{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,31]],"date-time":"2025-03-31T04:11:29Z","timestamp":1743394289567,"version":"3.40.3"},"publisher-location":"Berlin, Heidelberg","reference-count":30,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642309205"},{"type":"electronic","value":"9783642309212"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2012]]},"DOI":"10.1007\/978-3-642-30921-2_12","type":"book-chapter","created":{"date-parts":[[2012,6,8]],"date-time":"2012-06-08T09:54:41Z","timestamp":1339149281000},"page":"201-218","source":"Crossref","is-referenced-by-count":6,"title":["Virtualization Based Password Protection against Malware in Untrusted Operating Systems"],"prefix":"10.1007","author":[{"given":"Yueqiang","family":"Cheng","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xuhua","family":"Ding","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"12_CR1","doi-asserted-by":"publisher","first-page":"164","DOI":"10.1145\/945445.945462","volume-title":"SOSP 2003: Proceedings of the Nineteenth ACM Symposium on Operating Systems Principles","author":"P. Barham","year":"2003","unstructured":"Barham, P., Dragovic, B., Fraser, K., Hand, S., Harris, T., Ho, A., Neugebauer, R., Pratt, I., Warfield, A.: Xen and the art of virtualization. In: SOSP 2003: Proceedings of the Nineteenth ACM Symposium on Operating Systems Principles, pp. 164\u2013177. ACM, New York (2003)"},{"key":"12_CR2","doi-asserted-by":"publisher","first-page":"42","DOI":"10.1145\/69605.2085","volume":"27","author":"V.R. Basili","year":"1984","unstructured":"Basili, V.R., Perricone, B.T.: Software errors and complexity: an empirical investigation. Commun. ACM\u00a027, 42\u201352 (1984)","journal-title":"Commun. ACM"},{"key":"12_CR3","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"219","DOI":"10.1007\/978-3-642-25283-9_15","volume-title":"Trusted Systems","author":"S. Bugiel","year":"2011","unstructured":"Bugiel, S., Dmitrienko, A., Kostiainen, K., Sadeghi, A.-R., Winandy, M.: TruWalletM: Secure Web Authentication on Mobile Platforms. In: Chen, L., Yung, M. (eds.) INTRUST 2010. LNCS, vol.\u00a06802, pp. 219\u2013236. Springer, Heidelberg (2011)"},{"key":"12_CR4","doi-asserted-by":"crossref","unstructured":"Chen, X., Garfinkel, T., Christopher Lewis, E., Subrahmanyam, P., Waldspurger, C.A., Boneh, D., Dwoskin, J., Ports, D.R.K.: Overshadow: A virtualization-based approach to retrofitting protection in commodity operating systems. In: Proceedings of the 13th International Conference on Architectural Support for Programming Languages and Operating Systems (ASPLOS 2008), Seattle, WA, USA (March 2008)","DOI":"10.1145\/1346281.1346284"},{"key":"12_CR5","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"227","DOI":"10.1007\/978-3-642-23822-2_13","volume-title":"Computer Security \u2013 ESORICS 2011","author":"Y. Cheng","year":"2011","unstructured":"Cheng, Y., Ding, X., Deng, R.H.: DriverGuard: A Fine-Grained Protection on I\/O Flows. In: Atluri, V., Diaz, C. (eds.) ESORICS 2011. LNCS, vol.\u00a06879, pp. 227\u2013244. Springer, Heidelberg (2011)"},{"key":"12_CR6","doi-asserted-by":"crossref","unstructured":"Cox, R.S., Hansen, J.G., Gribble, S.D., Levy, H.M.: A safety-oriented platform for web applications. In: Proceedings of IEEE Symposium on Security and Privacy (2006)","DOI":"10.1109\/SP.2006.4"},{"key":"12_CR7","unstructured":"CVE-2008-0923 (2008), http:\/\/cve.mitre.org\/cgi-bin\/cvename.cgi-?name=cve-2008-0923"},{"key":"12_CR8","doi-asserted-by":"publisher","first-page":"19","DOI":"10.1145\/1655108.1655112","volume-title":"Proceedings of the 2009 ACM workshop on Scalable trusted computing, STC 2009","author":"S. Gajek","year":"2009","unstructured":"Gajek, S., L\u00f6hr, H., Sadeghi, A.