{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,16]],"date-time":"2026-06-16T05:42:44Z","timestamp":1781588564212,"version":"3.54.5"},"publisher-location":"Berlin, Heidelberg","reference-count":40,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783642238215","type":"print"},{"value":"9783642238222","type":"electronic"}],"license":[{"start":{"date-parts":[[2011,1,1]],"date-time":"2011-01-01T00:00:00Z","timestamp":1293840000000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2011]]},"DOI":"10.1007\/978-3-642-23822-2_12","type":"book-chapter","created":{"date-parts":[[2011,9,7]],"date-time":"2011-09-07T14:38:34Z","timestamp":1315406314000},"page":"210-226","source":"Crossref","is-referenced-by-count":37,"title":["Linear Obfuscation to Combat Symbolic Execution"],"prefix":"10.1007","author":[{"given":"Zhi","family":"Wang","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jiang","family":"Ming","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Chunfu","family":"Jia","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Debin","family":"Gao","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","reference":[{"key":"12_CR1","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"351","DOI":"10.1007\/978-3-540-78800-3_27","volume-title":"Tools and Algorithms for the Construction and Analysis of Systems","author":"P. Boonstoppel","year":"2008","unstructured":"Boonstoppel, P., Cadar, C., Engler, D.: RWset: Attacking path explosion in constraint-based test generation. In: Ramakrishnan, C.R., Rehof, J. (eds.) TACAS 2008. LNCS, vol.\u00a04963, pp. 351\u2013366. Springer, Heidelberg (2008)"},{"key":"12_CR2","unstructured":"Brumley, D., Hartwig, C., Kang, M.G., Liang, Z., Newsome, J., Poosankam, P., Song, D., Yin., H.: Bitscope: Automatically dissecting malicious binaries. Technical report cs-07-133, School of Computer Science, Carnegie Mellon University (March 2007)"},{"key":"12_CR3","unstructured":"Brumley, D., Hartwig, C., Liang, Z., Newsome, J., Poosankam, J., Song, D., Yin, H.: Automatically identifying trigger-based behavior in malware. In: Botnet Analysis in Defense, vol.\u00a036 (2007)"},{"key":"12_CR4","doi-asserted-by":"crossref","unstructured":"Brumley, D., Newsome, J., Song, D., Wang, H., Jha, S.: Towards automatic generation of vulnerability-based signatures. In: Proceedings of the 2006 IEEE Symposimu on Security and Privacy (2006)","DOI":"10.1109\/SP.2006.41"},{"key":"12_CR5","doi-asserted-by":"crossref","unstructured":"Brumley, D., Wang, H., Jha, S., Song, D.: Creating vulnerability signature using weakest preconditions. In: Proceedings of the 2007 IEEE Symposium on Security and Privacy (2007)","DOI":"10.1109\/CSF.2007.17"},{"key":"12_CR6","doi-asserted-by":"crossref","unstructured":"Caballero, J., Liang, Z., Poosankam, P., Song, D.: Towards generating high coverage vulnerability-based signatures with protocol-level constraint-guided exploration. In: Proceedings of the 12th International Symposium on Recent Advances in Intrusion Detection (2009)","DOI":"10.1007\/978-3-642-04342-0_9"},{"key":"12_CR7","doi-asserted-by":"crossref","unstructured":"Caballero, J., McCamant, S., Barth, A., Song, D.: Extracting models of security-sensitive operations using string-enhanced white-box exploration on binaries. Tech. rep., Technical Report UCB\/EECS-2009-36, EECS Department, University of California, Berkeley (March 2009)","DOI":"10.21236\/ADA538848"},{"key":"12_CR8","unstructured":"Cadar, C., Dunbar, D., Engler, D.: Klee: Unassisted and automatic generation of high-coverage tests for complex systems programs. In: Proceedings of the 2008 USENIX Symposium on Operating Systems Design and Implementation, OSDI 2008 (2008)"},{"key":"12_CR9","doi-asserted-by":"crossref","unstructured":"Cadar, C., Engler, D.: Execution generated test cases: How to make systems code crash itself. In: Proceedings of the 12th SPIN Workshop (2005)","DOI":"10.1007\/11537328_2"},{"key":"12_CR10","doi-asserted-by":"crossref","unstructured":"Cadar, C., Ganesh, V., Pawlowski, P., Dill, D., Engler, D.: EXE:automatically generating inputs of death. In: Proceedings of the 2006 ACM Conference on Computer and Communications Security (CCS 2006) (2006)","DOI":"10.1145\/1180405.1180445"},{"key":"12_CR11","unstructured":"Collberg, C., Thomborson, C., Low, D.: