{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,21]],"date-time":"2026-02-21T18:50:33Z","timestamp":1771699833391,"version":"3.50.1"},"publisher-location":"New York, NY","reference-count":56,"publisher":"Springer New York","isbn-type":[{"value":"9781461454151","type":"print"},{"value":"9781461454168","type":"electronic"}],"license":[{"start":{"date-parts":[[2012,8,23]],"date-time":"2012-08-23T00:00:00Z","timestamp":1345680000000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2012,8,23]],"date-time":"2012-08-23T00:00:00Z","timestamp":1345680000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2013]]},"DOI":"10.1007\/978-1-4614-5416-8_7","type":"book-chapter","created":{"date-parts":[[2012,9,17]],"date-time":"2012-09-17T22:16:40Z","timestamp":1347920200000},"page":"117-149","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":12,"title":["Moving Target Defenses in the Helix Self-Regenerative Architecture"],"prefix":"10.1007","author":[{"given":"Claire Le","family":"Goues","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Anh","family":"Nguyen-Tuong","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hao","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jack W.","family":"Davidson","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Stephanie","family":"Forrest","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jason D.","family":"Hiser","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"John C.","family":"Knight","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Matthew","family":"Van Gundy","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2012,8,23]]},"reference":[{"key":"7_CR1","unstructured":"http:\/\/httpd.apache.org\/docs\/2.2\/programs\/ab.html (2010)"},{"key":"7_CR2","unstructured":"Al-Ekram, R., Adma, A., Baysal, O.: diffX: an algorithm to detect changes in multi-version XML documents. In: Conference of the Centre for Advanced Studies on Collaborative research, pp. 1\u201311. IBM Press (2005)"},{"key":"7_CR3","doi-asserted-by":"crossref","unstructured":"Anvik, J., Hiew, L., Murphy, G.C.: Coping with an open bug repository. In: OOPSLA Workshop on Eclipse Technology eXchange, pp. 35\u201339 (2005)","DOI":"10.1145\/1117696.1117704"},{"key":"7_CR4","doi-asserted-by":"crossref","unstructured":"Barrantes, E.G., Ackley, D.H., Forrest, S., Palmer, T.S., Stefanovi\u0107, D., Zovi, D.D.: Randomized Instruction Set Emulation to Disrupt Binary Code Injection Attacks. In: Conference on Computer and Communications Security, pp. 281\u2013289. ACM (2003)","DOI":"10.1145\/948109.948147"},{"issue":"1","key":"7_CR5","doi-asserted-by":"crossref","first-page":"3","DOI":"10.1145\/1053283.1053286","volume":"8","author":"E.G. Barrantes","year":"2005","unstructured":"Barrantes, E.G., Ackley, D.H., Forrest, S., Stefanovic, D.: Randomized instruction set emulation. ACM Transactions on Information System Security. 8(1), 3\u201340 (2005). DOIhttp:\/\/doi.acm.org\/10.1145\/1053283.1053286","journal-title":"ACM Transactions on Information System Security."