{"id":"https://openalex.org/W2536548552","doi":"https://doi.org/10.1145/2976749.2978360","title":"Return-Oriented Flush-Reload Side Channels on ARM and Their Implications for Android Devices","display_name":"Return-Oriented Flush-Reload Side Channels on ARM and Their Implications for Android Devices","publication_year":2016,"publication_date":"2016-10-24","ids":{"openalex":"https://openalex.org/W2536548552","doi":"https://doi.org/10.1145/2976749.2978360","mag":"2536548552"},"language":"en","primary_location":{"id":"doi:10.1145/2976749.2978360","is_oa":true,"landing_page_url":"https://doi.org/10.1145/2976749.2978360","pdf_url":"http://dl.acm.org/ft_gateway.cfm?id=2978360&type=pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"http://dl.acm.org/ft_gateway.cfm?id=2978360&type=pdf","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5071738824","display_name":"Xiaokuan Zhang","orcid":"https://orcid.org/0000-0002-4646-7146"},"institutions":[{"id":"https://openalex.org/I52357470","display_name":"The Ohio State University","ror":"https://ror.org/00rs6vg23","country_code":"US","type":"education","lineage":["https://openalex.org/I52357470"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Xiaokuan Zhang","raw_affiliation_strings":["The Ohio State University, Columbus, OH, USA"],"affiliations":[{"raw_affiliation_string":"The Ohio State University, Columbus, OH, USA","institution_ids":["https://openalex.org/I52357470"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102841738","display_name":"Yuan Xiao","orcid":"https://orcid.org/0009-0003-7249-277X"},"institutions":[{"id":"https://openalex.org/I52357470","display_name":"The Ohio State University","ror":"https://ror.org/00rs6vg23","country_code":"US","type":"education","lineage":["https://openalex.org/I52357470"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yuan Xiao","raw_affiliation_strings":["The Ohio State University, Columbus, OH, USA"],"affiliations":[{"raw_affiliation_string":"The Ohio State University, Columbus, OH, USA","institution_ids":["https://openalex.org/I52357470"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5070946957","display_name":"Yinqian Zhang","orcid":"https://orcid.org/0000-0002-7585-1075"},"institutions":[{"id":"https://openalex.org/I52357470","display_name":"The Ohio State University","ror":"https://ror.org/00rs6vg23","country_code":"US","type":"education","lineage":["https://openalex.org/I52357470"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yinqian Zhang","raw_affiliation_strings":["The Ohio State University, Columbus, OH, USA"],"affiliations":[{"raw_affiliation_string":"The Ohio State University, Columbus, OH, USA","institution_ids":["https://openalex.org/I52357470"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5071738824"],"corresponding_institution_ids":["https://openalex.org/I52357470"],"apc_list":null,"apc_paid":null,"fwci":13.2516,"has_fulltext":true,"cited_by_count":62,"citation_normalized_percentile":{"value":0.98696718,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":95,"max":100},"biblio":{"volume":null,"issue":null,"first_page":"858","last_page":"870"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9977999925613403,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9751999974250793,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8346161842346191},{"id":"https://openalex.org/keywords/cache","display_name":"Cache","score":0.7593468427658081},{"id":"https://openalex.org/keywords/x86","display_name":"x86","score":0.7057097554206848},{"id":"https://openalex.org/keywords/side-channel-attack","display_name":"Side channel attack","score":0.6567251086235046},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.5605711936950684},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.5383267402648926},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.530398964881897},{"id":"https://openalex.org/keywords/android","display_name":"Android (operating system)","score":0.4971616566181183},{"id":"https://openalex.org/keywords/arm-architecture","display_name":"ARM architecture","score":0.47629132866859436},{"id":"https://openalex.org/keywords/implementation","display_name":"Implementation","score":0.43227192759513855},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.3488166928291321},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.32743725180625916},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.17839214205741882},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.16234862804412842}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8346161842346191},{"id":"https://openalex.org/C115537543","wikidata":"https://www.wikidata.org/wiki/Q165596","display_name":"Cache","level":2,"score":0.7593468427658081},{"id":"https://openalex.org/C170723468","wikidata":"https://www.wikidata.org/wiki/Q182933","display_name":"x86","level":3,"score":0.7057097554206848},{"id":"https://openalex.org/C49289754","wikidata":"https://www.wikidata.org/wiki/Q2267081","display_name":"Side channel attack","level":3,"score":0.6567251086235046},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.5605711936950684},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.5383267402648926},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.530398964881897},{"id":"https://openalex.org/C557433098","wikidata":"https://www.wikidata.org/wiki/Q94","display_name":"Android (operating