{"id":"https://openalex.org/W4315779433","doi":"https://doi.org/10.56553/popets-2023-0036","title":"Efficient Proofs of Software Exploitability for Real-world Processors","display_name":"Efficient Proofs of Software Exploitability for Real-world Processors","publication_year":2023,"publication_date":"2023-01-01","ids":{"openalex":"https://openalex.org/W4315779433","doi":"https://doi.org/10.56553/popets-2023-0036"},"language":"en","primary_location":{"id":"doi:10.56553/popets-2023-0036","is_oa":true,"landing_page_url":"https://doi.org/10.56553/popets-2023-0036","pdf_url":"https://petsymposium.org/popets/2023/popets-2023-0036.pdf","source":{"id":"https://openalex.org/S4210183172","display_name":"Proceedings on Privacy Enhancing Technologies","issn_l":"2299-0984","issn":["2299-0984"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320322","host_organization_name":"De Gruyter Open","host_organization_lineage":["https://openalex.org/P4310320322","https://openalex.org/P4310313990"],"host_organization_lineage_names":["De Gruyter Open","De Gruyter"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings on Privacy Enhancing Technologies","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://petsymposium.org/popets/2023/popets-2023-0036.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100626525","display_name":"Matthew Green","orcid":"https://orcid.org/0000-0001-5518-3412"},"institutions":[{"id":"https://openalex.org/I145311948","display_name":"Johns Hopkins University","ror":"https://ror.org/00za53h95","country_code":"US","type":"education","lineage":["https://openalex.org/I145311948"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Matthew Green","raw_affiliation_strings":["Johns Hopkins University","Johns Hopkins University USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Johns Hopkins University","institution_ids":["https://openalex.org/I145311948"]},{"raw_affiliation_string":"Johns Hopkins University USA","institution_ids":["https://openalex.org/I145311948"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5077381087","display_name":"Mathias Hall-Andersen","orcid":"https://orcid.org/0000-0002-0195-6659"},"institutions":[{"id":"https://openalex.org/I204337017","display_name":"Aarhus University","ror":"https://ror.org/01aj84f44","country_code":"DK","type":"education","lineage":["https://openalex.org/I204337017"]}],"countries":["DK"],"is_corresponding":false,"raw_author_name":"Mathias Hall-Andersen","raw_affiliation_strings":["Aarhus University","Aarhus University Denmark"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Aarhus University","institution_ids":["https://openalex.org/I204337017"]},{"raw_affiliation_string":"Aarhus University Denmark","institution_ids":["https://openalex.org/I204337017"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5054389495","display_name":"Eric Hennenfent","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Eric Hennenfent","raw_affiliation_strings":["Trail of Bits","Trail of Bits USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Trail of Bits","institution_ids":[]},{"raw_affiliation_string":"Trail of Bits USA","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5091589622","display_name":"Gabriel Kaptchuk","orcid":"https://orcid.org/0000-0002-8886-4748"},"institutions":[{"id":"https://openalex.org/I111088046","display_name":"Boston University","ror":"https://ror.org/05qwgg493","country_code":"US","type":"education","lineage":["https://openalex.org/I111088046"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Gabriel Kaptchuk","raw_affiliation_strings":["Boston University","Boston University USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Boston University","institution_ids":[]},{"raw_affiliation_string":"Boston University USA","institution_ids":["https://openalex.org/I111088046"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5104353836","display_name":"Benjam\u00edn Calvo P\u00e9rez","orcid":null},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Benjamin Perez","raw_affiliation_strings":["Trail of Bits","Trail of Bits USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Trail of Bits","institution_ids":[]},{"raw_affiliation_string":"Trail of Bits