},{"key":"7_CR6","unstructured":"BBC News: Microsoft zune affected by \u2018bug\u2019. In: http:\/\/news.bbc.co.uk\/2\/hi\/technology\/7806683.stm (2008)"},{"key":"7_CR7","unstructured":"http:\/\/www.phpbb.com\/community\/faq.php?mode=bbcode"},{"key":"7_CR8","unstructured":"Bernstein, D.J.: Cache-timing attacks on AES (2005). http:\/\/cr.yp.to\/antiforgery\/cachetiming-20050414.pdf"},{"key":"7_CR9","unstructured":"Brumley, D., Boneh, D.: Remote timing attacks are practical. In: Proceedings of the 12th USENIX Security Symposium, pp. 1\u201314 (2003)"},{"key":"7_CR10","doi-asserted-by":"crossref","unstructured":"Chen, P., Xiao, H., Shen, X., Yin, X., Mao, B., Xie, L.: DROP: Detecting return-oriented programming malicious code. Information Systems Security pp. 163\u2013177 (2009)","DOI":"10.1007\/978-3-642-10772-6_13"},{"key":"7_CR11","doi-asserted-by":"crossref","unstructured":"Co, M., Coleman, C.L., Davidson, J.W., Ghosh, S., Hiser, J.D., Knight, J.C., Nguyen-Tuong, A.: A lightweight software control system for cyber awareness and security. Resilient Control Systems pp. 19\u201324 (2009)","DOI":"10.1109\/ISRCS.2009.5251353"},{"key":"7_CR12","unstructured":"Cowan, C., Barringer, M., Beattie, S., Kroah-Hartman, G.: Formatguard: Automatic protection from printf format string vulnerabilities. In: USENIX Security Symposium, (2001)"},{"key":"7_CR13","doi-asserted-by":"crossref","unstructured":"Evans, D., Nguyen-Tuong, A., Knight, J.C.: Effectiveness of moving target defenses. In: S.\u00a0Jajodia, A.K. Ghosh, V.\u00a0Swarup, C.\u00a0Wang, X.S. Wang (eds.) Moving Target Defense, Advances in Information Security, vol.\u00a054, pp. 29\u201348. Springer (2011)","DOI":"10.1007\/978-1-4614-0977-9_2"},{"key":"7_CR14","doi-asserted-by":"crossref","unstructured":"Gustafson, S., Ekart, A., Burke, E., Kendall, G.: Problem difficulty and code growth in genetic programming. Genetic Programming and Evolvable Machines pp. 271\u2013290 (2004)","DOI":"10.1023\/B:GENP.0000030194.98244.e3"},{"key":"7_CR15","doi-asserted-by":"crossref","unstructured":"Hiser, J.D., Coleman, C.L., Co, M., Davidson, J.W.: Meds: The memory error detection system. In: Symposium on Engineering Secure Software and Systems, pp. 164\u2013179 (2009)","DOI":"10.1007\/978-3-642-00199-4_14"},{"key":"7_CR16","doi-asserted-by":"crossref","unstructured":"Hiser, J.D., Nguyen-Tuong, A., Co, M., Hall, M., Davidson, J.W.: ILR: Where\u2019d my gadgets go? In: IEEE Symposium on Security and Privacy. IEEE (2012)","DOI":"10.1109\/SP.2012.39"},{"key":"7_CR17","unstructured":"Howard, M., Lipner, S.: The Security Development Lifecycle. Microsoft Press (2006)"},{"key":"7_CR18","doi-asserted-by":"crossref","unstructured":"Hu, W., Hiser, J., Williams, D., Filipi, A., Davidson, J.W., Evans, D., Knight, J.C., Nguyen-Tuong, A., Rowanhill, J.: Secure and practical defense against code-injection attacks using software dynamic translation. In: Virtual Execution Environments, pp. 2\u201312 (2006)","DOI":"10.1145\/1134760.1134764"},{"issue":"5","key":"7_CR19","doi-asserted-by":"crossref","first-page":"1239","DOI":"10.1016\/j.comnet.2006.09.016","volume":"51","author":"K.L. Ingham","year":"2007","unstructured":"Ingham, K.L., Somayaji, A., Burge, J., Forrest, S.: Learning DFA representations of HTTP for protecting web applications. Computer Networks 51(5), 1239\u20131255 (2007)","journal-title":"Computer Networks"},{"key":"7_CR20","doi-asserted-by":"crossref","unstructured":"Jajodia, S., Ghosh, A.K., Swarup, V., Wang, C., Wang, X.S. (eds.): Moving Target Defense - Creating Asymmetric Uncertainty for Cyber Threats, Advances in Information Security, vol.