{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,20]],"date-time":"2025-10-20T22:42:24Z","timestamp":1761000144604,"version":"build-2065373602"},"publisher-location":"Singapore","reference-count":48,"publisher":"Springer Nature Singapore","isbn-type":[{"type":"print","value":"9789819535361"},{"type":"electronic","value":"9789819535378"}],"license":[{"start":{"date-parts":[[2025,10,20]],"date-time":"2025-10-20T00:00:00Z","timestamp":1760918400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2025,10,20]],"date-time":"2025-10-20T00:00:00Z","timestamp":1760918400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-981-95-3537-8_21","type":"book-chapter","created":{"date-parts":[[2025,10,19]],"date-time":"2025-10-19T10:44:00Z","timestamp":1760870640000},"page":"379-397","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["RustGuard: Detecting Rust Data Leak Issues with\u00a0Context-Sensitive Static Taint Analysis"],"prefix":"10.1007","author":[{"given":"Shanlin","family":"Deng","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Mingliang","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Si","family":"Wu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Baojian","family":"Hua","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2025,10,20]]},"reference":[{"key":"21_CR1","unstructured":"Abdolence\/slack-morphism-rust: A modern async client library for rust, supports slack web\/events api\/socket mode and block kit. https:\/\/github.com\/abdolence\/slack-morphism-rust"},{"key":"21_CR2","unstructured":"Check instructions sysvar $$\\cdot $$ wormhole-foundation\/wormhole@e8b9181. https:\/\/github.com\/wormhole-foundation\/wormhole\/commit\/e8b91810a9bb35c3c139f86b4d0795432d647305"},{"key":"21_CR3","unstructured":"Cve-2022-31162 - osv. https:\/\/osv.dev\/vulnerability\/CVE-2022-31162"},{"key":"21_CR4","unstructured":"Diem\/diem: Diem\u2019s mission is to build a trusted and innovative financial network that empowers people and businesses around the world. https:\/\/github.com\/diem\/diem"},{"key":"21_CR5","unstructured":"Generic types, traits, and lifetimes - the rust programming language. https:\/\/doc.rust-lang.org\/book\/ch10-00-generics.html"},{"key":"21_CR6","unstructured":"Macros - the rust programming language. https:\/\/doc.rust-lang.org\/book\/ch20-05-macros.html"},{"key":"21_CR7","unstructured":"Openethereum\/parity-ethereum: The fast, light, and robust client for ethereum-like networks. https:\/\/github.com\/openethereum\/parity-ethereum"},{"key":"21_CR8","unstructured":"Redox - your next(gen) os - redox - your next(gen) os. https:\/\/www.redox-os.org\/"},{"key":"21_CR9","unstructured":"Rigellute\/spotify-tui: Spotify for the terminal written in rust. https:\/\/github.com\/Rigellute\/spotify-tui"},{"key":"21_CR10","unstructured":"Rust for linux. https:\/\/github.com\/Rust-for-Linux"},{"key":"21_CR11","unstructured":"The rust programming language - the rust programming language. https:\/\/doc.rust-lang.org\/stable\/book\/"},{"key":"21_CR12","unstructured":"Tiobe index. https:\/\/www.tiobe.com\/tiobe-index\/"},{"key":"21_CR13","unstructured":"Update solana to 1.9.4 $$\\cdot $$ wormhole-foundation\/wormhole@7edbbd3. https:\/\/github.com\/wormhole-foundation\/wormhole\/commit\/7edbbd3677ee6ca681be8722a607bc576a3912c8"},{"key":"21_CR14","unstructured":"What is ownership? - the rust programming language. https:\/\/doc.rust-lang.org\/book\/ch04-01-what-is-ownership.html"},{"issue":"6","key":"21_CR15","doi-asserted-by":"publisher","first-page":"259","DOI":"10.1145\/2666356.2594299","volume":"49","author":"S Arzt","year":"2014","unstructured":"Arzt, S., et al.: Flowdroid: precise context, flow, field, object-sensitive and lifecycle-aware taint analysis for android apps. ACM SIGPLAN Not. 49(6), 259\u2013269 (2014). https:\/\/doi.org\/10.1145\/2666356.2594299","journal-title":"ACM SIGPLAN Not."