{"id":"https://openalex.org/W1993682390","doi":"https://doi.org/10.1145/2810103.2813673","title":"Practical Context-Sensitive CFI","display_name":"Practical Context-Sensitive CFI","publication_year":2015,"publication_date":"2015-10-06","ids":{"openalex":"https://openalex.org/W1993682390","doi":"https://doi.org/10.1145/2810103.2813673","mag":"1993682390"},"language":"en","primary_location":{"id":"doi:10.1145/2810103.2813673","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2810103.2813673","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5004487846","display_name":"Victor van der Veen","orcid":null},"institutions":[],"countries":[],"is_corresponding":true,"raw_author_name":"Victor van der Veen","raw_affiliation_strings":["VU University, Amsterdam, Netherlands"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"VU University, Amsterdam, Netherlands","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009305206","display_name":"Dennis Andriesse","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Dennis Andriesse","raw_affiliation_strings":["VU University, Amsterdam, Netherlands"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"VU University, Amsterdam, Netherlands","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5004146830","display_name":"Enes G\u00f6kta\u015f","orcid":"https://orcid.org/0009-0000-4988-7229"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Enes G\u00f6kta\u015f","raw_affiliation_strings":["VU University, Amsterdam, Netherlands"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"VU University, Amsterdam, Netherlands","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5068144901","display_name":"Ben Gras","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Ben Gras","raw_affiliation_strings":["VU University, Amsterdam, Netherlands"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"VU University, Amsterdam, Netherlands","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5033447115","display_name":"Lionel Sambuc","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Lionel Sambuc","raw_affiliation_strings":["VU University, Amsterdam, Netherlands"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"VU University, Amsterdam, Netherlands","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5010266944","display_name":"Asia Slowinska","orcid":"https://orcid.org/0009-0008-0416-3751"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Asia Slowinska","raw_affiliation_strings":["VU University / Lastline, Inc, Amsterdam / Santa Barbara, CA, Netherlands","VU University / Lastline, Inc, Amsterdam / Santa Barbara, CA, Netherlands#TAB#"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"VU University / Lastline, Inc, Amsterdam / Santa Barbara, CA, Netherlands","institution_ids":[]},{"raw_affiliation_string":"VU University / Lastline, Inc, Amsterdam / Santa Barbara, CA, Netherlands#TAB#","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5029566823","display_name":"Herbert Bos","orcid":"https://orcid.org/0000-0001-6179-1510"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Herbert Bos","raw_affiliation_strings":["VU University, Amsterdam, Netherlands"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"VU University, Amsterdam, Netherlands","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5083941826","display_name":"Cristiano Giuffrida","orcid":"https://orcid.org/0000-0002-8329-5929"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Cristiano Giuffrida","raw_affiliation_strings":["VU University, Amsterdam, Netherlands"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"VU University, Amsterdam, Netherlands","institution_ids":[]}]}],"institutions":[],"countries_distinct_count":0,"institutions_distinct_count":8,"corresponding_author_ids":["https://openalex.org/A5004487846"],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":29.8238,"has_fulltext":false,"cited_by_count":192,"citation_normalized_percentile":{"value":0.99660441,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":94,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"927","last_page":"940"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9937999844551086,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11005","display_name":"Radiation Effects in Electronics","score":0.9657999873161316,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/context","display_name":"Context (archaeology)","score":0.762689471244812},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.743629515171051},{"id":"https://openalex.org/keywords/implementation","display_name":"Implementation","score":0.6784894466400146},{"id":"https://openalex.org/keywords/enhanced-data-rates-for-gsm-evolution","display_name":"Enhanced