{"id":"https://openalex.org/W3198421887","doi":"https://doi.org/10.1109/sp46214.2022.9833774","title":"Cats vs. Spectre: An Axiomatic Approach to Modeling Speculative Execution Attacks","display_name":"Cats vs. Spectre: An Axiomatic Approach to Modeling Speculative Execution Attacks","publication_year":2022,"publication_date":"2022-05-01","ids":{"openalex":"https://openalex.org/W3198421887","doi":"https://doi.org/10.1109/sp46214.2022.9833774","mag":"3198421887"},"language":"en","primary_location":{"id":"doi:10.1109/sp46214.2022.9833774","is_oa":false,"landing_page_url":"https://doi.org/10.1109/sp46214.2022.9833774","pdf_url":null,"source":{"id":"https://openalex.org/S4363606603","display_name":"2022 IEEE Symposium on Security and Privacy (SP)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2022 IEEE Symposium on Security and Privacy (SP)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5085421453","display_name":"Hern\u00e1n Ponce-de-Le\u00f3n","orcid":"https://orcid.org/0000-0002-4225-8830"},"institutions":[{"id":"https://openalex.org/I40527276","display_name":"Universit\u00e4t der Bundeswehr M\u00fcnchen","ror":"https://ror.org/05kkv3f82","country_code":"DE","type":"education","lineage":["https://openalex.org/I1315109972","https://openalex.org/I40527276","https://openalex.org/I4387152969"]}],"countries":["DE"],"is_corresponding":true,"raw_author_name":"Hern\u00e1n Ponce-de-Leon","raw_affiliation_strings":["Research Institute CODE Bundeswehr University Munich"],"affiliations":[{"raw_affiliation_string":"Research Institute CODE Bundeswehr University Munich","institution_ids":["https://openalex.org/I40527276"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5109435732","display_name":"Johannes Kinder","orcid":null},"institutions":[{"id":"https://openalex.org/I40527276","display_name":"Universit\u00e4t der Bundeswehr M\u00fcnchen","ror":"https://ror.org/05kkv3f82","country_code":"DE","type":"education","lineage":["https://openalex.org/I1315109972","https://openalex.org/I40527276","https://openalex.org/I4387152969"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Johannes Kinder","raw_affiliation_strings":["Research Institute CODE Bundeswehr University Munich"],"affiliations":[{"raw_affiliation_string":"Research Institute CODE Bundeswehr University Munich","institution_ids":["https://openalex.org/I40527276"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5085421453"],"corresponding_institution_ids":["https://openalex.org/I40527276"],"apc_list":null,"apc_paid":null,"fwci":2.5985,"has_fulltext":false,"cited_by_count":25,"citation_normalized_percentile":{"value":0.91332687,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":94,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"235","last_page":"248"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10772","display_name":"Distributed systems and fault tolerance","score":0.9937000274658203,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9919999837875366,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8429062366485596},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.599780261516571},{"id":"https://openalex.org/keywords/semantics","display_name":"Semantics (computer science)","score":0.5951545834541321},{"id":"https://openalex.org/keywords/sequential-consistency","display_name":"Sequential consistency","score":0.5285747647285461},{"id":"https://openalex.org/keywords/execution-model","display_name":"Execution model","score":0.4821000397205353},{"id":"https://openalex.org/keywords/concurrency","display_name":"Concurrency","score":0.47231245040893555},{"id":"https://openalex.org/keywords/memory-model","display_name":"Memory model","score":0.46279147267341614},{"id":"https://openalex.org/keywords/axiom","display_name":"Axiom","score":0.46267980337142944},{"id":"https://openalex.org/keywords/model-checking","display_name":"Model checking","score":0.4617841839790344},{"id":"https://openalex.org/keywords/control-flow","display_name":"Control flow","score":0.4617566764354706},{"id":"https://openalex.org/keywords/speculative-execution","display_name":"Speculative