},{"key":"21_CR16","doi-asserted-by":"publisher","unstructured":"Bae, Y., Kim, Y., Askar, A., Lim, J., Kim, T.: Rudra: finding memory safety bugs in rust at the ecosystem scale. In: Proceedings of the ACM SIGOPS 28th Symposium on Operating Systems Principles, pp. 84\u201399. ACM, Virtual Event (2021). https:\/\/doi.org\/10.1145\/3477132.3483570","DOI":"10.1145\/3477132.3483570"},{"key":"21_CR17","unstructured":"Cho, K., Kim, J., Duy, K.D., Lim, H., Lee, H.: Rustsan: retrofitting addresssanitizer for efficient sanitization of rust (2024)"},{"key":"21_CR18","doi-asserted-by":"publisher","unstructured":"Cousot, P., Cousot, R.: Abstract interpretation: a unified lattice model for static analysis of programs by construction or approximation of fixpoints. In: Proceedings of the 4th ACM SIGACT-SIGPLAN Symposium on Principles of Programming Languages - POPL \u201977, pp. 238\u2013252. ACM Press, Los Angeles (1977). https:\/\/doi.org\/10.1145\/512950.512973","DOI":"10.1145\/512950.512973"},{"key":"21_CR19","doi-asserted-by":"publisher","unstructured":"Cousot, P., Halbwachs, N.: Automatic discovery of linear restraints among variables of a program. In: Proceedings of the 5th ACM SIGACT-SIGPLAN Symposium on Principles of Programming Languages - POPL \u201978, pp. 84\u201396. ACM Press, Tucson (1978). https:\/\/doi.org\/10.1145\/512760.512770","DOI":"10.1145\/512760.512770"},{"issue":"4","key":"21_CR20","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3542948","volume":"32","author":"M Cui","year":"2023","unstructured":"Cui, M., Chen, C., Xu, H., Zhou, Y.: Safedrop: detecting memory deallocation bugs of rust programs via static data-flow analysis. ACM Trans. Softw. Eng. Methodol. 32(4), 1\u201321 (2023). https:\/\/doi.org\/10.1145\/3542948","journal-title":"ACM Trans. Softw. Eng. Methodol."},{"key":"21_CR21","doi-asserted-by":"publisher","unstructured":"Cui, S., Zhao, G., Gao, Y., Tavu, T., Huang, J.: Vrust: automated vulnerability detection for solana smart contracts. In: Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security, pp. 639\u2013652. ACM, Los Angeles (2022). https:\/\/doi.org\/10.1145\/3548606.3560552","DOI":"10.1145\/3548606.3560552"},{"key":"21_CR22","unstructured":"Developers, T.S.P.: Servo aims to empower developers with a lightweight, high-performance alternative for embedding web technologies in applications. https:\/\/servo.org\/"},{"key":"21_CR23","doi-asserted-by":"publisher","unstructured":"Durumeric, Z., et al.: The matter of heartbleed. In: Proceedings of the 2014 Conference on Internet Measurement Conference, pp. 475\u2013488. ACM, Vancouver (2014). https:\/\/doi.org\/10.1145\/2663716.2663755","DOI":"10.1145\/2663716.2663755"},{"issue":"2","key":"21_CR24","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/2619091","volume":"32","author":"W Enck","year":"2014","unstructured":"Enck, W., et al.: Taintdroid: an information-flow tracking system for realtime privacy monitoring on smartphones. ACM Trans. Comput. Syst. 32(2), 1\u201329 (2014). https:\/\/doi.org\/10.1145\/2619091","journal-title":"ACM Trans. Comput. Syst."},{"key":"21_CR25","doi-asserted-by":"publisher","unstructured":"Evans, A.N., Campbell, B., Soffa, M.L.: Is rust used safely by software developers? In: Proceedings of the ACM\/IEEE 42nd International Conference on Software Engineering, pp. 246\u2013257. ACM, Seoul (2020). https:\/\/doi.org\/10.1145\/3377811.3380413","DOI":"10.1145\/3377811.3380413"},{"key":"21_CR26","doi-asserted-by":"publisher","unstructured":"Grech, N., Smaragdakis, Y.: P\/taint: unified points-to and taint analysis. Proc. ACM Program. Lang. 1(OOPSLA), 1\u201328 (2017). https:\/\/doi.org\/10.1145\/3133926","DOI":"10.1145\/3133926"},{"key":"21_CR27","doi-asserted-by":"publisher","unstructured":"Jiang, J., Xu, H., Zhou, Y.: Rulf: rust library fuzzing via api dependency graph traversal. In: 2021 36th IEEE\/ACM International Conference on Automated Software Engineering (ASE). pp. 581\u2013592. IEEE, Melbourne (2021). https:\/\/doi.org\/10.1109\/ASE51524.2021.9678813","DOI":"10.1109\/ASE51524.2021.9678813"},{"key":"21_CR28","doi-asserted-by":"publisher","unstructured":"Jung, R., Jourdan, J.H., Krebbers, R., Dreyer, D.: Rustbelt: securing the foundations of the rust programming language. Proc. ACM Program. Lang. 2(POPL), 