\u00a054. Springer (2011)","DOI":"10.1007\/978-1-4614-0977-9"},{"key":"7_CR21","doi-asserted-by":"crossref","unstructured":"Jim, T., Swamy, N., Hicks, M.: Defeating Scripting Attacks with Browser-Enforced Embedded Policies. In: International World Wide Web Conference, pp. 601\u2013610 (2007)","DOI":"10.1145\/1242572.1242654"},{"key":"7_CR22","doi-asserted-by":"crossref","unstructured":"Jones, J.A., Harrold, M.J.: Empirical evaluation of the Tarantula automatic fault-localization technique. In: Automated Software Engineering, pp. 273\u2013282 (2005)","DOI":"10.1145\/1101908.1101949"},{"issue":"1","key":"7_CR23","doi-asserted-by":"crossref","first-page":"33","DOI":"10.1109\/TSE.2007.256943","volume":"33","author":"M. Jorgensen","year":"2007","unstructured":"Jorgensen, M., Shepperd, M.: A systematic review of software development cost estimation studies. IEEE Transactions on Software Engineering 33(1), 33\u201353 (2007)","journal-title":"IEEE Transactions on Software Engineering"},{"key":"7_CR24","doi-asserted-by":"crossref","unstructured":"Kc, G.S., Keromytis, A.D., Prevelakis, V.: Countering Code-Injection Attacks With Instruction-Set Randomization. In: Conference on Computer and Communications Security, pp. 272\u2013280 (2003)","DOI":"10.1145\/948109.948146"},{"key":"7_CR25","unstructured":"Kiriansky, V., Bruening, D., Amarasinghe, S.P.: Secure execution via program shepherding. In: USENIX Security Symposium, pp. 191\u2013206 (2002)"},{"key":"7_CR26","unstructured":"Koza, J.R.: Genetic Programming: On the Programming of Computers by Means of Natural Selection. MIT Press (1992)"},{"key":"7_CR27","unstructured":"Lawton, K.P.: Bochs: A portable pc emulator for unix\/x. Linux J. 1996(29es), 7 (1996)"},{"key":"7_CR28","doi-asserted-by":"crossref","unstructured":"Liblit, B., Aiken, A., Zheng, A.X., Jordan, M.I.: Bug isolation via remote program sampling. In: Programming language design and implementation, pp. 141\u2013154 (2003)","DOI":"10.1145\/780822.781148"},{"key":"7_CR29","doi-asserted-by":"crossref","unstructured":"Luk, C.K., Cohn, R., Muth, R., Patil, H., Klauser, A., Lowney, G., Wallace, S., Reddi, V.J., Hazelwood, K.: Pin: Building customized program analysis tools with dynamic instrumentation. In: Programming Language Design and Implementation, pp. 190\u2013200 (2005)","DOI":"10.1145\/1064978.1065034"},{"issue":"12","key":"7_CR30","doi-asserted-by":"crossref","first-page":"32","DOI":"10.1145\/96267.96279","volume":"33","author":"B.P. Miller","year":"1990","unstructured":"Miller, B.P., Fredriksen, L., So, B.: An empirical study of the reliability of UNIX utilities. Communications of the Association for Computing Machinery 33(12), 32\u201344 (1990)","journal-title":"Communications of the Association for Computing Machinery"},{"key":"7_CR31","unstructured":"Molnar, D., Li, X.C., Wagner, D.A.: Dynamic test generation to find integer bugs in x86 binary linux programs. In: USENIX Security Symposium, pp. 67\u201382 (2009)"},{"key":"7_CR32","doi-asserted-by":"crossref","unstructured":"Nethercote, N., Seward, J.: Valgrind: a framework for heavyweight dynamic binary instrumentation. In: Programming Language Design and Implementation, pp. 89\u2013100 (2007)","DOI":"10.1145\/1273442.1250746"},{"key":"7_CR33","doi-asserted-by":"crossref","unstructured":"Nguyen-Tuong, A., Wang, A., Hiser, J., Knight, J., Davidson, J.: On the effectiveness of the metamorphic shield. In: European Conference on Software Architecture: Companion