{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,8,6]],"date-time":"2025-08-06T12:04:07Z","timestamp":1754481847806,"version":"3.40.3"},"publisher-location":"Berlin, Heidelberg","reference-count":22,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642236433"},{"type":"electronic","value":"9783642236440"}],"license":[{"start":{"date-parts":[[2011,1,1]],"date-time":"2011-01-01T00:00:00Z","timestamp":1293840000000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2011]]},"DOI":"10.1007\/978-3-642-23644-0_19","type":"book-chapter","created":{"date-parts":[[2012,2,11]],"date-time":"2012-02-11T00:06:20Z","timestamp":1328918780000},"page":"358-377","source":"Crossref","is-referenced-by-count":26,"title":["Defending Embedded Systems with Software Symbiotes"],"prefix":"10.1007","author":[{"given":"Ang","family":"Cui","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Salvatore J.","family":"Stolfo","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"19_CR1","unstructured":"Microsoft Corporation, Kernel Patch Protection: Frequently Asked Questions (2006), \n                    \n                      http:\/\/tinyurl.com\/y7pss5y"},{"key":"19_CR2","unstructured":"Network Bluepill. Dronebl.org (2008), \n                    \n                      http:\/\/www.dronebl.org\/blog\/8"},{"key":"19_CR3","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"160","DOI":"10.1007\/3-540-47870-1_10","volume-title":"Security and Privacy in Digital Rights Management","author":"H. Chang","year":"2002","unstructured":"Chang, H., Atallah, M.J.: Protecting software code by guards. In: Sander, T. (ed.) DRM 2001. LNCS, vol.\u00a02320, pp. 160\u2013175. Springer, Heidelberg (2002)"},{"key":"19_CR4","unstructured":"Cui, A., Kataria, J., Stolfo, S.J.: Killing the myth of cisco ios diversity: Towards reliable, large-scale exploitation of cisco ios. In: USENIX Workshop on Offensive Technologies (August 2011)"},{"key":"19_CR5","unstructured":"Erlingsson, \u00da., Abadi, M., Vrable, M., Budiu, M., Necula, G.C.: Xfi: Software guards for system address spaces. In: OSDI, pp. 75\u201388. USENIX Association (2006)"},{"key":"19_CR6","volume-title":"Enforcing security policies with run-time program monitors","author":"Ligati","year":"2005","unstructured":"Ligati, et al.: Enforcing security policies with run-time program monitors. Princeton University, Princeton (2005)"},{"key":"19_CR7","unstructured":"Harbour, N.: Win at Reversing: API Tracing and Sandboxing Through Inline Hooking. In: BlackHat, USA (2009)"},{"key":"19_CR8","unstructured":"Kiamilev, F., Hoover, R.: Demonstration of Hardware Trojans. In: Defcon 16 (2008)"},{"key":"19_CR9","first-page":"91","volume-title":"ACSAC","author":"C. Kr\u00fcgel","year":"2004","unstructured":"Kr\u00fcgel, C., Robertson, W.K., Vigna, G.: Detecting kernel-level rootkits through binary analysis. In: ACSAC, pp. 91\u2013100. IEEE Computer Society, Los Alamitos (2004)"},{"key":"19_CR10","unstructured":"Felix \u201dFX\u201d Linder. Cisco IOS Router Exploitation. In: BlackHat, USA (2009)"},{"key":"19_CR11","series-title":"Lecture Notes in Computer Science","volume-title":"Recent Advances in Intrusion Detection","year":"2008","unstructured":"Lippmann, R., Kirda, E., Trachtenberg, A. (eds.): RAID 2008. LNCS, vol.\u00a05230. Springer, Heidelberg (2008)"},{"key":"19_CR12","unstructured":"McLaughlin, S., Podkuiko, D., Delozier, A., Miadzvezhanka, S., McDaniel, P.: Embedded firmware diversity for smart electric meters. In: HotSec 2010 (2010)"},{"key":"19_CR13","unstructured":"Lynn, M.: Cisco IOS Shellcode. In: BlackHat, USA (2005)"},{"key":"19_CR14","unstructured":"Muniz, S.: Killing the myth of Cisco IOS rootkits: DIK. In: EUSecWest (2008)"},{"key":"19_CR15","doi-asserted-by":"crossref","unstructured":"Riley, R., Jiang, X., Xu, D.: Guest-transparent prevention of kernel rootkits with vmm-based memory shadowing. In: Lippmann, et al. (eds.) [11], pp. 1\u201320","DOI":"10.1007\/978-3-540-87403-4_1"},{"key":"19_CR16","unstructured":"Roecher, D.-J., Thumann, M.: NAC Attack. In: BlackHat, USA (2007)"},{"key":"19_CR17","unstructured":"Skywing. Subverting PatchGuard Version 2, Uninformed\u00a06 (2008)"},{"key":"19_CR18","unstructured":"Song, Y., Prahbu, P.V., Stolfo, S.J.: Smashing the stack with hydra: The many heads of advanced shellcode polymorphism. In: Defcon 17 (2009)"},{"key":"19_CR19","first-page":"106","volume-title":"MICRO","author":"V.R. Vasisht","year":"2008","unstructured":"Vasisht, V.R., Lee, H.-H.S.: Shark: Architectural support for autonomic protection against stealth by rootkit exploits. In: MICRO, pp. 106\u2013116. IEEE Computer Society, Los Alamitos (2008)"},{"key":"19_CR20","doi-asserted-by":"crossref","unstructured":"Ganesh, M.R.V., Leek, T.: Taint-based directed whitebox fuzzing. In: IEEE 31st International Conference on Software Engineering (2009)","DOI":"10.1109\/ICSE.2009.5070546"},{"key":"19_CR21","unstructured":"Wa, R., Hunt, G., Hunt, G., Brubacher, D., Brubacher, D.: Detours: Binary interception of win32 functions. In: Proceedings of the 3rd USENIX Windows NT Symposium, pp. 135\u2013143 (1998)"},{"key":"19_CR22","doi-asserted-by":"crossref","unstructured":"Wang, Z., Jiang, X., Cui, W., Wang, X.: Countering persistent kernel rootkits through systematic hook discovery. In: Lippmann, et al. (eds.) [11], pp. 21\u201338","DOI":"10.1007\/978-3-540-87403-4_2"}],"container-title":["Lecture Notes in Computer Science","Recent Advances in Intrusion Detection"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-23644-0_19","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,4,27]],"date-time":"2019-04-27T12:23:49Z","timestamp":1556367829000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-23644-0_19"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011]]},"ISBN":["9783642236433","9783642236440"],"references-count":22,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-23644-0_19","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2011]]}}}