-R., Winandy, M.: Truwallet: trustworthy and migratable wallet-based web authentication. In: Proceedings of the 2009 ACM workshop on Scalable trusted computing, STC 2009, pp. 19\u201328. ACM, New York (2009)"},{"key":"12_CR9","doi-asserted-by":"crossref","unstructured":"Grier, C., Tang, S., King, S.: Secure web browsing with the OP web browser. In: Proceedings of IEEE Symposium on Security and Privacy (2008)","DOI":"10.1109\/SP.2008.19"},{"key":"12_CR10","unstructured":"IBM. IBM VGA Technical Reference Manual, http:\/\/www.mca-mafia.de\/pdf\/ibm_vgaxga_trm2.pdf"},{"key":"12_CR11","first-page":"314","volume-title":"Proceedings of the 2006 IEEE Symposium on Security and Privacy","author":"S.T. King","year":"2006","unstructured":"King, S.T., Chen, P.M., Wang, Y.-M., Verbowski, C., Wang, H.J., Lorch, J.R.: Subvirt: Implementing malware with virtual machines. In: Proceedings of the 2006 IEEE Symposium on Security and Privacy, pp. 314\u2013327. IEEE Computer Society, Washington, DC (2006)"},{"key":"12_CR12","unstructured":"Sawtooth\u00a0Consulting Limited. CyaSSL Embedded SSL Library, http:\/\/www.yassl.com\/yaSSL\/Products-cyassl.html"},{"key":"12_CR13","doi-asserted-by":"publisher","first-page":"143","DOI":"10.1109\/SP.2010.17","volume-title":"Proceedings of the 2010 IEEE Symposium on Security and Privacy, SP 2010","author":"J.M. McCune","year":"2010","unstructured":"McCune, J.M., Li, Y., Qu, N., Zhou, Z., Datta, A., Gligor, V., Perrig, A.: Trustvisor: Efficient tcb reduction and attestation. In: Proceedings of the 2010 IEEE Symposium on Security and Privacy, SP 2010, pp. 143\u2013158. IEEE Computer Society, Washington, DC (2010)"},{"key":"12_CR14","doi-asserted-by":"crossref","unstructured":"McCune, J.M., Parno, B., Perrig, A., Reiter, M.K., Isozaki, H.: Flicker: An execution infrastructure for TCB minimization. In: EuroSys 2008 (2008)","DOI":"10.1145\/1352592.1352625"},{"key":"12_CR15","first-page":"17","volume-title":"Proceedings of the Annual Conference on USENIX 2006 Annual Technical Conference","author":"J.M. McCune","year":"2006","unstructured":"McCune, J.M., Perrig, A., Reiter, M.K.: Bump in the ether: a framework for securing sensitive user input. In: Proceedings of the Annual Conference on USENIX 2006 Annual Technical Conference, p. 17. USENIX Association, Berkeley (2006)"},{"key":"12_CR16","unstructured":"McCune, J.M., Perrig, A., Reiter, M.K.: Safe passage for passwords and other sensitive data. In: Proceedings of the Symposium on Network and Distributed Systems Security (NDSS) (February 2009)"},{"key":"12_CR17","unstructured":"Microsoft. About the Windows Driver Kit (WDK), http:\/\/goo.gl\/DfSRi"},{"key":"12_CR18","doi-asserted-by":"publisher","first-page":"151","DOI":"10.1145\/1346256.1346278","volume-title":"Proceedings of the Fourth ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments, VEE 2008","author":"D.G. Murray","year":"2008","unstructured":"Murray, D.G., Milos, G., Hand, S.: Improving xen security through disaggregation. In: Proceedings of the Fourth ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments, VEE 2008, pp. 151\u2013160. ACM, New York (2008)"},{"key":"12_CR19","doi-asserted-by":"crossref","unstructured":"Oprea, A., Balfanz, D., Durfee, G., Smetters, D.K.: Securing a remote terminal application with a mobile trusted device. In: 20th Annual Computer Security Applications Conference, pp. 438\u2013447. IEEE (2004)","DOI":"10.1109\/CSAC.2004.33"},{"key":"12_CR20","doi-asserted-by":"publisher","first-page":"55","DOI":"10.1145\/566172.566181","volume-title":"Proceedings of the 2002 ACM SIGSOFT International Symposium on Software Testing and Analysis, ISSTA 2002","author":"T.J. Ostrand","year":"2002","unstructured":"Ostrand, T.J., Weyuker, E.J.: The distribution of faults in a large industrial software system. In: Proceedings