A taxonomy of obfuscating transformations. Technical report 148, Department of Computer Sciences, The University of Auckland (1997)"},{"key":"12_CR12","doi-asserted-by":"crossref","unstructured":"Comparetti, P.M., Salvaneschi, G., Kirda, E., Kolbitsch, C., Kruegel, C., Zanero, S.: Identifying dormant functionality in malware programs. In: Proceedings of the 2010 IEEE Symposium on Security and Privacy (2010)","DOI":"10.1109\/SP.2010.12"},{"key":"12_CR13","unstructured":"Conway, J.H.: Unpredictable iterations. In: Proceedings of the 1972 Number Theorey Conference (1972)"},{"key":"12_CR14","doi-asserted-by":"crossref","unstructured":"Costa, M., Castro, M., Zhou, L., Zhang, L., Peinado, M.: Bouncer: Securing software by blocking bad input. In: Proceedings of the 2007 ACM Symposium on Operating Systems Principles (SOSP) (2007)","DOI":"10.1145\/1294261.1294274"},{"key":"12_CR15","first-page":"1281","volume":"32","author":"R.E. Crandall","year":"1978","unstructured":"Crandall, R.E.: On the \u201d3x + 1\u201d problem. Mathematics of Computation\u00a032, 1281\u20131292 (1978)","journal-title":"Mathematics of Computation"},{"key":"12_CR16","doi-asserted-by":"crossref","unstructured":"Ferrie, P.: W32.Mydoom (2004), http:\/\/www.symantec.com\/security_response\/writeup.jsp?docid=2004-012612-5422-99&tabid=2","DOI":"10.1016\/S1353-4858(04)00036-4"},{"key":"12_CR17","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"238","DOI":"10.1007\/978-3-540-88625-9_16","volume-title":"Information and Communications Security","author":"D. Gao","year":"2008","unstructured":"Gao, D., Reiter, M.K., Song, D.: BinHunt: Automatically finding semantic differences in binary programs. In: Chen, L., Ryan, M.D., Wang, G. (eds.) ICICS 2008. LNCS, vol.\u00a05308, pp. 238\u2013255. Springer, Heidelberg (2008)"},{"key":"12_CR18","doi-asserted-by":"crossref","unstructured":"Godefroid, P., Klarlund, N., Sen, K.: DART: Directed automated random testing. In: Proceedings of the ACM Conference on Programming Lanuguage Design and Implementation (2005)","DOI":"10.1145\/1065010.1065036"},{"key":"12_CR19","unstructured":"Godefroid, P., Levin, M.Y., Molnar, D.: Automated whitebox fuzz testing. In: Proceedings of the 15th Annual Network and Distributed System Security Symposium (NDSS 2008) (2008)"},{"key":"12_CR20","doi-asserted-by":"crossref","unstructured":"Guy, R.K.: Unsolved problems in number theory. Problem Books in Mathematics (2004)","DOI":"10.1007\/978-0-387-26677-0"},{"key":"12_CR21","doi-asserted-by":"publisher","first-page":"385","DOI":"10.1145\/360248.360252","volume":"19","author":"J.C. King","year":"1976","unstructured":"King, J.C.: Symbolic execution and program testing. Commun. ACM\u00a019, 385\u2013394 (1976), http:\/\/doi.acm.org\/10.1145\/360248.360252","journal-title":"Commun. ACM"},{"key":"12_CR22","unstructured":"Knowles, D., Perriott, F.: W32.Blaster (2003), http:\/\/www.symantec.com\/security_response\/writeup.jsp?docid=2003-081113-0229-99&tabid=2"},{"key":"12_CR23","doi-asserted-by":"publisher","first-page":"3","DOI":"10.2307\/2322189","volume":"92","author":"J.C. Lagarias","year":"1985","unstructured":"Lagarias, J.C.: The 3x+1 problem and its generations. Amer. Math. Monthly\u00a092, 3\u201323 (1985)","journal-title":"Amer. Math. Monthly"},{"key":"12_CR24","doi-asserted-by":"crossref","unstructured":"Lee, B., Kim, Y., Kim, J.: binOb+: a framework for potent and stealthy binary obfuscation. In: Proceedings of the 5th ACM Symposium on Information, Computer and Communications Security (2010)","DOI":"10.1145\/1755688.1755722"},{"issue":"1","key":"12_CR25","doi-asserted-by":"publisher","first-page":"41","DOI":"10.1002\/stvr.309","volume":"15","author":"G. Lee","year":"2005","unstructured":"Lee, G., Morris, J., Parker, K., Bundell, G., Lam, P.: Using symbolic execution to guide test generation. Software Testing, Verification & Reliability\u00a015(1), 41\u201361 (2005)","journal-title":"Software Testing, Verification & Reliability"},{"key":"12_CR26","doi-asserted-by":"crossref","unstructured":"Linn, C., Debray, S.: Obfuscation of executable code to improve resistance to static disassembly. In: Proceedings of the 10th ACM Conference on Computer