{"id":"https://openalex.org/W2288554466","doi":"https://doi.org/10.1145/2854038.2854049","title":"Inference of peak density of indirect branches to detect ROP attacks","display_name":"Inference of peak density of indirect branches to detect ROP attacks","publication_year":2016,"publication_date":"2016-02-29","ids":{"openalex":"https://openalex.org/W2288554466","doi":"https://doi.org/10.1145/2854038.2854049","mag":"2288554466"},"language":"en","primary_location":{"id":"doi:10.1145/2854038.2854049","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2854038.2854049","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2016 International Symposium on Code Generation and Optimization","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5049255391","display_name":"Mateus Tymburib\u00e1","orcid":"https://orcid.org/0000-0002-6626-1786"},"institutions":[{"id":"https://openalex.org/I110200422","display_name":"Universidade Federal de Minas Gerais","ror":"https://ror.org/0176yjw32","country_code":"BR","type":"education","lineage":["https://openalex.org/I110200422"]}],"countries":["BR"],"is_corresponding":true,"raw_author_name":"Mateus Tymburib\u00e1","raw_affiliation_strings":["Federal University of Minas Gerais, Brazil"],"affiliations":[{"raw_affiliation_string":"Federal University of Minas Gerais, Brazil","institution_ids":["https://openalex.org/I110200422"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5018597638","display_name":"Rubens E.A. Moreira","orcid":null},"institutions":[{"id":"https://openalex.org/I110200422","display_name":"Universidade Federal de Minas Gerais","ror":"https://ror.org/0176yjw32","country_code":"BR","type":"education","lineage":["https://openalex.org/I110200422"]}],"countries":["BR"],"is_corresponding":false,"raw_author_name":"Rubens E. A. Moreira","raw_affiliation_strings":["Federal University of Minas Gerais, Brazil"],"affiliations":[{"raw_affiliation_string":"Federal University of Minas Gerais, Brazil","institution_ids":["https://openalex.org/I110200422"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5078149140","display_name":"Fernando Magno Quint\u00e3o Pereira","orcid":"https://orcid.org/0000-0002-0375-1657"},"institutions":[{"id":"https://openalex.org/I110200422","display_name":"Universidade Federal de Minas Gerais","ror":"https://ror.org/0176yjw32","country_code":"BR","type":"education","lineage":["https://openalex.org/I110200422"]}],"countries":["BR"],"is_corresponding":false,"raw_author_name":"Fernando Magno Quint\u00e3o Pereira","raw_affiliation_strings":["Federal University of Minas Gerais, Brazil"],"affiliations":[{"raw_affiliation_string":"Federal University of Minas Gerais, Brazil","institution_ids":["https://openalex.org/I110200422"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5049255391"],"corresponding_institution_ids":["https://openalex.org/I110200422"],"apc_list":null,"apc_paid":null,"fwci":1.78,"has_fulltext":false,"cited_by_count":7,"citation_normalized_percentile":{"value":0.88714856,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"150","last_page":"159"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9965999722480774,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12122","display_name":"Physical Unclonable Functions (PUFs) and Hardware Security","score":0.9758999943733215,"subfield":{"id":"https://openalex.org/subfields/1708","display_name":"Hardware and Architecture"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8689755201339722},{"id":"https://openalex.org/keywords/trace","display_name":"TRACE (psycholinguistics)","score":0.5768992900848389},{"id":"https://openalex.org/keywords/context","display_name":"Context (archaeology)","score":0.5447460412979126},{"id":"https://openalex.org/keywords/spec#","display_name":"Spec#","score":0.5429868102073669},{"id":"https://openalex.org/keywords/executable","display_name":"Executable","score":0.5205255746841431},{"id":"https://openalex.org/keywords/taint-checking","display_name":"Taint checking","score":0.50166916847229},{"id":"https://openalex.org/keywords/inference","display_name":"Inference","score":0.4836748540401459},{"id":"https://openalex.org/keywords/undecidable-problem","display_name":"Undecidable problem","score":0.46127769351005554},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.4296586215496063},{"id":"https://openalex.org/keywords/algorithm","display_name":"Algorithm","score":0.3694337010383606},{"id":"https://openalex.org/keywords/parallel-computing","display_name":"Parallel computing","score":0.35116612911224365},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.3475639224052429},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.3265897333621979},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.1703580915927887},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.15210846066474915}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8689755201339722},{"id":"https://openalex.org/C75291252","wikidata":"https://www.wikidata.org/wiki/Q1315756","display_name":"TRACE (psycholinguistics)","level":2,"score":0.5768992900848389},{"id":"https://openalex.org/C2779343474","wikidata":"https://www.wikidata.org/wiki/Q3109175","display_name":"Context (archaeology)","level":2,"score":0.5447460412979126},{"id":"https://openalex.org/C2778565505","wikidata":"https://www.wikidata.org/wiki/Q2207566","display_name":"Spec#","level":2,"score":0.5429868102073669},{"id":"https://openalex.org/C160145156","wikidata":"https://www.wikidata.org/wiki/Q778586","display_name":"Executable","level":2,"score":0.5205255746841431},{"id":"https://openalex.org/C63116202","wikidata":"https://www.wikidata.org/wiki/Q7676227","display_name":"Taint