],"techniques,":[84],"other":[87],"hand,":[88],"learn":[90],"complex,":[91],"high-dimensional":[92],"signatures":[93],"of":[94,138],"code":[95],"reuse,":[96],"they":[98],"incorporate":[100],"features":[101],"from":[102],"any":[103],"stream":[105],"microarchitectural":[107],"trace.":[108],"In":[109],"this":[110],"work,":[111],"we":[112,126],"propose":[113,127],"evaluate":[115,155],"several":[116],"Neural":[118],"Network":[119],"(DNN)":[120],"architectures":[121,174],"for":[122,130],"detecting":[123],"CRAs.":[124],"Specifically,":[125],"framework":[129],"dataset":[131],"creation":[132],"supervised":[134],"semi-supervised":[136],"training":[137],"DNNs.":[139],"DNNs":[141],"integrate":[142],"state-of-the-art":[143],"embedding":[144],"mechanisms":[145],"along":[146],"with":[147],"recurrent,":[148],"attention":[150],"layers,":[151],"allowing":[152],"us":[153],"their":[156],"performance":[157],"recognizing":[159],"valid":[160],"execution":[161],"paths":[162],"within":[163],"benchmark":[164],"programs.":[165],"Execution":[166],"traces":[167],"were":[168],"extracted":[169],"using":[170,176],"QEMU":[171],"Intel":[178,183,204],"Processor":[179],"Trace":[180],"(IPT)":[181],"x86_64":[184,205],"architectures.":[185],"Our":[186],"results":[187],"show":[188],"simple":[191],"RNN":[192],"based":[193],"GRU":[195],"layers":[196],"sufficient":[198],"achieve":[200],"99%":[201],"accuracy":[202,208],"96%":[207],"RISC-V.":[210]},"counts_by_year":[],"updated_date":"2026-03-07T16:01:11.037858","created_date":"2025-10-28T00:00:00"}