1\u201334 (2018). https:\/\/doi.org\/10.1145\/3158154","DOI":"10.1145\/3158154"},{"issue":"3","key":"21_CR29","doi-asserted-by":"publisher","first-page":"305","DOI":"10.1007\/BF00290339","volume":"7","author":"JB Kam","year":"1977","unstructured":"Kam, J.B., Ullman, J.D.: Monotone data flow analysis frameworks. Acta Informatica 7(3), 305\u2013317 (1977). https:\/\/doi.org\/10.1007\/BF00290339","journal-title":"Acta Informatica"},{"key":"21_CR30","doi-asserted-by":"publisher","unstructured":"King, D., Hicks, B., Hicks, M., Jaeger, T.: Implicit flows: Can\u2019t live with \u2018em, can\u2019t live without \u2018em. In: Sekar, R., Pujari, A.K. (eds.) Information Systems Security, vol.\u00a05352, pp. 56\u201370. Springer, Heidelberg (2008). https:\/\/doi.org\/10.1007\/978-3-540-89862-7_4","DOI":"10.1007\/978-3-540-89862-7_4"},{"issue":"OOPSLA1","key":"21_CR31","doi-asserted-by":"publisher","first-page":"166","DOI":"10.1145\/3649817","volume":"8","author":"A Lamba","year":"2024","unstructured":"Lamba, A., Taylor, M., Beardsley, V., Bambeck, J., Bond, M.D., Lin, Z.: Cocoon: static information flow control in rust. Proc. ACM Program. Lang. 8(OOPSLA1), 166\u2013193 (2024). https:\/\/doi.org\/10.1145\/3649817","journal-title":"Proc. ACM Program. Lang."},{"key":"21_CR32","doi-asserted-by":"publisher","unstructured":"Levy, A., et al.: Multiprogramming a 64kb computer safely and efficiently. In: Proceedings of the 26th Symposium on Operating Systems Principles, pp. 234\u2013251. ACM, Shanghai (2017). https:\/\/doi.org\/10.1145\/3132747.3132786","DOI":"10.1145\/3132747.3132786"},{"key":"21_CR33","doi-asserted-by":"publisher","unstructured":"Li, Z., Wang, J., Sun, M., Lui, J.C.: Mirchecker: detecting bugs in rust programs via static analysis. In: Proceedings of the 2021 ACM SIGSAC Conference on Computer and Communications Security, pp. 2183\u20132196. ACM, Virtual Event (2021). https:\/\/doi.org\/10.1145\/3460120.3484541","DOI":"10.1145\/3460120.3484541"},{"key":"21_CR34","doi-asserted-by":"publisher","unstructured":"Liu, P., Zhao, G., Huang, J.: Securing unsafe rust programs with xrust. In: Proceedings of the ACM\/IEEE 42nd International Conference on Software Engineering, pp. 234\u2013245. ACM, Seoul (2020). https:\/\/doi.org\/10.1145\/3377811.3380325","DOI":"10.1145\/3377811.3380325"},{"key":"21_CR35","doi-asserted-by":"publisher","unstructured":"Mine, A.: The octagon abstract domain. In: Proceedings Eighth Working Conference on Reverse Engineering, pp. 310\u2013319. IEEE Computer Society, Stuttgart (2001). https:\/\/doi.org\/10.1109\/WCRE.2001.957836","DOI":"10.1109\/WCRE.2001.957836"},{"key":"21_CR36","series-title":"Prentice-Hall Software Series","volume-title":"Program Flow Analysis: Theory and Applications","author":"SS Muchnick","year":"1981","unstructured":"Muchnick, S.S., Jones, N.D.: Program Flow Analysis: Theory and Applications. Prentice-Hall Software Series, Prentice-Hall, Englewood Cliffs (1981)"},{"key":"21_CR37","unstructured":"Newsome, J., Song, D.: Dynamic taint analysis for automatic detection, analysis, and signature generation of exploits on commodity software (2005)"},{"key":"21_CR38","volume-title":"Types and Programming Languages","author":"BC Pierce","year":"2002","unstructured":"Pierce, B.C.: Types and Programming Languages. MIT Press, Cambridge (2002)"},{"key":"21_CR39","doi-asserted-by":"publisher","unstructured":"Pullicino, K.: Jif: language-based information-flow security in java (2014). https:\/\/doi.org\/10.48550\/arXiv.1412.8639","DOI":"10.48550\/arXiv.1412.8639"},{"issue":"6","key":"21_CR40","doi-asserted-by":"publisher","first-page":"1306","DOI":"10.1109\/TSE.2024.3380393","volume":"50","author":"B Qin","year":"2024","unstructured":"Qin, B., et al.: Understanding and detecting real-world safety issues in rust. IEEE Trans. Softw. Eng. 50(6), 1306\u20131324 (2024). https:\/\/doi.org\/10.1109\/TSE.2024.3380393","journal-title":"IEEE Trans. Softw. Eng."