Volume, pp. 170\u2013174 (2010)","DOI":"10.1145\/1842752.1842788"},{"key":"7_CR34","unstructured":"Pigoski, T.M.: Practical Software Maintenance: Best Practices for Managing Your Software Investment. John Wiley & Sons, Inc. (1996)"},{"key":"7_CR35","doi-asserted-by":"crossref","unstructured":"Portokalidis, G., Keromytis, A.D.: Fast and practical instruction-set randomization for commodity systems. In: Annual Computer Security Applications Conference, pp. 41\u201348 (2010)","DOI":"10.1145\/1920261.1920268"},{"key":"7_CR36","doi-asserted-by":"crossref","unstructured":"Rajkumar, R., Wang, A., Hiser, J.D., Nguyen-Tuong, A., Davidson, J.W., Knight, J.C.: Component-oriented monitoring of binaries for security. In: Hawaii International Conference on System Sciences, pp. 1\u201310 (2011)","DOI":"10.1109\/HICSS.2011.122"},{"issue":"10","key":"7_CR37","doi-asserted-by":"crossref","first-page":"47","DOI":"10.1109\/2.539720","volume":"29","author":"C.V. Ramamoothy","year":"1996","unstructured":"Ramamoothy, C.V., Tsai, W.T.: Advances in software engineering. IEEE Computer 29(10), 47\u201358 (1996)","journal-title":"IEEE Computer"},{"key":"7_CR38","doi-asserted-by":"crossref","unstructured":"Rodes, B.: Stack layout transformation: Towards diversity for securing binary programs. In: Doctoral Symposium, International Conference of Software Engineering (2012)","DOI":"10.1109\/ICSE.2012.6227041"},{"key":"7_CR39","unstructured":"Rodes, B., Nguyen-Tuong, A., Knight, J., Shepherd, J., Hiser, J.D., Co, M., Davidson, J.W.: Diversification of stack layout in binary programs using dynamic binary translation. Tech. rep. (2012)"},{"key":"7_CR40","unstructured":"RSnake: XSS (Cross Site Scripting) Cheat Sheet. http:\/\/ha.ckers.org\/xss.html (2008)"},{"key":"7_CR41","doi-asserted-by":"crossref","unstructured":"Schulte, E., Forrest, S., Weimer, W.: Automatic program repair through the evolution of assembly code. In: Automated Software Engineering, pp. 33\u201336 (2010)","DOI":"10.1145\/1858996.1859059"},{"key":"7_CR42","unstructured":"Scott, K., Davidson, J.: Strata: A software dynamic translation infrastructure. In: IEEE Workshop on Binary Translation (2001)"},{"key":"7_CR43","unstructured":"Scott, K., Davidson, J.: Safe virtual execution using software dynamic translation. In: Annual Computer Security Applications Conference (2002)"},{"key":"7_CR44","doi-asserted-by":"crossref","unstructured":"Scott, K., Kumar, N., Velusamy, S., Childers, B.R., Davidson, J.W., Soffa, M.L.: Retargetable and reconfigurable software dynamic translation. In: International Symposium on Code Generation and Optimization, pp. 36\u201347 (2003)","DOI":"10.1109\/CGO.2003.1191531"},{"key":"7_CR45","unstructured":"Seacord, R.C., Plakosh, D., Lewis, G.A.: Modernizing Legacy Systems: Software Technologies, Engineering Process and Business Practices. Addison-Wesley Longman Publishing Co., Inc. (2003)"},{"key":"7_CR46","doi-asserted-by":"crossref","unstructured":"Shacham, H., Page, M., Pfaff, B., Goh, E., Modadugu, N., Boneh, D.: On the effectiveness of address-space randomization. In: Computer and Communications Security, pp. 298\u2013307 (2004)","DOI":"10.1145\/1030083.1030124"},{"key":"7_CR47","unstructured":"Sovarel, N., Evans, D., Paul, N.: Where\u2019s the feeb? the effectiveness of instruction set randomization. In: USENIX Security Conference (2005)"},{"issue":"1","key":"7_CR48","doi-asserted-by":"crossref","first-page":"135","DOI":"10.1145\/1241601.1241602","volume":"35","author":"S. Sridhar","year":"2007","unstructured":"Sridhar, S., Shapiro, J.S., Bungale, P.P.: Hdtrans: a low-overhead dynamic translator. SIGARCH Comput. Archit. News 35(1), 135\u2013140 (2007)","journal-title":"SIGARCH Comput. Archit. News"},{"issue":"2","key":"7_CR49","doi-asserted-by":"crossref","first-page":"274","DOI":"10.1145\/210376.210394","volume":"27","author":"J. Sutherland","year":"1995","unstructured":"Sutherland, J.: Business objects in corporate information systems. ACM Comput. Surv. 27(2), 274\u2013276 (1995)","journal-title":"ACM Comput. Surv."},{"key":"7_CR50","unstructured":"Symantec: Internet security threat report. In: http:\/\/eval.symantec.com\/mktginfo\/enterprise\/white_papers\/ent-whitepaper_symantec_internet_security_threat_report_x_09_2006.en-us.pdf (2006)"},{"issue":"2","key":"7_CR51","doi-asserted-by":"crossref","first-page":"111","DOI":"10.1016\/0167-4048(91)90004-W","volume":"10","author":"H. Thimbleby","year":"1991","unstructured":"Thimbleby, H.: Can viruses ever be useful? Computers and Security 10(2), 111\u2013114 (1991)","journal-title":"Computers and Security"},{"key":"7_CR52","unstructured":"http:\/\/info.tikiwiki.org\/tiki-index.php (2010)"},{"key":"7_CR53","unstructured":"Van\u00a0Gundy, M., Chen, H.: Noncespaces: Using Randomization to Enforce Information Flow Tracking and Thwart Cross-Site Scripting Attacks. In: Distributed System Security Symposium, pp. 55\u201367 (2009)"},{"key":"7_CR54","doi-asserted-by":"crossref","unstructured":"Weimer, W., Nguyen, T., Le\u00a0Goues, C., Forrest, S.: Automatically finding patches using genetic programming. In: International Conference on Software Engineering, pp. 364\u2013367 (2009)","DOI":"10.1109\/ICSE.2009.5070536"},{"issue":"1","key":"7_CR55","doi-asserted-by":"crossref","first-page":"26","DOI":"10.1109\/MSP.2009.18","volume":"7","author":"D. Williams","year":"2009","unstructured":"Williams, D., Hu, W., Davidson, J.W., Hiser, J.D., Knight, J.C., Nguyen-Tuong, A.: Security through diversity: Leveraging virtual machine technology. IEEE Security and Privacy 7(1), 26\u201333 (2009)","journal-title":"IEEE Security and Privacy"},{"issue":"2","key":"7_CR56","doi-asserted-by":"crossref","first-page":"183","DOI":"10.1109\/32.988498","volume":"28","author":"A. Zeller","year":"2002","unstructured":"Zeller, A., Hildebrandt, R.: Simplifying and isolating failure-inducing input. IEEE Transactions on Software Engineering 28(2), 183\u2013200 (2002)","journal-title":"IEEE Transactions on Software Engineering"}],"container-title":["Advances in Information Security","Moving Target Defense II"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-1-4614-5416-8_7","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,4,8]],"date-time":"2025-04-08T23:28:51Z","timestamp":1744154931000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-1-4614-5416-8_7"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2012,8,23]]},"ISBN":["9781461454151","9781461454168"],"references-count":56,"URL":"https:\/\/doi.org\/10.1007\/978-1-4614-5416-8_7","relation":{},"ISSN":["1568-2633"],"issn-type":[{"value":"1568-2633","type":"print"}],"subject":[],"published":{"date-parts":[[2012,8,23]]},"assertion":[{"value":"23 August 2012","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}