USA","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5040502786","display_name":"Gijs Van Laer","orcid":"https://orcid.org/0009-0009-1466-854X"},"institutions":[{"id":"https://openalex.org/I145311948","display_name":"Johns Hopkins University","ror":"https://ror.org/00za53h95","country_code":"US","type":"education","lineage":["https://openalex.org/I145311948"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Gijs Van Laer","raw_affiliation_strings":["Johns Hopkins University","Johns Hopkins University USA"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Johns Hopkins University","institution_ids":["https://openalex.org/I145311948"]},{"raw_affiliation_string":"Johns Hopkins University USA","institution_ids":["https://openalex.org/I145311948"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.4684,"has_fulltext":true,"cited_by_count":9,"citation_normalized_percentile":{"value":0.84962423,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":98},"biblio":{"volume":"2023","issue":"1","first_page":"627","last_page":"640"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10270","display_name":"Blockchain Technology Applications and Security","score":0.9882000088691711,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11689","display_name":"Adversarial Robustness in Machine Learning","score":0.9879999756813049,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/toolchain","display_name":"Toolchain","score":0.991847038269043},{"id":"https://openalex.org/keywords/compiler","display_name":"Compiler","score":0.8814786672592163},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8378626108169556},{"id":"https://openalex.org/keywords/mathematical-proof","display_name":"Mathematical proof","score":0.8123176097869873},{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.6306140422821045},{"id":"https://openalex.org/keywords/executable","display_name":"Executable","score":0.627895712852478},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.5494945049285889},{"id":"https://openalex.org/keywords/soundness","display_name":"Soundness","score":0.5311716198921204},{"id":"https://openalex.org/keywords/construct","display_name":"Construct (python library)","score":0.49000611901283264},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.45956969261169434},{"id":"https://openalex.org/keywords/optimizing-compiler","display_name":"Optimizing compiler","score":0.4227769076824188},{"id":"https://openalex.org/keywords/parallel-computing","display_name":"Parallel computing","score":0.37708649039268494}],"concepts":[{"id":"https://openalex.org/C2777062904","wikidata":"https://www.wikidata.org/wiki/Q545406","display_name":"Toolchain","level":3,"score":0.991847038269043},{"id":"https://openalex.org/C169590947","wikidata":"https://www.wikidata.org/wiki/Q47506","display_name":"Compiler","level":2,"score":0.8814786672592163},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8378626108169556},{"id":"https://openalex.org/C108710211","wikidata":"https://www.wikidata.org/wiki/Q11538","display_name":"Mathematical proof","level":2,"score":0.8123176097869873},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.6306140422821045},{"id":"https://openalex.org/C160145156","wikidata":"https://www.wikidata.org/wiki/Q778586","display_name":"Executable","level":2,"score":0.627895712852478},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.5494945049285889},{"id":"https://openalex.org/C39920170","wikidata":"https://www.wikidata.org/wiki/Q693083","display_name":"Soundness","level":2,"score":0.5311716198921204},{"id":"https://openalex.org/C2780801425","wikidata":"https://www.wikidata.org/wiki/Q5164392","display_name":"Construct (python library)","level":2,"score":0.49000611901283264},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.45956969261169434},{"id":"https://openalex.org/C190902152","wikidata":"https://www.wikidata.org/wiki/Q1325106","display_name":"Optimizing compiler","level":3,"score":0.4227769076824188},{"id":"https://openalex.org/C173608175","wikidata":"https://www.wikidata.org/wiki/Q232661","display_name":"Parallel