{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,5]],"date-time":"2024-09-05T16:58:14Z","timestamp":1725555494338},"publisher-location":"Berlin, Heidelberg","reference-count":26,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783540890959"},{"type":"electronic","value":"9783540891734"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2008]]},"DOI":"10.1007\/978-3-540-89173-4_23","type":"book-chapter","created":{"date-parts":[[2010,5,8]],"date-time":"2010-05-08T07:58:06Z","timestamp":1273305486000},"page":"274-286","source":"Crossref","is-referenced-by-count":0,"title":["A General Model and Guidelines for Attack Manifestation Generation"],"prefix":"10.1007","author":[{"given":"Ulf E.","family":"Larson","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Dennis K.","family":"Nilsson","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Erland","family":"Jonsson","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"23_CR1","doi-asserted-by":"crossref","unstructured":"Larson, U., Lundin-Barse, E., Jonsson, E.: METAL - a tool for extracting attack manifestations. In: Proceedings of Detection of Intrusions and Malware & Vulnerability Assessment workshop (DIMVA), Vienna, Austria, July 7-8 (2005)","DOI":"10.1007\/11506881_6"},{"key":"23_CR2","volume-title":"Proceedings of the 20th Annual Computer Security Applications Conference, ACSAC 2004","author":"E.L. Barse","year":"2004","unstructured":"Barse, E.L., Jonsson, E.: Extracting attack manifestations to determine log data requirements for intrusion detection. In: Proceedings of the 20th Annual Computer Security Applications Conference, ACSAC 2004, Tucson, Arizona, USA. IEEE Computer Society, Los Alamitos (2004)"},{"key":"23_CR3","unstructured":"The metasploit framework (September 2006), http:\/\/www.metasploit.com"},{"key":"23_CR4","unstructured":"Bidiblah - security assessment power tools (September 2006), http:\/\/www.sensepost.com\/research\/bidiblah\/"},{"key":"23_CR5","unstructured":"The nessus vulnerability scanner (September 2006), http:\/\/www.nessus.org\/documentation\/index.php"},{"key":"23_CR6","unstructured":"Nmap security scanner (September 2006), http:\/\/insecure.org\/nmap"},{"key":"23_CR7","doi-asserted-by":"crossref","unstructured":"Kayacik, H.G., Heywood, M., Zincir-Heywood, N.: On evolving buffer overflow attacks using genetic programming. In: GECCO 2006 (July 2006)","DOI":"10.1145\/1143997.1144271"},{"key":"23_CR8","doi-asserted-by":"crossref","unstructured":"Vigna, G., Robertson, W., Balzarotti, D.: Testing network based intrusion detection signatures using mutant exploits. In: ACM Conference on Computer Security (2004)","DOI":"10.1145\/1030083.1030088"},{"key":"23_CR9","unstructured":"Puketza, N.J., Zhang, K., Chung, M., Mukherjee, B., Olsson, R.A.: A methodology for testing intrusion detection systems. In: 17th National Computer Security Conference, Baltimore, MD (1994)"},{"key":"23_CR10","doi-asserted-by":"crossref","unstructured":"Foster, J.C., Williams, A.: Sockets, Shellcode, Porting and Coding. In: Syngress, ch.\u00a012 (March 2005)","DOI":"10.1016\/B978-159749005-4\/50011-0"},{"key":"23_CR11","unstructured":"Aleph One. Smashing the stack for fun and profit (1996), http:\/\/www.theparticle.com\/files\/txt\/hacking\/phrack\/p49.txt"},{"key":"23_CR12","unstructured":"Nilsson, D.K., Larson, U., Jonsson, E.: A general model and guidelines for attack manifestation generation. Technical Report TR-2007:8, Department of Computer Science and Engineering, Chalmers University of Technology (2007)"},{"key":"23_CR13","doi-asserted-by":"crossref","unstructured":"Wagner, D., Soto, P.: Mimicry attacks on host based intrusion detection systems. In: Ninth ACM Conference on Computer and Communications Security (2002)","DOI":"10.1145\/586110.586145"},{"key":"23_CR14","doi-asserted-by":"crossref","unstructured":"Tan, K.M.C., Killourhy, K.S., Maxion, R.A.: Undermining an anomaly-based intrusion detection system using common exploits. In: Proceedings of the 5th International Symposium on Recent Advances in Intrusion Detection (2002)","DOI":"10.1007\/3-540-36084-0_4"},{"key":"23_CR15","unstructured":"Cowan, C., et al.: Stackguard: Automatic adaptive detection and prevention of buffer-overflow attacks. In: Proceedings of the 7th USENIX Security Symposium (January 1998)"},{"key":"23_CR16","unstructured":"Etoh, H.: GCC extension for protecting applications from stack-smashing attacks (ProPolice) (2003)"},{"key":"23_CR17","unstructured":"Richarte, G.: Four different tricks to bypass stackshield and stackguard protection. Technical Report NIST IR 7007, NIST (2002)"},{"key":"23_CR18","unstructured":"shellcode.org (June 2006), http:\/\/www.shellcode.org"},{"key":"23_CR19","unstructured":"Kelley, A., Pohl, I.: A Book on C, 4th edn., December 1997. Addisson-Wesley Professional (1997)"},{"key":"23_CR20","unstructured":"Erickson, J.: Hacking, the art of exploitation. No Starch Press, Inc. (2003)"},{"key":"23_CR21","unstructured":"Burebista. Remote automatic exploitation of stack overflows (2003), http:\/\/www.infosecwriters.com\/text_resources\/pdf\/remote_overflows.pdf"},{"key":"23_CR22","unstructured":"contex. Exploiting x86 stack based buffer overflows (2006), http:\/\/www.milw0rm.com\/papers\/34"},{"key":"23_CR23","unstructured":"xgc\/dx A.K.A T.\u00a0Silva. Introduction to local stack overflow (2005), http:\/\/www.milw0rm.com\/papers\/4"},{"key":"23_CR24","unstructured":"Preddy. Buffer overflow tutorial (2006), http:\/\/www.milw0rm.com\/papers\/73"},{"key":"23_CR25","unstructured":"Address space layout randomization (Latest visited, July 2007), http:\/\/en.wikipedia.org\/wiki\/Address_space_layout_randomization"},{"key":"23_CR26","unstructured":"Denial-of-service attack (Latest visited July 2007), http:\/\/en.wikipedia.org\/wiki\/Denial-of-service_attack"}],"container-title":["Lecture Notes in Computer Science","Critical Information Infrastructures Security"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-540-89173-4_23.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,11,24]],"date-time":"2020-11-24T02:09:41Z","timestamp":1606183781000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-540-89173-4_23"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2008]]},"ISBN":["9783540890959","9783540891734"],"references-count":26,"URL":"https:\/\/doi.org\/10.1007\/978-3-540-89173-4_23","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2008]]}}}