Data Rates for GSM Evolution","score":0.5373358726501465},{"id":"https://openalex.org/keywords/state","display_name":"State (computer science)","score":0.4951571524143219},{"id":"https://openalex.org/keywords/set","display_name":"Set (abstract data type)","score":0.4872664213180542},{"id":"https://openalex.org/keywords/control","display_name":"Control (management)","score":0.46448808908462524},{"id":"https://openalex.org/keywords/control-flow","display_name":"Control flow","score":0.412861168384552},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.2378799319267273},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.1925382912158966},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.173811137676239}],"concepts":[{"id":"https://openalex.org/C2779343474","wikidata":"https://www.wikidata.org/wiki/Q3109175","display_name":"Context (archaeology)","level":2,"score":0.762689471244812},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.743629515171051},{"id":"https://openalex.org/C26713055","wikidata":"https://www.wikidata.org/wiki/Q245962","display_name":"Implementation","level":2,"score":0.6784894466400146},{"id":"https://openalex.org/C162307627","wikidata":"https://www.wikidata.org/wiki/Q204833","display_name":"Enhanced Data Rates for GSM Evolution","level":2,"score":0.5373358726501465},{"id":"https://openalex.org/C48103436","wikidata":"https://www.wikidata.org/wiki/Q599031","display_name":"State (computer science)","level":2,"score":0.4951571524143219},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.4872664213180542},{"id":"https://openalex.org/C2775924081","wikidata":"https://www.wikidata.org/wiki/Q55608371","display_name":"Control (management)","level":2,"score":0.46448808908462524},{"id":"https://openalex.org/C160191386","wikidata":"https://www.wikidata.org/wiki/Q868299","display_name":"Control flow","level":2,"score":0.412861168384552},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.2378799319267273},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.1925382912158966},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.173811137676239},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0}],"mesh":[],"locations_count":4,"locations":[{"id":"doi:10.1145/2810103.2813673","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2810103.2813673","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},{"id":"pmh:oai:research.vu.nl:openaire_cris_publications/dece7f27-d636-4033-b5e6-dafda9b9e6d2","is_oa":false,"landing_page_url":"https://hdl.handle.net/1871.1/dece7f27-d636-4033-b5e6-dafda9b9e6d2","pdf_url":null,"source":{"id":"https://openalex.org/S4306401107","display_name":"VU Research Portal","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I865915315","host_organization_name":"Vrije Universiteit Amsterdam","host_organization_lineage":["https://openalex.org/I865915315"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"van der Veen, V, Andriesse, D, Goktas, E, Gras, B, Sambuc, L A, Slowinska, A, Bos, H & Giuffrida, C 2015, Practical Context-sensitive CFI. in CCS 2015 - Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. vol. 2015-October, Association for Computing Machinery (ACM), pp. 927-940, 22nd ACM SIGSAC Conference on Computer and Communications Security, CCS 2015, Denver, United States, 12/10/15. https://doi.org/10.1145/2810103.2813673","raw_type":"info:eu-repo/semantics/publishedVersion"},{"id":"pmh:oai:research.vu.nl:publications/dece7f27-d636-4033-b5e6-dafda9b9e6d2","is_oa":false,"landing_page_url":"http://www.scopus.com/inward/citedby.url?scp=84954175453&partnerID=8YFLogxK","pdf_url":null,"source":{"id":"https://openalex.org/S4306401107","display_name":"VU Research Portal","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I865915315","host_organization_name":"Vrije Universiteit Amsterdam","host_organization_lineage":["https://openalex.org/I865915315"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"van der Veen, V, Andriesse, D, Goktas, E, Gras, B, Sambuc, L A, Slowinska, A, Bos, H & Giuffrida, C 2015, Practical Context-sensitive CFI. in CCS 2015 - Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. vol. 2015-October, Association for Computing Machinery (ACM), pp. 927-940, 22nd ACM SIGSAC Conference on Computer and Communications Security, CCS 2015, Denver, United States, 12/10/15. https://doi.org/10.1145/2810103.2813673","raw_type":"info:eu-repo/semantics/publishedVersion"},{"id":"pmh:vu:oai:research.vu.nl:publications/dece7f27-d636-4033-b5e6-dafda9b9e6d2","is_oa":false,"landing_page_url":"https://research.vu.nl/en/publications/dece7f27-d636-4033-b5e6-dafda9b9e6d2","pdf_url":null,"source":{"id":"https://openalex.org/S4306401843","display_name":"Data