of the 2002 ACM SIGSOFT International Symposium on Software Testing and Analysis, ISSTA 2002, pp. 55\u201364. ACM, New York (2002)"},{"key":"12_CR21","unstructured":"Rafal, W., Joanna, R., Alexander, T.: Xen 0wning trilogy (2008), http:\/\/invisible-thingslab.com\/itl\/Resources.html"},{"key":"12_CR22","unstructured":"Ross, B., Jackson, C., Miyake, N., Boneh, D., Mitchell, J.: Stronger password authentication using browser extensions. In: Proceedings of the 14th USENIX Security Symposium (2005)"},{"key":"12_CR23","unstructured":"Limited Sawtooth, Consulting. Ctaocrypt embedded cryptography library, http:\/\/www.yassh.com\/yaSSL\/Docs_CTaoCrypt_Usage_Reference.html"},{"key":"12_CR24","doi-asserted-by":"publisher","first-page":"335","DOI":"10.1145\/1294261.1294294","volume-title":"Proceedings of Twenty-First ACM SIGOPS Symposium on Operating Systems Principles, SOSP 2007","author":"A. Seshadri","year":"2007","unstructured":"Seshadri, A., Luk, M., Qu, N., Perrig, A.: Secvisor: a tiny hypervisor to provide lifetime kernel code integrity for commodity oses. In: Proceedings of Twenty-First ACM SIGOPS Symposium on Operating Systems Principles, SOSP 2007, pp. 335\u2013350. ACM, New York (2007)"},{"key":"12_CR25","doi-asserted-by":"publisher","first-page":"121","DOI":"10.1145\/1508293.1508311","volume-title":"Proceedings of the 2009 ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments, VEE 2009","author":"T. Shinagawa","year":"2009","unstructured":"Shinagawa, T., Eiraku, H., Tanimoto, K., Omote, K., Hasegawa, S., Horie, T., Hirano, M., Kourai, K., Oyama, Y., Kawai, E., Kono, K., Chiba, S., Shinjo, Y., Kato, K.: Bitvisor: a thin hypervisor for enforcing i\/o device security. In: Proceedings of the 2009 ACM SIGPLAN\/SIGOPS International Conference on Virtual Execution Environments, VEE 2009, pp. 121\u2013130. ACM, New York (2009)"},{"key":"12_CR26","doi-asserted-by":"publisher","first-page":"209","DOI":"10.1145\/1755913.1755935","volume-title":"Proceedings of the 5th European Conference on Computer Systems, EuroSys 2010","author":"U. Steinberg","year":"2010","unstructured":"Steinberg, U., Kauer, B.: Nova: a microhypervisor-based secure virtualization architecture. In: Proceedings of the 5th European Conference on Computer Systems, EuroSys 2010, pp. 209\u2013222. ACM, New York (2010)"},{"key":"12_CR27","unstructured":"The Blue Pill, http:\/\/blackhat.com\/presentations\/bh-usa-06\/BH-US-06-Rutkowska.pdf"},{"key":"12_CR28","unstructured":"Trusted\u00a0Computing Group. TPM main specification. Main Specification Version 1.2 rev. 85 (February 2005)"},{"key":"12_CR29","doi-asserted-by":"crossref","unstructured":"Wu, M., Miller, R.C., Little, G.: Web wallet: Preventing phishing attacks by revealing user intentions. In: Proceedings of the Symposium on Usable Privacy and Security (SOUPS), pp. 102\u2013113. ACM Press (2006)","DOI":"10.1145\/1143120.1143133"},{"key":"12_CR30","doi-asserted-by":"crossref","unstructured":"Zaharia, M., Katti, S., Grier, C., Paxson, V., Shenker, S., Stoica, I., Song, D.: Hypervisors as a foothold for personal computer security: An agenda for the research community. Technical report (January 2012)","DOI":"10.21236\/ADA555877"}],"container-title":["Lecture Notes in Computer Science","Trust and Trustworthy Computing"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-30921-2_12.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,3,30]],"date-time":"2025-03-30T06:19:01Z","timestamp":1743315541000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-30921-2_12"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2012]]},"ISBN":["9783642309205","9783642309212"],"references-count":30,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-30921-2_12","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2012]]}}}