{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,7,11]],"date-time":"2025-07-11T10:23:02Z","timestamp":1752229382538},"reference-count":39,"publisher":"Oxford University Press (OUP)","issue":"11","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["The Computer Journal"],"published-print":{"date-parts":[[2016,11]]},"DOI":"10.1093\/comjnl\/bxw047","type":"journal-article","created":{"date-parts":[[2016,8,10]],"date-time":"2016-08-10T21:38:47Z","timestamp":1470865127000},"page":"1735-1748","source":"Crossref","is-referenced-by-count":5,"title":["Rethinking Software Component Security: Software Component Level Integrity and Cross Verification"],"prefix":"10.1093","volume":"59","author":[{"given":"Byungho","family":"Min","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Vijay","family":"Varadharajan","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"286","published-online":{"date-parts":[[2016,8,10]]},"reference":[{"key":"2016110403271294000_59.11.1735.1","unstructured":"Blunden, B. (2012) The Rootkit Arsenal: Escape and Evasion in the Dark Corners of the System, Jones & Bartlett Publishers."},{"key":"2016110403271294000_59.11.1735.2","doi-asserted-by":"crossref","unstructured":"Kwon, T. and Su, Z. (2010) Automatic Detection of Unsafe Component Loadings. ISSTA \u201810: Proc. 19th Int. Symposium on Software Testing and Analysis, Trento, Italy, July, pp. 107\u2013118. ACM, New York.","DOI":"10.1145\/1831708.1831722"},{"key":"2016110403271294000_59.11.1735.3","doi-asserted-by":"crossref","unstructured":"Kwon, T. and Su, Z. (2012) Static Detection of Unsafe Component Loadings Compiler Construction, Tallinn, Estonia (122\u2013143) Springer.","DOI":"10.1007\/978-3-642-28652-0_7"},{"key":"2016110403271294000_59.11.1735.4","unstructured":"Microsoft SWI (2014) MS14-019 \u2013 Fixing a binary hijacking via .cmd or .bat file. http:\/\/blogs.technet.com\/b\/srd\/archive\/2014\/04\/08\/ms14-019-fixing-a-binary-hijacking-via-cmd-or-bat-file.aspx."},{"key":"2016110403271294000_59.11.1735.5","unstructured":"Stewart, A. (2014) DLL Side-loading: A Thorn in the Side of the Anti-Virus Industry. Technical Report. FireEye, Milpitas."},{"key":"2016110403271294000_59.11.1735.6","doi-asserted-by":"crossref","unstructured":"Min, B. and Varadharajan, V. (2014) Feature-Distributed Malware Attack: Risk and Defence. 19th European Symposium on Research in Computer Security (ESORICS), Wroclaw, Poland, September, pp. 457\u2013474. Springer, Berlin.","DOI":"10.1007\/978-3-319-11212-1_26"},{"key":"2016110403271294000_59.11.1735.7","unstructured":"Anity Labs (2012) Analysis Report on Flame Worm Samples. Technical Report. Anity Labs, Fairfield."},{"key":"2016110403271294000_59.11.1735.8","unstructured":"Chien, E. , Murchu, L.O. and Falliere, N. (2011) W32.Duqu: The precursor to the next Stuxnet. Technical Report. Symantec, Sunnyvale."},{"key":"2016110403271294000_59.11.1735.9","unstructured":"Falliere, N. , Murchu, L.O. and Chien, E. (2011) W32.Stuxnet Dossier. Technical Report. Symantec, Sunnyvale."},{"key":"2016110403271294000_59.11.1735.10","unstructured":"Kaspersky Lab (2012) Gauss: Abnormal Distribution. Technical Report. Kaspersky Lab, Moscow."},{"key":"2016110403271294000_59.11.1735.11","unstructured":"Kaspersky Lab (2014) Unveiling \u2018Careto\u2019 \u2014 The Masked APT. Technical Report. Kaspersky Lab, Moscow."},{"key":"2016110403271294000_59.11.1735.12","unstructured":"Leichtling, J. (2015) Continuing to protect chrome users from malicious extensions. http:\/\/blog.chromium.org\/2015\/05\/continuing-to-protect-chrome-users-from.html."