{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,21]],"date-time":"2026-07-21T01:01:51Z","timestamp":1784595711456,"version":"3.55.0"},"publisher-location":"Cham","reference-count":31,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783030816445","type":"print"},{"value":"9783030816452","type":"electronic"}],"license":[{"start":{"date-parts":[[2021,1,1]],"date-time":"2021-01-01T00:00:00Z","timestamp":1609459200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2021,1,1]],"date-time":"2021-01-01T00:00:00Z","timestamp":1609459200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2021]]},"DOI":"10.1007\/978-3-030-81645-2_23","type":"book-chapter","created":{"date-parts":[[2021,7,21]],"date-time":"2021-07-21T17:02:52Z","timestamp":1626886972000},"page":"397-413","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":4,"title":["Combating the OS-Level Malware in\u00a0Mobile Devices by Leveraging Isolation and Steganography"],"prefix":"10.1007","author":[{"given":"Niusen","family":"Chen","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Wen","family":"Xie","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Bo","family":"Chen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2021,7,22]]},"reference":[{"key":"23_CR1","unstructured":"BD-SL-i.MX6. https:\/\/boundarydevices.com\/product\/bd-sl-i-mx6\/"},{"key":"23_CR2","unstructured":"Malware I\/O Traces On Nand flash (MITON) V0.2. https:\/\/snp.cs.mtu.edu\/research\/drm2\/MITON-V0.2.zip"},{"key":"23_CR3","unstructured":"Open Portable Trusted Execution Environment. https:\/\/www.op-tee.org\/"},{"key":"23_CR4","unstructured":"Raspberry Pi 3 Model B. https:\/\/www.raspberrypi.org\/products\/raspberry-pi-3-model-b\/"},{"key":"23_CR5","unstructured":"VirusTotal. https:\/\/www.virustotal.com\/. Accessed 17 May 2019"},{"key":"23_CR6","series-title":"Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","doi-asserted-by":"publisher","first-page":"86","DOI":"10.1007\/978-3-319-04283-1_6","volume-title":"Security and Privacy in Communication Networks","author":"Y Aafer","year":"2013","unstructured":"Aafer, Y., Du, W., Yin, H.: DroidAPIMiner: mining API-level features for robust malware detection in android. In: Zia, T., Zomaya, A., Varadharajan, V., Mao, M. (eds.) SecureComm 2013. LNICST, vol. 127, pp. 86\u2013103. Springer, Cham (2013). https:\/\/doi.org\/10.1007\/978-3-319-04283-1_6"},{"key":"23_CR7","doi-asserted-by":"crossref","unstructured":"Baek, S., Jung, Y., Mohaisen, A., Lee, S., Nyang, D.: SSD-insider: internal defense of solid-state drive against ransomware with perfect data recovery. In: ICDCS. IEEE (2018)","DOI":"10.1109\/ICDCS.2018.00089"},{"key":"23_CR8","doi-asserted-by":"crossref","unstructured":"Baek, S., Jung, Y., Mohaisen, A., Lee, S., Nyang, D.: SSD-assisted ransomware detection and data recovery techniques. IEEE Trans. Comput. (2020)","DOI":"10.1109\/TC.2020.3011214"},{"key":"23_CR9","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"93","DOI":"10.1007\/978-3-319-93524-9_6","volume-title":"Information Security Theory and Practice","author":"SK Bukasa","year":"2018","unstructured":"Bukasa, S.K., Lashermes, R., Le Bouder, H., Lanet, J.-L., Legay, A.: How TrustZone could be bypassed: side-channel attacks on a modern system-on-chip. In: Hancke, G.P., Damiani, E. (eds.) WISTP 2017. LNCS, vol. 10741, pp. 93\u2013109. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-93524-9_6"},{"key":"23_CR10","doi-asserted-by":"crossref","unstructured":"Chang, B., Wang, Z., Chen, B., Zhang, F.: Mobipluto: file system friendly deniable storage for mobile devices. In: Proceedings of the 31st Annual Computer Security Applications Conference, pp. 381\u2013390. ACM (2015)","DOI":"10.1145\/2818000.2818046"},{"key":"23_CR11","unstructured":"Google Code. Opennfm (2011). https:\/\/code.google.com\/p\/opennfm\/. Accessed 17 May 2019"},{"key":"23_CR12","doi-asserted-by":"crossref","unstructured":"Continella, A.: Shieldfs: a self-healing, ransomware-aware filesystem. In: Proceedings of the 32nd Annual Conference on Computer Security Applications, pp. 336\u2013347. ACM (2016)","DOI":"10.1145\/2991079.2991110"},{"key":"23_CR13","doi-asserted-by":"crossref","unstructured":"Guan, L., et al.: Supporting transparent snapshot for bare-metal malware analysis on mobile devices. In: Proceedings of the 33rd Annual Computer Security Applications Conference, pp. 339\u2013349. ACM (2017)","DOI":"10.1145\/3134600.3134647"},{"key":"23_CR14","unstructured":"Kharraz, A., Arshad, S., Mulliner, C., Robertson, W., Kirda, E.: Unveil: a large-scale, automated approach to detecting ransomware. In: 25th USENIX Security Symposium (USENIX Security 16), pp. 757\u2013772 (2016)"},{"key":"23_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"3","DOI":"10.1007\/978-3-319-20550-2_1","volume-title":"Detection of Intrusions and Malware, and Vulnerability Assessment","author":"A Kharraz","year":"2015","unstructured":"Kharraz, A., Robertson, W., Balzarotti, D., Bilge, L., Kirda, E.: Cutting the Gordian knot: a look under the hood of ransomware attacks. In: Almgren, M., Gulisano, V., Maggi, F. (eds.) DIMVA 2015. LNCS, vol. 9148, pp. 3\u201324. Springer, Cham (2015). https:\/\/doi.org\/10.1007\/978-3-319-20550-2_1"},{"key":"23_CR16","doi-asserted-by":"crossref","unstructured":"Kolodenker, E., Koch, W., Stringhini, G., Egele, M.: Paybreak: defense against cryptographic ransomware. In: Proceedings of the 2017 ACM on Asia Conference on Computer and Communications Security, pp. 599\u2013611. ACM (2017)","DOI":"10.1145\/3052973.3053035"},{"key":"23_CR17","unstructured":"Mantech. Lpc-h3131 (2017). https:\/\/www.olimex.com\/Products\/ARM\/NXP\/LPC-H3131\/. Accessed 17 May 2019"},{"issue":"2","key":"23_CR18","doi-asserted-by":"publisher","first-page":"245","DOI":"10.1109\/LCA.2018.2883431","volume":"17","author":"D Min","year":"2018","unstructured":"Min, D., et al.: Amoeba: an autonomous backup and recovery SSD for ransomware attack defense. IEEE Comput. Archit. Lett. 17(2), 245\u2013248 (2018)","journal-title":"IEEE Comput. Archit. Lett."},{"key":"23_CR19","doi-asserted-by":"crossref","unstructured":"Qiu, P., Wang, D., Lyu, Y., Qu, G.: Voltjockey: breaching trustzone by software-controlled voltage manipulation over multi-core frequencies. In: Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security, pp. 195\u2013209 (2019)","DOI":"10.1145\/3319535.3354201"},{"key":"23_CR20","doi-asserted-by":"crossref","unstructured":"Ryan, K.: Hardware-backed heist: extracting ECDSA keys from Qualcomm\u2019s Trustzone. In: Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security, pp. 181\u2013194 (2019)","DOI":"10.1145\/3319535.3354197"},{"key":"23_CR21","doi-asserted-by":"crossref","unstructured":"Scaife, N., Carter, H., Traynor, P., Butler, K.R.B.: Cryptolock (and drop it): stopping ransomware attacks on user data. In: 2016 IEEE 36th International Conference on Distributed Computing Systems (ICDCS), pp. 303\u2013312. IEEE (2016)","DOI":"10.1109\/ICDCS.2016.46"},{"key":"23_CR22","unstructured":"Skillen, A., Mannan, M.: On implementing deniable storage encryption for mobile devices. In: 20th Annual Network and Distributed System Security Symposium, NDSS 2013, San Diego, California, USA, 24\u201327 February 2013"},{"key":"23_CR23","unstructured":"Statista. Development of new android malware worldwide from June 2016 to March 2020 (2020). https:\/\/www.statista.com\/statistics\/680705\/global-android-malware-volume\/"},{"key":"23_CR24","doi-asserted-by":"crossref","unstructured":"Subedi, K.P., Budhathoki, D.R., Chen, B., Dasgupta, D.: Rds3: ransomware defense strategy by using stealthily spare space. In: 2017 IEEE Symposium Series on Computational Intelligence (SSCI). IEEE (2017)","DOI":"10.1109\/SSCI.2017.8280842"},{"key":"23_CR25","unstructured":"Tang, A., Sethumadhavan, S., Stolfo, S.: $$\\{$$CLKSCREW$$\\}$$: exposing the perils of security-oblivious energy management. In: 26th $$\\{$$USENIX$$\\}$$ Security Symposium ($$\\{$$USENIX$$\\}$$ Security 17), pp. 1057\u20131074 (2017)"},{"key":"23_CR26","unstructured":"Tankasala, D., Chen, N., Chen, B.: A step-by-step guideline for creating a testbed for flash memory research via lpc-h3131 and opennfm (2020)"},{"key":"23_CR27","doi-asserted-by":"crossref","unstructured":"Wan, S., Sun, M., Sun, K., Zhang, N., He, X.: Rustee: developing memory-safe arm trustzone applications. In: Annual Computer Security Applications Conference, pp. 442\u2013453 (2020)","DOI":"10.1145\/3427228.3427262"},{"key":"23_CR28","doi-asserted-by":"crossref","unstructured":"Wang, P., Jia, S., Chen, B., Xia, L., Liu, P.: Mimosaftl: adding secure and practical ransomware defense strategy to flash translation layer. In: CODASPY. ACM (2019)","DOI":"10.1145\/3292006.3300041"},{"key":"23_CR29","unstructured":"Xie, W., Chen, N., Chen, B.: Poster: Incorporating malware detection into flash translation layer"},{"key":"23_CR30","doi-asserted-by":"crossref","unstructured":"Zhang, M., Duan, Y., Yin, H., Zhao, Z.: Semantics-aware android malware classification using weighted contextual API dependency graphs. In: CCS. ACM (2014)","DOI":"10.1145\/2660267.2660359"},{"key":"23_CR31","unstructured":"Zhu, M., Gupta, S.: To prune, or not to prune: exploring the efficacy of pruning for model compression. arXiv preprint arXiv:1710.01878 (2017)"}],"container-title":["Lecture Notes in Computer Science","Applied Cryptography and Network Security Workshops"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-81645-2_23","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,7,21]],"date-time":"2026-07-21T00:03:35Z","timestamp":1784592215000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-030-81645-2_23"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021]]},"ISBN":["9783030816445","9783030816452"],"references-count":31,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-81645-2_23","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021]]},"assertion":[{"value":"22 July 2021","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ACNS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Applied Cryptography and Network Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Kamakura","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Japan","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2021","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21 June 2021","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"24 June 2021","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"acns2021","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Double-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"186","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"37","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"20% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"2.89","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"7.81","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Due to the COVID-19 pandemic the conference took place virtually.","order":10,"name":"additional_info_on_review_process","label":"Additional Info on Review Process","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"This content has been made available to all.","name":"free","label":"Free to read"}]}}