computing","level":1,"score":0.37708649039268494},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.0},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C2524010","wikidata":"https://www.wikidata.org/wiki/Q8087","display_name":"Geometry","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.56553/popets-2023-0036","is_oa":true,"landing_page_url":"https://doi.org/10.56553/popets-2023-0036","pdf_url":"https://petsymposium.org/popets/2023/popets-2023-0036.pdf","source":{"id":"https://openalex.org/S4210183172","display_name":"Proceedings on Privacy Enhancing Technologies","issn_l":"2299-0984","issn":["2299-0984"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320322","host_organization_name":"De Gruyter Open","host_organization_lineage":["https://openalex.org/P4310320322","https://openalex.org/P4310313990"],"host_organization_lineage_names":["De Gruyter Open","De Gruyter"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings on Privacy Enhancing Technologies","raw_type":"journal-article"},{"id":"pmh:oai:null:2144/46955","is_oa":true,"landing_page_url":"https://hdl.handle.net/2144/46955","pdf_url":null,"source":{"id":"https://openalex.org/S4306402384","display_name":"OpenBU (Boston University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I111088046","host_organization_name":"Boston University","host_organization_lineage":["https://openalex.org/I111088046"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":null,"raw_type":"Conference materials"},{"id":"pmh:oai:pure.atira.dk:publications/6d6c8baf-b501-48a4-afda-cc92570fbc91","is_oa":true,"landing_page_url":"https://pure.au.dk/portal/en/publications/6d6c8baf-b501-48a4-afda-cc92570fbc91","pdf_url":"https://pure.au.dk/ws/files/417992002/popets-2023-0036.pdf","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Green, M, Hall-Andersen, M N, Hennenfent, E, Kaptchuk, G, Perez, B & Van Laer, G 2023, 'Efficient Proofs of Software Exploitability for Real-world Processors', Proceedings on Privacy Enhancing Technologies, vol. 2023, no. 1, pp. 627-640. https://doi.org/10.56553/popets-2023-0036","raw_type":"contributionToPeriodical"}],"best_oa_location":{"id":"doi:10.56553/popets-2023-0036","is_oa":true,"landing_page_url":"https://doi.org/10.56553/popets-2023-0036","pdf_url":"https://petsymposium.org/popets/2023/popets-2023-0036.pdf","source":{"id":"https://openalex.org/S4210183172","display_name":"Proceedings on Privacy Enhancing Technologies","issn_l":"2299-0984","issn":["2299-0984"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320322","host_organization_name":"De Gruyter Open","host_organization_lineage":["https://openalex.org/P4310320322","https://openalex.org/P4310313990"],"host_organization_lineage_names":["De Gruyter Open","De Gruyter"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings on Privacy Enhancing Technologies","raw_type":"journal-article"},"sustainable_development_goals":[{"score":0.4300000071525574,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[{"id":"https://openalex.org/G1532115938","display_name":null,"funder_award_id":"Grant # 2030859","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G39108972","display_name":null,"funder_award_id":"N00014-19-1-2292","funder_id":"https://openalex.org/F4320337345","funder_display_name":"Office of Naval Research"},{"id":"https://openalex.org/G4858890005","display_name":"SaTC: CORE: Medium: Collaborative: Theory and Practice of Cryptosystems Secure Against Subversion","funder_award_id":"1801479","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G4895123784","display_name":"CAREER: Towards Secure and Policy-Compliant Encrypted Communications","funder_award_id":"1653110","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G5565683708","display_name":null,"funder_award_id":"2030859","funder_id":"https://openalex.org/F4320308633","funder_display_name":"Computing Research Association"},{"id":"https://openalex.org/G5620015214","display_name":null,"funder_award_id":"Agreement No. HR00112020021","funder_id":"https://openalex.org/F4320332180","funder_display_name":"Defense Advanced Research Projects Agency"},{"id":"https://openalex.org/G639234436","display_name":null,"funder_award_id":"HR00112020021","funder_id":"https://openalex.org/F4320332180","funder_display_name":"Defense Advanced Research Projects