},{"key":"2016110403271294000_59.11.1735.13","unstructured":"Shinotsuka, H. (2014) How attackers steal private keys from digital certificates. http:\/\/www.symantec.com\/connect\/blogs\/how-attackers-steal-private-keys-digital-certificates."},{"key":"2016110403271294000_59.11.1735.14","unstructured":"McAfee Labs (2014) McAfee Labs Threats Report 4th Quarter 2013. Technical Report. McAfee Labs, Santa Clara."},{"key":"2016110403271294000_59.11.1735.15","unstructured":"Russinovich, M. , Solomon, D. and Ionescu, A. (2012) Windows Internals, Part 1. Microsoft Press."},{"key":"2016110403271294000_59.11.1735.16","unstructured":"Morton, B. (2013) Code Signing. Technical Report. CASC, Clifton."},{"key":"2016110403271294000_59.11.1735.17","first-page":"3247","article-title":"Detection of unsafe component loadings using dynamic analysis technique","volume":"2","author":"Geethanjali","year":"2013","journal-title":"Int. J. Adv. Res. Comput. Eng. Technol."},{"key":"2016110403271294000_59.11.1735.18","first-page":"88","article-title":"Dynamic component safety analysis: A regression based code coverage approach","volume":"4","author":"Ramesh","year":"2013","journal-title":"Int. J. Electron. Commun. Comput. Eng."},{"key":"2016110403271294000_59.11.1735.19","doi-asserted-by":"crossref","unstructured":"Min, B. and Varadharajan, V. (2015) Design, Implementation and Evaluation of a Novel Anti-Virus Parasitic Malware. 30th ACM\/SIGAPP Symposium On Applied Computing (ACM SAC), Salamanca, Spain, April, pp. 2127\u20132133. ACM, New York.","DOI":"10.1145\/2695664.2695683"},{"key":"2016110403271294000_59.11.1735.20","first-page":"361","article-title":"A novel malware for subversion of self-protection in anti-virus","volume":"46","author":"Min","year":"2015","journal-title":"Softw.: Pract. Exp."},{"key":"2016110403271294000_59.11.1735.21","doi-asserted-by":"crossref","unstructured":"Min, B. and Varadharajan, V. (2015) Secure Dynamic Software Loading and Execution Using Cross Component Verification. 45th Annual IEEE\/IFIP Int. Conf. Dependable Systems and Networks (DSN), Rio de Janeiro, Brazil, June, pp. 113\u2013124. IEEE, Washington DC.","DOI":"10.1109\/DSN.2015.17"},{"key":"2016110403271294000_59.11.1735.22","doi-asserted-by":"publisher","DOI":"10.1002\/spe.2197"},{"key":"2016110403271294000_59.11.1735.23","unstructured":"Fossi, M. , Egan, G. , Johnson, E. , Mack, T. , Adams, T. , Blackbird, J. , Graveland, B. and McKinney, D. (2011) Symantec Report on Attack Kits and Malicious Websites. Technical Report. Symantec, Sunnyvale."},{"key":"2016110403271294000_59.11.1735.24","doi-asserted-by":"crossref","unstructured":"Grier, C. , Ballard, L. , Caballero, J. , Chachra, N. , Dietrich, C.J. , Levchenko, K. , Mavrommatis, P. , McCoy, D. , Nappa, A. and Pitsillidis, A. (2012) Manufacturing Compromise: The Emergence of Exploit-as-a-Service. ACM Conf. Comput. Commun. Security (CCS'12), Raleigh, North Carolina, USA, October, pp. 821\u2013832. ACM, New York.","DOI":"10.1145\/2382196.2382283"},{"key":"2016110403271294000_59.11.1735.25","doi-asserted-by":"crossref","unstructured":"Lu, L. , Yegneswaran, V. , Porras, P. and Lee, W. (2010) Blade: An Attack-Agnostic Approach for Preventing Drive-By Malware Infections. ACM Conf. Comput. Commun. Security (CCS'10), Chicago, Illinois, USA, October, pp. 440\u2013450. ACM, New York.","DOI":"10.1145\/1866307.1866356"},{"key":"2016110403271294000_59.11.1735.26","unstructured":"Cannell, J. (2013). Tools of the trade: Exploit kits. http:\/\/blog.malwarebytes.org\/intelligence\/2013\/02\/tools-of-the-trade-exploit-kits\/"},{"key":"2016110403271294000_59.11.1735.27","unstructured":"Contagio (2013) An overview of exploit packs (update 19.1) April 2013. http:\/\/contagiodump.blogspot.com"},{"key":"2016110403271294000_59.11.1735.28","unstructured":"Jones, J. (2012) The State of Web Exploit Kits. Black Hat USA, Las Vegas, Nevada, USA, July, pp. 1\u201340."