checking","level":3,"score":0.50166916847229},{"id":"https://openalex.org/C2776214188","wikidata":"https://www.wikidata.org/wiki/Q408386","display_name":"Inference","level":2,"score":0.4836748540401459},{"id":"https://openalex.org/C192034797","wikidata":"https://www.wikidata.org/wiki/Q3502995","display_name":"Undecidable problem","level":3,"score":0.46127769351005554},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.4296586215496063},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.3694337010383606},{"id":"https://openalex.org/C173608175","wikidata":"https://www.wikidata.org/wiki/Q232661","display_name":"Parallel computing","level":1,"score":0.35116612911224365},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.3475639224052429},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.3265897333621979},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.1703580915927887},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.15210846066474915},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C153269930","wikidata":"https://www.wikidata.org/wiki/Q430001","display_name":"Decidability","level":2,"score":0.0},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/2854038.2854049","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2854038.2854049","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2016 International Symposium on Code Generation and Optimization","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16","score":0.7400000095367432}],"awards":[],"funders":[{"id":"https://openalex.org/F4320322025","display_name":"Conselho Nacional de Desenvolvimento Cient\u00edfico e Tecnol\u00f3gico","ror":"https://ror.org/03swz6y49"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":26,"referenced_works":["https://openalex.org/W70478248","https://openalex.org/W233021882","https://openalex.org/W1429241971","https://openalex.org/W1515653707","https://openalex.org/W1544471297","https://openalex.org/W1851018411","https://openalex.org/W1878544538","https://openalex.org/W1968002620","https://openalex.org/W1984187936","https://openalex.org/W2027963645","https://openalex.org/W2047764386","https://openalex.org/W2051600169","https://openalex.org/W2087300543","https://openalex.org/W2099382052","https://openalex.org/W2117115928","https://openalex.org/W2121468041","https://openalex.org/W2122403474","https://openalex.org/W2123436168","https://openalex.org/W2131234343","https://openalex.org/W2144789413","https://openalex.org/W2159216827","https://openalex.org/W2162800072","https://openalex.org/W2171929398","https://openalex.org/W2243473591","https://openalex.org/W4239813889","https://openalex.org/W4251201460"],"related_works":["https://openalex.org/W2120230527","https://openalex.org/W1536365843","https://openalex.org/W2125797022","https://openalex.org/W1490819493","https://openalex.org/W878150521","https://openalex.org/W2008941207","https://openalex.org/W1802268423","https://openalex.org/W2357280991","https://openalex.org/W2122809586","https://openalex.org/W1972429847"],"abstract_inverted_index":{"A":[0],"program":[1],"subject":[2],"to":[3,28,35,67,107,122,160,170],"a":[4,15,90,161],"Return-Oriented":[5],"Programming":[6],"(ROP)":[7],"attack":[8,52],"usually":[9],"presents":[10],"an":[11,51,70,74,115,157],"execution":[12,138],"trace":[13],"with":[14,168],"high":[16],"frequency":[17],"of":[18,32,46,85,117,140,147],"indirect":[19,47,86],"branches.":[20],"From":[21],"this":[22],"observation,":[23],"several":[24],"researchers":[25],"have":[26,113],"proposed":[27],"monitor":[29],"the":[30,44,54,82,127,145],"density":[31,45,84],"these":[33,134],"instructions":[34,174],"detect":[36],"ROP":[37],"attacks.":[38],"These":[39],"techniques":[40],"use":[41],"universal":[42,63],"thresholds:":[43],"branches":[48,87],"that":[49,62,80],"characterizes":[50],"is":[53,153],"same":[55],"for":[56,89,97,105,126],"every":[57],"application.":[58],"This":[59,92],"paper":[60],"shows":[61],"thresholds":[64,96,125,135],"are":[65],"easy":[66],"circumvent.":[68],"As":[69],"alternative,":[71],"we":[72,143],"introduce":[73],"inter-procedural":[75],"semi-context-sensitive":[76],"static":[77],"code":[78],"analysis":[79,93],"estimates":[81],"maximum":[83],"possible":[88],"program.":[91],"determines":[94],"detection":[95],"each":[98],"application;":[99],"thus,":[100],"making":[101],"it":[102,155],"more":[103],"difficult":[104],"attackers":[106],"compromise":[108],"programs":[109,128,167],"via":[110],"ROP.":[111],"We":[112],"used":[114],"implementation":[116],"our":[118,148,151],"technique":[119],"in":[120,129,175],"LLVM":[121],"find":[123],"specific":[124],"SPEC":[130],"CPU2006.":[131],"By":[132],"comparing":[133],"against":[136],"actual":[137],"traces":[139],"corresponding":[141],"programs,":[142],"demonstrate":[144],"accuracy":[146],"approach.":[149],"Furthermore,":[150],"algorithm":[152],"practical:":[154],"finds":[156],"approximate":[158],"solution":[159],"theoretically":[162],"undecidable":[163],"problem,":[164],"and":[165],"handles":[166],"up":[169],"700":[171],"thousand":[172],"assembly":[173],"25":[176],"minutes.":[177]},"counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":1},{"year":2019,"cited_by_count":2},{"year":2018,"cited_by_count":1},{"year":2016,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