Agency"},{"id":"https://openalex.org/G7698193007","display_name":null,"funder_award_id":"2030859","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G8876996369","display_name":null,"funder_award_id":"N00014","funder_id":"https://openalex.org/F4320337345","funder_display_name":"Office of Naval Research"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"},{"id":"https://openalex.org/F4320308633","display_name":"Computing Research Association","ror":"https://ror.org/00agrkd75"},{"id":"https://openalex.org/F4320309928","display_name":"Aarhus Universitet","ror":"https://ror.org/01aj84f44"},{"id":"https://openalex.org/F4320332180","display_name":"Defense Advanced Research Projects Agency","ror":"https://ror.org/02caytj08"},{"id":"https://openalex.org/F4320337345","display_name":"Office of Naval Research","ror":"https://ror.org/00rk2pe57"}],"has_content":{"grobid_xml":false,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4315779433.pdf"},"referenced_works_count":41,"referenced_works":["https://openalex.org/W1424543055","https://openalex.org/W1480225633","https://openalex.org/W1971029566","https://openalex.org/W1980227445","https://openalex.org/W1984680759","https://openalex.org/W2013686672","https://openalex.org/W2018746447","https://openalex.org/W2043007983","https://openalex.org/W2058648304","https://openalex.org/W2101770573","https://openalex.org/W2108020916","https://openalex.org/W2122213509","https://openalex.org/W2148373594","https://openalex.org/W2171337840","https://openalex.org/W2380240963","https://openalex.org/W2495842381","https://openalex.org/W2496543269","https://openalex.org/W2614074621","https://openalex.org/W2765206040","https://openalex.org/W2794536744","https://openalex.org/W2794982701","https://openalex.org/W2811026317","https://openalex.org/W2883585522","https://openalex.org/W2883748642","https://openalex.org/W2891063150","https://openalex.org/W2898776076","https://openalex.org/W2933303456","https://openalex.org/W2968027060","https://openalex.org/W2969207949","https://openalex.org/W3003231116","https://openalex.org/W3012999251","https://openalex.org/W3014044251","https://openalex.org/W3046380193","https://openalex.org/W3096740550","https://openalex.org/W3097836574","https://openalex.org/W3153302440","https://openalex.org/W3213926420","https://openalex.org/W3214573664","https://openalex.org/W3214651532","https://openalex.org/W4256493910","https://openalex.org/W4391285994"],"related_works":["https://openalex.org/W2357088637","https://openalex.org/W2256611834","https://openalex.org/W2759596553","https://openalex.org/W4281808401","https://openalex.org/W2002505081","https://openalex.org/W2083681681","https://openalex.org/W2577630842","https://openalex.org/W1172579163","https://openalex.org/W1488300410","https://openalex.org/W2138790427"],"abstract_inverted_index":{"We":[0,20],"consider":[1],"the":[2,8,37,74,106,121,124],"problem":[3],"of":[4,10,29,94,108],"proving":[5],"in":[6,12,80,120],"zero-knowledge":[7,68],"existence":[9],"vulnerabilities":[11],"executables":[13],"compiled":[14],"to":[15,26,47,97],"run":[16],"on":[17,73],"real-world":[18,33],"processors.":[19],"demonstrate":[21,105],"that":[22,63],"it":[23],"is":[24],"practical":[25],"prove":[27],"knowledge":[28],"real":[30],"exploits":[31],"for":[32,39,70,101,118],"processor":[34],"architectures":[35],"without":[36,43],"need":[38],"source":[40],"code":[41],"and":[42,60,91],"limiting":[44],"our":[45,109,113],"consideration":[46],"narrow":[48],"vulnerability":[49],"classes.":[50],"To":[51,104],"achieve":[52],"this,":[53],"we":[54,111],"devise":[55],"a":[56,61,86,92],"novel":[57,95],"circuit":[58,89],"compiler":[59,90],"toolchain":[62,84,114],"produces":[64],"highly":[65,87],"optimized,":[66],"non-interactive":[67],"proofs":[69,100,117],"programs":[71],"executed":[72],"MSP430,":[75],"an":[76],"ISA":[77],"commonly":[78],"used":[79],"embedded":[81],"hardware.":[82],"Our":[83],"employs":[85],"optimized":[88],"number":[93],"optimizations":[96],"construct":[98],"efficient":[99],"program":[102],"binaries.":[103],"capability":[107],"system,":[110],"test":[112],"by":[115],"constructing":[116],"challenges":[119],"Microcorruption":[122],"capture":[123],"flag":[125],"exercises.":[126]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":2}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
