{"id":"https://openalex.org/W4308219429","doi":"https://doi.org/10.1145/3560834.3563823","title":"Breaking KASLR on Mobile Devices without Any Use of Cache Memory","display_name":"Breaking KASLR on Mobile Devices without Any Use of Cache Memory","publication_year":2022,"publication_date":"2022-11-04","ids":{"openalex":"https://openalex.org/W4308219429","doi":"https://doi.org/10.1145/3560834.3563823"},"language":"en","primary_location":{"id":"doi:10.1145/3560834.3563823","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3560834.3563823","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2022 Workshop on Attacks and Solutions in Hardware Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5052410412","display_name":"Milad Seddigh","orcid":"https://orcid.org/0000-0001-7340-5269"},"institutions":[{"id":"https://openalex.org/I48379061","display_name":"Shahid Beheshti University","ror":"https://ror.org/0091vmj44","country_code":"IR","type":"education","lineage":["https://openalex.org/I48379061"]}],"countries":["IR"],"is_corresponding":true,"raw_author_name":"Milad Seddigh","raw_affiliation_strings":["Shahid Beheshti University, Tehran, Iran"],"affiliations":[{"raw_affiliation_string":"Shahid Beheshti University, Tehran, Iran","institution_ids":["https://openalex.org/I48379061"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5036051781","display_name":"Mahdi Esfahani","orcid":"https://orcid.org/0000-0001-7674-7600"},"institutions":[{"id":"https://openalex.org/I133529467","display_name":"Sharif University of Technology","ror":"https://ror.org/024c2fq17","country_code":"IR","type":"education","lineage":["https://openalex.org/I133529467"]}],"countries":["IR"],"is_corresponding":false,"raw_author_name":"Mahdi Esfahani","raw_affiliation_strings":["Sharif University of Technology, Tehran, Iran"],"affiliations":[{"raw_affiliation_string":"Sharif University of Technology, Tehran, Iran","institution_ids":["https://openalex.org/I133529467"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101816833","display_name":"Sarani Bhattacharya","orcid":"https://orcid.org/0000-0002-4190-2671"},"institutions":[{"id":"https://openalex.org/I4210114974","display_name":"IMEC","ror":"https://ror.org/02kcbn207","country_code":"BE","type":"nonprofit","lineage":["https://openalex.org/I4210114974"]}],"countries":["BE"],"is_corresponding":false,"raw_author_name":"Sarani Bhattacharya","raw_affiliation_strings":["Imec, Leuven, Belgium"],"affiliations":[{"raw_affiliation_string":"Imec, Leuven, Belgium","institution_ids":["https://openalex.org/I4210114974"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5028840314","display_name":"Mohammad Reza Aref","orcid":"https://orcid.org/0000-0002-4321-0345"},"institutions":[{"id":"https://openalex.org/I133529467","display_name":"Sharif University of Technology","ror":"https://ror.org/024c2fq17","country_code":"IR","type":"education","lineage":["https://openalex.org/I133529467"]}],"countries":["IR"],"is_corresponding":false,"raw_author_name":"Mohammad Reza Aref","raw_affiliation_strings":["Sharif University of Technology, Tehran, Iran"],"affiliations":[{"raw_affiliation_string":"Sharif University of Technology, Tehran, Iran","institution_ids":["https://openalex.org/I133529467"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5052055047","display_name":"Hadi Soleimany","orcid":"https://orcid.org/0000-0002-3961-4988"},"institutions":[{"id":"https://openalex.org/I48379061","display_name":"Shahid Beheshti University","ror":"https://ror.org/0091vmj44","country_code":"IR","type":"education","lineage":["https://openalex.org/I48379061"]}],"countries":["IR"],"is_corresponding":false,"raw_author_name":"Hadi Soleimany","raw_affiliation_strings":["Shahid Beheshti University, Tehran, Iran"],"affiliations":[{"raw_affiliation_string":"Shahid Beheshti University, Tehran, Iran","institution_ids":["https://openalex.org/I48379061"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5052410412"],"corresponding_institution_ids":["https://openalex.org/I48379061"],"apc_list":null,"apc_paid":null,"fwci":0.1326,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.53767686,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":95},"biblio":{"volume":null,"issue":null,"first_page":"45","last_page":"54"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10502","display_name":"Advanced Memory and Neural Computing","score":0.9879999756813049,"subfield":{"id":"https://openalex.org/subfields/2208","display_name":"Electrical and Electronic Engineering"},"field":{"id":"https://openalex.org/fields/22","display_name":"Engineering"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11614","display_name":"Cloud Data Security Solutions","score":0.9818000197410583,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8492475152015686},{"id":"https://openalex.org/keywords/cache","display_name":"Cache","score":0.5855275392532349},{"id":"https://openalex.org/keywords/kernel","display_name":"Kernel (algebra)","score":0.5136198401451111},{"id":"https://openalex.org/keywords/microarchitecture","display_name":"Microarchitecture","score":0.5129958987236023},{"id":"https://openalex.org/keywords/parallel-computing","display_name":"Parallel