Archiving and Networked Services (DANS)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1322597698","host_organization_name":"Royal Netherlands Academy of Arts and Sciences","host_organization_lineage":["https://openalex.org/I1322597698"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"CCS 2015 - Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security, 2015-October, 927 - 940","raw_type":"info:eu-repo/semantics/conferencepaper"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":48,"referenced_works":["https://openalex.org/W70478248","https://openalex.org/W1429241971","https://openalex.org/W1477563924","https://openalex.org/W1537077670","https://openalex.org/W1544471297","https://openalex.org/W1590050693","https://openalex.org/W1593678010","https://openalex.org/W1631846088","https://openalex.org/W1816718056","https://openalex.org/W1823377586","https://openalex.org/W1963947298","https://openalex.org/W1968002620","https://openalex.org/W1969338270","https://openalex.org/W1990465482","https://openalex.org/W1993736952","https://openalex.org/W1996931407","https://openalex.org/W2015083179","https://openalex.org/W2022018347","https://openalex.org/W2022292029","https://openalex.org/W2048229966","https://openalex.org/W2064452120","https://openalex.org/W2065540707","https://openalex.org/W2071985251","https://openalex.org/W2074943483","https://openalex.org/W2080379526","https://openalex.org/W2109219878","https://openalex.org/W2115539010","https://openalex.org/W2117115928","https://openalex.org/W2121579803","https://openalex.org/W2123886726","https://openalex.org/W2124360577","https://openalex.org/W2131821445","https://openalex.org/W2133592286","https://openalex.org/W2136096788","https://openalex.org/W2138049695","https://openalex.org/W2138517425","https://openalex.org/W2147976636","https://openalex.org/W2148625620","https://openalex.org/W2148686658","https://openalex.org/W2158389625","https://openalex.org/W2159059513","https://openalex.org/W2159216827","https://openalex.org/W2160468841","https://openalex.org/W2162800072","https://openalex.org/W2162986442","https://openalex.org/W2171929398","https://openalex.org/W2398729674","https://openalex.org/W2409405430"],"related_works":["https://openalex.org/W2120447654","https://openalex.org/W2977179488","https://openalex.org/W2144453115","https://openalex.org/W2128223750","https://openalex.org/W4238532390","https://openalex.org/W2188872161","https://openalex.org/W2002978035","https://openalex.org/W2961779879","https://openalex.org/W797688974","https://openalex.org/W2209382646"],"abstract_inverted_index":{"Current":[0],"Control-Flow":[1],"Integrity":[2],"(CFI)":[3],"implementations":[4],"track":[5],"control":[6,83],"edges":[7,84],"individually,":[8],"insensitive":[9],"to":[10,73,89],"the":[11,51,79,86],"context":[12,88],"of":[13,81],"preceding":[14],"edges.":[15],"Recent":[16],"work":[17,43],"demonstrates":[18],"that":[19,45],"this":[20],"leaves":[21],"sufficient":[22],"leeway":[23],"for":[24,39,49],"powerful":[25],"ROP":[26],"attacks.":[27],"Context-sensitive":[28,46],"CFI,":[29,110],"which":[30,70],"can":[31,56],"provide":[32],"enhanced":[33],"security,":[34],"is":[35],"widely":[36],"considered":[37],"impractical":[38],"real-world":[40],"adoption.":[41],"Our":[42],"shows":[44],"CFI":[47,95,106],"(CCFI)":[48],"both":[50],"backward":[52],"and":[53,77],"forward":[54],"edge":[55],"be":[57],"implemented":[58],"efficiently":[59],"on":[60],"commodity":[61],"hardware.":[62],"We":[63],"present":[64],"PathArmor,":[65],"a":[66],"binary-level":[67],"CCFI":[68],"implementation":[69],"tracks":[71],"paths":[72],"sensitive":[74],"program":[75],"states,":[76],"defines":[78],"set":[80],"valid":[82],"within":[85],"state":[87],"yield":[90],"higher":[91],"precision":[92],"than":[93,108],"existing":[94],"implementations.":[96],"Even":[97],"with":[98,111],"simple":[99],"context-sensitive":[100],"policies,":[101],"PathArmor":[102],"yields":[103],"significantly":[104],"stronger":[105],"invariants":[107],"context-insensitive":[109],"similar":[112],"performance.":[113]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":17},{"year":2024,"cited_by_count":17},{"year":2023,"cited_by_count":18},{"year":2022,"cited_by_count":9},{"year":2021,"cited_by_count":20},{"year":2020,"cited_by_count":19},{"year":2019,"cited_by_count":23},{"year":2018,"cited_by_count":20},{"year":2017,"cited_by_count":31},{"year":2016,"cited_by_count":14},{"year":2015,"cited_by_count":2}],"updated_date":"2026-04-28T14:05:53.105641","created_date":"2025-10-10T00:00:00"}