},{"key":"2016110403271294000_59.11.1735.29","unstructured":"Microsoft. New low-level binaries . http:\/\/msdn.microsoft.com\/en-us\/library\/windows\/desktop\/dd371752(v=vs.85).aspx"},{"key":"2016110403271294000_59.11.1735.30","unstructured":"Microsoft (2007) Code Signing Best Practices. Technical Report. Microsoft, Redmond."},{"key":"2016110403271294000_59.11.1735.31","unstructured":"Microsoft (2008) Windows Authenticode Portable Executable Signature Format. Technical Report. Microsoft, Redmond."},{"key":"2016110403271294000_59.11.1735.32","doi-asserted-by":"crossref","unstructured":"Payer, M. , Hartmann, T. and Gross, T.R. (2012) Safe Loading \u2014 A Foundation for Secure Execution of Untrusted Programs. IEEE Symposium on Security and Privacy (S&P) 2012, San Fransisco, CA, USA, April, pp. 18\u201332. IEEE, Washington DC.","DOI":"10.1109\/SP.2012.11"},{"key":"2016110403271294000_59.11.1735.33","unstructured":"Goldberg, I. , Wagner, D. and Thomas, R. (1996) A secure environment for untrusted helper applications: Confining the wily hacker. USENIX Security Symposium 1996, San Jose, CA, USA, July. USENIX Association, Berkeley."},{"key":"2016110403271294000_59.11.1735.34","doi-asserted-by":"crossref","unstructured":"Grier, C. , Tang, S. and King, S.T. (2008) Secure Web Browsing with the OP Web Browser. IEEE Symposium on Security and Privacy, Oakland, CA, USA, May, pp. 402\u2013416. IEEE, Washington DC.","DOI":"10.1109\/SP.2008.19"},{"key":"2016110403271294000_59.11.1735.35","unstructured":"Wang, H.J. , Grier, C. , Moshchuk, A. and King, S.T. (2009) The Multi-Principal OS Construction of the Gazelle Web Browser. USENIX Security Symposium 2009, Montreal, Canada, August. USENIX Association, Berkeley."},{"key":"2016110403271294000_59.11.1735.36","unstructured":"Chari, S. , Halevi, S. and Venema, W. (2010) Where Do You Want to Go Today? Escalating Privileges by Pathname Manipulation. Network & Distributed System Security Symposium (NDSS), San Diego, CA, USA, February."},{"key":"2016110403271294000_59.11.1735.37","first-page":"1111","article-title":"A secure environment for unsafe component loading","volume":"2","author":"Veeralakshmi","year":"2013","journal-title":"Int. J. Eng. Comput. Sci."},{"key":"2016110403271294000_59.11.1735.38","doi-asserted-by":"crossref","first-page":"90","DOI":"10.1109\/MSP.2013.102","article-title":"Using Whitelisting to Combat Malware Attacks at Fannie Mae","volume":"11","author":"Dery","year":"2013","journal-title":"IEEE Security & Privacy"},{"key":"2016110403271294000_59.11.1735.39","unstructured":"Android Official Web Page . Signing your applications. http:\/\/developer.android.com\/tools\/publishing\/app-signing.html."}],"container-title":["The Computer Journal"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/academic.oup.com\/comjnl\/article-pdf\/59\/11\/1735\/7300495\/bxw047.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,9,12]],"date-time":"2019-09-12T07:51:02Z","timestamp":1568274662000},"score":1,"resource":{"primary":{"URL":"https:\/\/academic.oup.com\/comjnl\/article-lookup\/doi\/10.1093\/comjnl\/bxw047"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2016,8,10]]},"references-count":39,"journal-issue":{"issue":"11","published-online":{"date-parts":[[2016,11,4]]},"published-print":{"date-parts":[[2016,11]]}},"alternative-id":["10.1093\/comjnl\/bxw047"],"URL":"https:\/\/doi.org\/10.1093\/comjnl\/bxw047","relation":{},"ISSN":["0010-4620","1460-2067"],"issn-type":[{"value":"0010-4620","type":"print"},{"value":"1460-2067","type":"electronic"}],"subject":[],"published":{"date-parts":[[2016,8,10]]}}}