},{"key":"21_CR41","doi-asserted-by":"publisher","unstructured":"Saha, S., Ghentiyala, S., Lu, S., Bang, L., Bultan, T.: Obtaining information leakage bounds via approximate model counting. Proc. ACM Program. Lang. 7(PLDI), 1488\u20131509 (2023). https:\/\/doi.org\/10.1145\/3591281","DOI":"10.1145\/3591281"},{"key":"21_CR42","series-title":"Lecture Notes in Electrical Engineering","doi-asserted-by":"publisher","first-page":"243","DOI":"10.1007\/978-94-007-6738-6_31","volume-title":"Multimedia and Ubiquitous Engineering","author":"S Sakamoto","year":"2013","unstructured":"Sakamoto, S., Okuda, K., Nakatsuka, R., Yamauchi, T.: DroidTrack: tracking information diffusion and preventing information leakage on android. In: Park, J.J.J.H., Ng, J.K.-Y., Jeong, H.Y., Waluyo, B. (eds.) Multimedia and Ubiquitous Engineering. LNEE, vol. 240, pp. 243\u2013251. Springer, Dordrecht (2013). https:\/\/doi.org\/10.1007\/978-94-007-6738-6_31"},{"key":"21_CR43","doi-asserted-by":"publisher","unstructured":"Wang, F., Song, F., Zhang, M., Zhu, X., Zhang, J.: Krust: a formal executable semantics of rust. In: 2018 International Symposium on Theoretical Aspects of Software Engineering (TASE), pp. 44\u201351. IEEE, Guangzhou, China (2018). https:\/\/doi.org\/10.1109\/TASE.2018.00014","DOI":"10.1109\/TASE.2018.00014"},{"key":"21_CR44","doi-asserted-by":"publisher","unstructured":"Wei, S., Ryder, B.G.: Practical blended taint analysis for javascript. In: Proceedings of the 2013 International Symposium on Software Testing and Analysis, pp. 336\u2013346. ACM, Lugano (2013). https:\/\/doi.org\/10.1145\/2483760.2483788","DOI":"10.1145\/2483760.2483788"},{"issue":"1","key":"21_CR45","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3466642","volume":"31","author":"H Xu","year":"2022","unstructured":"Xu, H., Chen, Z., Sun, M., Zhou, Y., Lyu, M.R.: Memory-safety challenge considered solved? An in-depth study with all rust CVES. ACM Trans. Softw. Eng. Methodol. 31(1), 1\u201325 (2022). https:\/\/doi.org\/10.1145\/3466642","journal-title":"ACM Trans. Softw. Eng. Methodol."},{"key":"21_CR46","unstructured":"Yakovenko, A.: Solana: a new architecture for a high performance blockchain (2018)"},{"key":"21_CR47","doi-asserted-by":"publisher","unstructured":"Yang, Z., Yang, M.: Leakminer: detect information leakage on android with static taint analysis. In: 2012 Third World Congress on Software Engineering, pp. 101\u2013104. IEEE, Wuhan (2012). https:\/\/doi.org\/10.1109\/WCSE.2012.26","DOI":"10.1109\/WCSE.2012.26"},{"key":"21_CR48","doi-asserted-by":"publisher","unstructured":"Yin, X., Feng, Y., Shi, Q., Liu, Z., Liu, H., Xu, B.: Fries: fuzzing rust library interactions via efficient ecosystem-guided target generation. In: Proceedings of the 33rd ACM SIGSOFT International Symposium on Software Testing and Analysis, pp. 1137\u20131148. ACM, Vienna (2024). https:\/\/doi.org\/10.1145\/3650212.3680348","DOI":"10.1145\/3650212.3680348"}],"container-title":["Lecture Notes in Computer Science","Information and Communications Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-95-3537-8_21","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,20]],"date-time":"2025-10-20T22:03:45Z","timestamp":1760997825000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-95-3537-8_21"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,10,20]]},"ISBN":["9789819535361","9789819535378"],"references-count":48,"URL":"https:\/\/doi.org\/10.1007\/978-981-95-3537-8_21","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2025,10,20]]},"assertion":[{"value":"20 October 2025","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICICS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Information and Communications Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Nanjing","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2025","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"29 October 2025","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"31 October 2025","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"27","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icics2025","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/www.icics2025.org\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}