execution","score":0.458968847990036},{"id":"https://openalex.org/keywords/consistency","display_name":"Consistency (knowledge bases)","score":0.4550631046295166},{"id":"https://openalex.org/keywords/parameterized-complexity","display_name":"Parameterized complexity","score":0.43535006046295166},{"id":"https://openalex.org/keywords/symbolic-execution","display_name":"Symbolic execution","score":0.4180728793144226},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.35281237959861755},{"id":"https://openalex.org/keywords/parallel-computing","display_name":"Parallel computing","score":0.22005406022071838},{"id":"https://openalex.org/keywords/shared-memory","display_name":"Shared memory","score":0.17554154992103577},{"id":"https://openalex.org/keywords/consistency-model","display_name":"Consistency model","score":0.16217336058616638},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.11664131283760071},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.10788711905479431}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8429062366485596},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.599780261516571},{"id":"https://openalex.org/C184337299","wikidata":"https://www.wikidata.org/wiki/Q1437428","display_name":"Semantics (computer science)","level":2,"score":0.5951545834541321},{"id":"https://openalex.org/C82029504","wikidata":"https://www.wikidata.org/wiki/Q4373882","display_name":"Sequential consistency","level":4,"score":0.5285747647285461},{"id":"https://openalex.org/C2776834041","wikidata":"https://www.wikidata.org/wiki/Q25346349","display_name":"Execution model","level":2,"score":0.4821000397205353},{"id":"https://openalex.org/C193702766","wikidata":"https://www.wikidata.org/wiki/Q1414548","display_name":"Concurrency","level":2,"score":0.47231245040893555},{"id":"https://openalex.org/C12186640","wikidata":"https://www.wikidata.org/wiki/Q6815743","display_name":"Memory model","level":3,"score":0.46279147267341614},{"id":"https://openalex.org/C167729594","wikidata":"https://www.wikidata.org/wiki/Q17736","display_name":"Axiom","level":2,"score":0.46267980337142944},{"id":"https://openalex.org/C110251889","wikidata":"https://www.wikidata.org/wiki/Q1569697","display_name":"Model checking","level":2,"score":0.4617841839790344},{"id":"https://openalex.org/C160191386","wikidata":"https://www.wikidata.org/wiki/Q868299","display_name":"Control flow","level":2,"score":0.4617566764354706},{"id":"https://openalex.org/C141331961","wikidata":"https://www.wikidata.org/wiki/Q2164465","display_name":"Speculative execution","level":2,"score":0.458968847990036},{"id":"https://openalex.org/C2776436953","wikidata":"https://www.wikidata.org/wiki/Q5163215","display_name":"Consistency (knowledge bases)","level":2,"score":0.4550631046295166},{"id":"https://openalex.org/C165464430","wikidata":"https://www.wikidata.org/wiki/Q1570441","display_name":"Parameterized complexity","level":2,"score":0.43535006046295166},{"id":"https://openalex.org/C2779639559","wikidata":"https://www.wikidata.org/wiki/Q7661178","display_name":"Symbolic execution","level":3,"score":0.4180728793144226},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.35281237959861755},{"id":"https://openalex.org/C173608175","wikidata":"https://www.wikidata.org/wiki/Q232661","display_name":"Parallel computing","level":1,"score":0.22005406022071838},{"id":"https://openalex.org/C133875982","wikidata":"https://www.wikidata.org/wiki/Q764810","display_name":"Shared memory","level":2,"score":0.17554154992103577},{"id":"https://openalex.org/C37279795","wikidata":"https://www.wikidata.org/wiki/Q2492305","display_name":"Consistency model","level":3,"score":0.16217336058616638},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.11664131283760071},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.10788711905479431},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C55439883","wikidata":"https://www.wikidata.org/wiki/Q360812","display_name":"Correctness","level":2,"score":0.0},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/sp46214.2022.9833774","is_oa":false,"landing_page_url":"https://doi.org/10.1109/sp46214.2022.9833774","pdf_url":null,"source":{"id":"https://openalex.org/S4363606603","display_name":"2022 