computing","score":0.4835036098957062},{"id":"https://openalex.org/keywords/embedded-system","display_name":"Embedded system","score":0.46704524755477905},{"id":"https://openalex.org/keywords/mobile-device","display_name":"Mobile device","score":0.4373214840888977},{"id":"https://openalex.org/keywords/address-space","display_name":"Address space","score":0.41812509298324585},{"id":"https://openalex.org/keywords/cpu-cache","display_name":"CPU cache","score":0.41468796133995056},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.3624635338783264}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8492475152015686},{"id":"https://openalex.org/C115537543","wikidata":"https://www.wikidata.org/wiki/Q165596","display_name":"Cache","level":2,"score":0.5855275392532349},{"id":"https://openalex.org/C74193536","wikidata":"https://www.wikidata.org/wiki/Q574844","display_name":"Kernel (algebra)","level":2,"score":0.5136198401451111},{"id":"https://openalex.org/C107598950","wikidata":"https://www.wikidata.org/wiki/Q259864","display_name":"Microarchitecture","level":2,"score":0.5129958987236023},{"id":"https://openalex.org/C173608175","wikidata":"https://www.wikidata.org/wiki/Q232661","display_name":"Parallel computing","level":1,"score":0.4835036098957062},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.46704524755477905},{"id":"https://openalex.org/C186967261","wikidata":"https://www.wikidata.org/wiki/Q5082128","display_name":"Mobile device","level":2,"score":0.4373214840888977},{"id":"https://openalex.org/C144240696","wikidata":"https://www.wikidata.org/wiki/Q367204","display_name":"Address space","level":2,"score":0.41812509298324585},{"id":"https://openalex.org/C189783530","wikidata":"https://www.wikidata.org/wiki/Q352090","display_name":"CPU cache","level":3,"score":0.41468796133995056},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.3624635338783264},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C114614502","wikidata":"https://www.wikidata.org/wiki/Q76592","display_name":"Combinatorics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3560834.3563823","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3560834.3563823","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2022 Workshop on Attacks and Solutions in Hardware Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.4000000059604645,"display_name":"Affordable and clean energy","id":"https://metadata.un.org/sdg/7"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":14,"referenced_works":["https://openalex.org/W1964281299","https://openalex.org/W2061354941","https://openalex.org/W2529582363","https://openalex.org/W2532499458","https://openalex.org/W2612687770","https://openalex.org/W2775990858","https://openalex.org/W2906721525","https://openalex.org/W2954241526","https://openalex.org/W2963311060","https://openalex.org/W2976763854","https://openalex.org/W3029114445","https://openalex.org/W3048784143","https://openalex.org/W4242926647","https://openalex.org/W6737008464"],"related_works":["https://openalex.org/W2167303720","https://openalex.org/W2497617944","https://openalex.org/W1563139915","https://openalex.org/W2109715593","https://openalex.org/W2061075966","https://openalex.org/W3147501184","https://openalex.org/W2268996566","https://openalex.org/W4256652509","https://openalex.org/W2140219379","https://openalex.org/W2129141857"],"abstract_inverted_index":{"Microarchitectural":[0],"attacks":[1,93,130],"utilize":[2],"the":[3,19,44,48,91,95,118],"performance":[4,31],"optimization":[5],"constructs":[6],"that":[7,82,112],"have":[8],"been":[9],"studied":[10],"over":[11],"decades":[12],"in":[13,24,117],"computer":[14],"architecture":[15],"research":[16],"and":[17,90],"show":[18],"vulnerability":[20],"of":[21,46,65],"such":[22,29,132],"optimizations":[23],"a":[25,63,98,126],"realistic":[26],"framework.":[27],"One":[28],"highly":[30],"driven":[32],"vulnerable":[33],"construct":[34],"is":[35,81,111],"speculative":[36],"execution.":[37],"In":[38],"this":[39],"paper,":[40],"we":[41],"focus":[42],"on":[43,54,75,85,104],"problem":[45],"breaking":[47,73],"kernel":[49,136],"address-space":[50],"layout":[51],"randomization":[52],"(KASLR)":[53],"modern":[55,105],"mobile":[56],"devices":[57],"without":[58],"using":[59],"cache":[60,96],"memory":[61],"as":[62,97,134],"medium":[64],"observation.":[66],"However,":[67],"there":[68],"are":[69,88,115,123],"some":[70],"challenges":[71],"to":[72],"KASLR":[74],"ARM":[76,86,106],"CPUs.":[77,107],"The":[78,108],"first":[79],"challenge":[80,110],"eviction":[83],"strategies":[84],"CPUs":[87],"slow,":[89],"microarchitectural":[92,129],"exploiting":[94],"covert":[99],"channel":[100],"cannot":[101],"be":[102],"implemented":[103],"second":[109],"non-canonical":[113],"addresses":[114,133,137],"stored":[116],"store":[119],"buffer,":[120],"although":[121],"they":[122],"invalid.":[124],"As":[125],"result,":[127],"previous":[128],"distinguish":[131],"valid":[135],"erroneously.":[138]},"counts_by_year":[{"year":2025,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
