{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,5,2]],"date-time":"2025-05-02T07:10:02Z","timestamp":1746169802497,"version":"3.40.4"},"publisher-location":"Cham","reference-count":18,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319038582"},{"type":"electronic","value":"9783319038599"}],"license":[{"start":{"date-parts":[[2013,1,1]],"date-time":"2013-01-01T00:00:00Z","timestamp":1356998400000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2013]]},"DOI":"10.1007\/978-3-319-03859-9_25","type":"book-chapter","created":{"date-parts":[[2013,12,9]],"date-time":"2013-12-09T12:54:34Z","timestamp":1386593674000},"page":"291-300","source":"Crossref","is-referenced-by-count":0,"title":["Hardware-Assisted Intrusion Detection by Preserving Reference Information Integrity"],"prefix":"10.1007","author":[{"given":"Junghee","family":"Lee","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Chrysostomos","family":"Nicopoulos","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gi Hwan","family":"Oh","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sang-Won","family":"Lee","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jongman","family":"Kim","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"unstructured":"Verison: 2013 data breach investigations report (2013)","key":"25_CR1"},{"unstructured":"Chung, H.: Barefoot SSD controller technical reference manual (2011)","key":"25_CR2"},{"doi-asserted-by":"crossref","unstructured":"Takada, T., Koike, H.: NIGELOG: protecting logging information by hiding multiple backups in directories. In: Proceedings of Tenth International Workshop on Database and Expert Systems Applications, pp. 874\u2013878 (1999)","key":"25_CR3","DOI":"10.1109\/DEXA.1999.795297"},{"unstructured":"Waters, B., Waters, B.R., Balfanz, D., Balfanz, D., Durfee, G., Durfee, G., Smetters, D.K., Smetters, D.K.: Building an encrypted and searchable audit log. In: The 11th Annual Network and Distributed System Security Symposium (2004)","key":"25_CR4"},{"issue":"2","key":"25_CR5","doi-asserted-by":"publisher","first-page":"159","DOI":"10.1145\/317087.317089","volume":"2","author":"B. Schneier","year":"1999","unstructured":"Schneier, B., Kelsey, J.: Secure audit logs to support computer forensics. ACM Trans. Inf. Syst. Secur.\u00a02(2), 159\u2013176 (1999)","journal-title":"ACM Trans. Inf. Syst. Secur."},{"doi-asserted-by":"crossref","unstructured":"Kawaguchi, N., Ueda, S., Obata, N., Miyaji, R., Kaneko, S., Shigeno, H., Okada, K.: A secure logging scheme for forensic computing. In: Proceedings from the Fifth Annual IEEE SMC Information Assurance Workshop, pp. 386\u2013393 (2004)","key":"25_CR6","DOI":"10.1109\/IAW.2004.1437843"},{"unstructured":"Foundation, A.S.: Apache HTTP server","key":"25_CR7"},{"unstructured":"Butler, J.M.: Benchmarking security information event management (SIEM) (2009)","key":"25_CR8"},{"unstructured":"Group, T.C.: Trusted platform module (TPM) specifications (2011)","key":"25_CR9"},{"doi-asserted-by":"crossref","unstructured":"Ruhrmair, U., van Dijk, M.: Pufs in security protocols: Attack models and security evaluations. In: 2013 IEEE Symposium on Security and Privacy (SP), pp. 286\u2013300 (2013)","key":"25_CR10","DOI":"10.1109\/SP.2013.27"},{"key":"25_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"51","DOI":"10.1007\/978-3-642-22792-9_4","volume-title":"Advances in Cryptology \u2013 CRYPTO 2011","author":"C. Brzuska","year":"2011","unstructured":"Brzuska, C., Fischlin, M., Schr\u00f6der, H., Katzenbeisser, S.: Physically uncloneable functions in the universal composition framework. In: Rogaway, P. (ed.) CRYPTO 2011. LNCS, vol.\u00a06841, pp. 51\u201370. Springer, Heidelberg (2011)"},{"unstructured":"ARM: ARM security technology (2009)","key":"25_CR12"},{"unstructured":"Petroni Jr., N.L., Fraser, T., Molina, J., Arbaugh, W.A.: Copilot - a coprocessor-based kernel runtime integrity monitor. In: Proceedings of the 13th Conference on USENIX Security Symposium, vol.\u00a013 (2004)","key":"25_CR13"},{"doi-asserted-by":"crossref","unstructured":"Grover, S., Khosravi, H., Kolar, D., Moffat, S., Kounavis, M.: Rkrd: Runtime kernel rootkit detection 48, 224\u2013236 (2009)","key":"25_CR14","DOI":"10.1007\/978-3-642-05197-5_16"},{"unstructured":"Lee, H., Moon, H., Jang, D., Kim, K., Lee, J., Paek, Y., ByungHoon, K.B.: KI-Mon: a hardware-assisted event-triggered monitoring platform for mutable kernel object. In: Proceedings of 22nd USENIX Security Symposium (2013)","key":"25_CR15"},{"doi-asserted-by":"crossref","unstructured":"Boeck, B., Huemer, D., Tjoa, A.M.: Towards more trustable log files for digital forensics by means of \u201ctrusted computing\u201d. In: 24th IEEE International Conference on Advanced Information Networking and Applications, pp. 1020\u20131027 (2010)","key":"25_CR16","DOI":"10.1109\/AINA.2010.26"},{"key":"25_CR17","first-page":"239","volume-title":"Proceedings of the 10th Workshop on ACM SIGOPS European Workshop, EW 2010","author":"X. Zhang","year":"2002","unstructured":"Zhang, X., van Doorn, L., Jaeger, T., Perez, R., Sailer, R.: Secure coprocessor-based intrusion detection. In: Proceedings of the 10th Workshop on ACM SIGOPS European Workshop, EW 2010, pp. 239\u2013242. ACM, New York (2002)"},{"doi-asserted-by":"crossref","unstructured":"Quynh, N.A., Takefuji, Y.: A novel approach for a file-system integrity monitor tool of xen virtual machine. In: Proceedings of the 2nd ACM Symposium on Information, Computer and Communications Security, pp. 194\u2013202 (2007)","key":"25_CR18","DOI":"10.1145\/1229285.1229313"}],"container-title":["Lecture Notes in Computer Science","Algorithms and Architectures for Parallel Processing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-03859-9_25","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,5,1]],"date-time":"2025-05-01T03:31:39Z","timestamp":1746070299000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-319-03859-9_25"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2013]]},"ISBN":["9783319038582","9783319038599"],"references-count":18,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-03859-9_25","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2013]]}}}