IEEE Symposium on Security and Privacy (SP)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2022 IEEE Symposium on Security and Privacy (SP)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":46,"referenced_works":["https://openalex.org/W1934458198","https://openalex.org/W1945229733","https://openalex.org/W1995825057","https://openalex.org/W2513506956","https://openalex.org/W2514850971","https://openalex.org/W2554061909","https://openalex.org/W2590250299","https://openalex.org/W2738891045","https://openalex.org/W2769194423","https://openalex.org/W2786500671","https://openalex.org/W2789383461","https://openalex.org/W2884530475","https://openalex.org/W2900479912","https://openalex.org/W2904129921","https://openalex.org/W2931679308","https://openalex.org/W2956182160","https://openalex.org/W2962722502","https://openalex.org/W2963311060","https://openalex.org/W2964590009","https://openalex.org/W2972034624","https://openalex.org/W3015465581","https://openalex.org/W3016059855","https://openalex.org/W3016553493","https://openalex.org/W3034103899","https://openalex.org/W3035655869","https://openalex.org/W3082055584","https://openalex.org/W3096867085","https://openalex.org/W3124453239","https://openalex.org/W3136898164","https://openalex.org/W3137153123","https://openalex.org/W3153387123","https://openalex.org/W3162183313","https://openalex.org/W3184539538","https://openalex.org/W3186023305","https://openalex.org/W3186074728","https://openalex.org/W3198158199","https://openalex.org/W4250728693","https://openalex.org/W6726097788","https://openalex.org/W6726450043","https://openalex.org/W6756740455","https://openalex.org/W6762600926","https://openalex.org/W6775529804","https://openalex.org/W6795949524","https://openalex.org/W6801391798","https://openalex.org/W7070539902","https://openalex.org/W7073991915"],"related_works":["https://openalex.org/W4293195734","https://openalex.org/W2106389308","https://openalex.org/W2519348496","https://openalex.org/W4256623604","https://openalex.org/W2099735635","https://openalex.org/W4307731802","https://openalex.org/W3006570935","https://openalex.org/W3178148377","https://openalex.org/W3124482667","https://openalex.org/W4287017778"],"abstract_inverted_index":{"The":[0],"SPECTRE":[1],"family":[2],"of":[3,11,41,122,144],"speculative":[4,20,63,89,112],"execution":[5,85],"attacks":[6,145],"has":[7,45],"required":[8],"a":[9,104],"rethinking":[10],"formal":[12],"methods":[13],"for":[14,72,80],"security.":[15],"Approaches":[16],"based":[17],"on":[18,67],"operational":[19],"semantics":[21,64],"have":[22],"made":[23],"initial":[24],"inroads":[25],"towards":[26],"finding":[27],"vulnerable":[28],"code":[29],"and":[30,58,97,115,146],"validating":[31],"defenses.":[32],"However,":[33],"with":[34],"each":[35],"new":[36,142],"attack":[37],"grows":[38],"the":[39,50,76,120,123,127],"amount":[40],"microarchitectural":[42],"detail":[43],"that":[44,65,87],"to":[46,61,83,126,136,140],"be":[47,133],"integrated":[48],"into":[49],"underlying":[51],"semantics.":[52],"We":[53,74,102],"propose":[54],"an":[55],"alternative,":[56],"lightweight":[57],"axiomatic":[59,128],"approach":[60],"specifying":[62],"relies":[66],"insights":[68],"from":[69],"memory":[70,81,98],"models":[71,86,114,131],"concurrency.":[73],"use":[75],"CAT":[77,113],"modeling":[78],"language":[79],"consistency":[82],"specify":[84],"capture":[88],"control":[90],"flow,":[91],"store-to-load":[92],"forwarding,":[93,96],"predictive":[94],"store":[95],"ordering":[99],"machine":[100],"clears.":[101],"present":[103],"bounded":[105],"model":[106],"checking":[107],"framework":[108,139],"parameterized":[109],"by":[110],"our":[111,130,138],"evaluate":[116],"its":[117],"implementation":[118],"against":[119,149],"state":[121],"art.":[124],"Due":[125],"approach,":[129],"can":[132],"rapidly":[134],"extended":[135],"allow":[137],"detect":[141],"types":[143],"validate":[147],"defenses":[148],"them.":[150]},"counts_by_year":[{"year":2025,"cited_by_count":11},{"year":2024,"cited_by_count":7},{"year":2023,"cited_by_count":5},{"year":2022,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