system)","level":2,"score":0.4971616566181183},{"id":"https://openalex.org/C26771161","wikidata":"https://www.wikidata.org/wiki/Q16980","display_name":"ARM architecture","level":2,"score":0.47629132866859436},{"id":"https://openalex.org/C26713055","wikidata":"https://www.wikidata.org/wiki/Q245962","display_name":"Implementation","level":2,"score":0.43227192759513855},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.3488166928291321},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.32743725180625916},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.17839214205741882},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.16234862804412842},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/2976749.2978360","is_oa":true,"landing_page_url":"https://doi.org/10.1145/2976749.2978360","pdf_url":"http://dl.acm.org/ft_gateway.cfm?id=2978360&type=pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/2976749.2978360","is_oa":true,"landing_page_url":"https://doi.org/10.1145/2976749.2978360","pdf_url":"http://dl.acm.org/ft_gateway.cfm?id=2978360&type=pdf","source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G59642618","display_name":null,"funder_award_id":"1566444","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G848032724","display_name":null,"funder_award_id":"Science","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W2536548552.pdf","grobid_xml":"https://content.openalex.org/works/W2536548552.grobid-xml"},"referenced_works_count":43,"referenced_works":["https://openalex.org/W49522230","https://openalex.org/W58308990","https://openalex.org/W98341770","https://openalex.org/W1427174644","https://openalex.org/W1438441013","https://openalex.org/W1488058190","https://openalex.org/W1496265857","https://openalex.org/W1503814339","https://openalex.org/W1555558540","https://openalex.org/W1740185811","https://openalex.org/W1934458198","https://openalex.org/W1964281299","https://openalex.org/W1984361257","https://openalex.org/W1992291252","https://openalex.org/W1993520820","https://openalex.org/W1996931407","https://openalex.org/W2001759130","https://openalex.org/W2061354941","https://openalex.org/W2100741459","https://openalex.org/W2103289002","https://openalex.org/W2107816859","https://openalex.org/W2112826387","https://openalex.org/W2112968990","https://openalex.org/W2132073183","https://openalex.org/W2133467782","https://openalex.org/W2144219822","https://openalex.org/W2146573211","https://openalex.org/W2159520802","https://openalex.org/W2162800072","https://openalex.org/W2163643194","https://openalex.org/W2172060328","https://openalex.org/W2182467309","https://openalex.org/W2188789433","https://openalex.org/W2294170611","https://openalex.org/W2302098303","https://openalex.org/W2394822940","https://openalex.org/W2398262958","https://openalex.org/W2491928626","https://openalex.org/W2510423754","https://openalex.org/W2752929869","https://openalex.org/W2949317607","https://openalex.org/W2964206587","https://openalex.org/W3124674604"],"related_works":["https://openalex.org/W2098744509","https://openalex.org/W2621726323","https://openalex.org/W4383221399","https://openalex.org/W1522250664","https://openalex.org/W2385499178","https://openalex.org/W2375248064","https://openalex.org/W2890091348","https://openalex.org/W3127588454","https://openalex.org/W2536548552","https://openalex.org/W2794621460"],"abstract_inverted_index":{"Cache":[0],"side-channel":[1,22,57,81],"attacks":[2,23,69,74,82,134,153],"have":[3],"been":[4,87],"extensively":[5],"studied":[6],"on":[7,14,24,70,83,115,135],"x86":[8],"architectures,":[9],"but":[10],"much":[11],"less":[12],"so":[13],"ARM":[15,32,71,119],"processors.":[16,72],"The":[17],"technical":[18],"challenges":[19],"to":[20,127,147],"conduct":[21],"ARM,":[25],"presumably,":[26],"stem":[27],"from":[28],"the":[29,46,77,149],"poorly":[30],"documented":[31],"cache":[33,37,41,53,80],"implementations,":[34],"such":[35,152],"as":[36],"coherence":[38],"protocols":[39],"and":[40,44,142],"flush":[42],"operations,":[43],"also":[45,131],"lack":[47],"of":[48,50,65,96,111,118,151],"understanding":[49],"how":[51],"different":[52],"implementations":[54],"will":[55],"affect":[56],"attacks.":[58],"This":[59],"paper":[60],"presents":[61],"a":[62,108],"systematic":[63],"exploration":[64],"vectors":[66],"for":[67,154],"flush-reload":[68,73,112],"are":[75,94],"among":[76],"most":[78],"well-known":[79],"x86.":[84],"It":[85],"has":[86],"shown":[88],"in":[89,105],"previous":[90],"work":[91,107],"that":[92],"they":[93],"capable":[95],"exfiltrating":[97],"sensitive":[98],"information":[99],"with":[100],"high":[101],"fidelity.":[102],"We":[103,130],"demonstrate":[104,132],"this":[106],"novel":[109],"construction":[110],"side":[113],"channels":[114],"last-level":[116],"caches":[117],"processors,":[120],"which,":[121],"particularly,":[122],"exploits":[123],"return-oriented":[124],"programming":[125],"techniques":[126],"reload":[128],"instructions.":[129],"several":[133],"Android":[136,155],"OS":[137],"(e.g.,":[138],"detecting":[139],"hardware":[140],"events":[141],"tracing":[143],"software":[144],"execution":[145],"paths)":[146],"highlight":[148],"implications":[150],"devices.":[156]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":5},{"year":2022,"cited_by_count":4},{"year":2021,"cited_by_count":10},{"year":2020,"cited_by_count":5},{"year":2019,"cited_by_count":9},{"year":2018,"cited_by_count":8},{"year":2017,"cited_by_count":13}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