and Communications Security (2003)","DOI":"10.1145\/948109.948149"},{"key":"12_CR27","unstructured":"Molnar, D., Li, X., Wagner, D.: Dynamic test generation to find integer bugs in x86 binary linux programs. In: Proceedings of the 2009 USENIX Security Symposium (2009)"},{"key":"12_CR28","doi-asserted-by":"crossref","unstructured":"Moser, A., Kruegel, C., Kirda, E.: Exploring multiple execution paths for malware analysis. In: Proceedings of the 2007 USENIX Security Symposium (2007)","DOI":"10.1109\/SP.2007.17"},{"key":"12_CR29","doi-asserted-by":"crossref","unstructured":"Moser, A., Kruegel, C., Kirda, E.: Limits of static analysis for malware detection. In: Proceedings of the 23rd Annual Computer Security Applications Conference (2007)","DOI":"10.1109\/ACSAC.2007.21"},{"key":"12_CR30","doi-asserted-by":"crossref","unstructured":"Newsome, J., Brumley, D., Franklin, J., Song, D.: Replayer: Automatic protocol replay by binary analysis. In: Proceedings of the 13th ACM Conference on Computer and and Communications Security (CCS 2006) (2006)","DOI":"10.1145\/1180405.1180444"},{"key":"12_CR31","unstructured":"Popov, I.V., Debray, S.K., Andrews, G.R.: Binary obfuscation using signals. In: Proceedings of the 2007 USENIX Security Symposium (2007)"},{"key":"12_CR32","doi-asserted-by":"crossref","unstructured":"Saxena, P., Poosankam, P., McCamant, S., Song, D.: Loop-extended symbolic execution on binary programs. In: Proceedings of the 18th International Symposium on Software Testing and Analysis (2009)","DOI":"10.21236\/ADA538843"},{"key":"12_CR33","doi-asserted-by":"crossref","unstructured":"Schwartz, E.J., Avgerinos, T., Brumley, D.: All you ever wanted to know about dynamic taint analysis and forward symbolic execution (but might have been afraid to ask). In: Proceedings of the 2010 IEEE Symposium on Security and Privacy (2010)","DOI":"10.1109\/SP.2010.26"},{"key":"12_CR34","doi-asserted-by":"crossref","unstructured":"Sen, K., Marinov, D., Agha, G.: CUTE: A concolic unit testing engine for c. In: Proceedings of 13th International Symposium on the Foundations of Software Engineering, FSE 2005 (2005)","DOI":"10.21236\/ADA482657"},{"key":"12_CR35","unstructured":"Sharif, M., Lanzi, A., Giffin, J., Lee, W.: Impeding malware analysis using conditional code obfuscation. In: Proceedings of the 15th Annual Network and Distributed System Security Symposium (NDSS 2008) (2008)"},{"key":"12_CR36","unstructured":"Shinotsuka, H.: W32.NetSky (2004), http:\/\/www.symantec.com\/security_response\/writeup.jsp?docid=2004-030717-4718-99&tabid=2"},{"key":"12_CR37","unstructured":"Silva, T.O.: Computational verification of the 3x+1 conjecture. Tech. rep., Electronics, Telecommunications, and Informatics Department,University of Aveiro (November 2010), http:\/\/www.ieeta.pt\/~tos\/3x+1.html"},{"key":"12_CR38","unstructured":"Wang, T., Wei, T., Lin, Z., Zou, W.: Intscope: Automatically detecting integer overflow vulnerability in x86 binary using symbolic execution. In: Proceedings of the 16th Annual Network and Distributed System Security Symposium (NDSS 2009) (2009)"},{"key":"12_CR39","doi-asserted-by":"crossref","unstructured":"Xu, R.G., Godefroid, P., Majumdar, R.: Testing for buffer overflows with length abstraction. In: Proceedings of the 2008 International Symposium on Software Testing and Analysis (2008)","DOI":"10.1145\/1390630.1390636"},{"key":"12_CR40","doi-asserted-by":"crossref","unstructured":"Yin, H., Song, D.: Panorama: capturing system-wide information flow for malware detection and analysis. In: ACM Conference on Computer and Communications Security (CCS 2007) (2007)","DOI":"10.1145\/1315245.1315261"}],"container-title":["Lecture Notes in Computer Science","Computer Security \u2013 ESORICS 2011"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-23822-2_12","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,6,23]],"date-time":"2020-06-23T08:46:32Z","timestamp":1592901992000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-23822-2_12"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011]]},"ISBN":["9783642238215","9783642238222"],"references-count":40,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-23822-2_12","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2011]]}}}