{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,5,3]],"date-time":"2025-05-03T18:44:37Z","timestamp":1746297877010,"version":"3.37.3"},"reference-count":69,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by-nc-nd\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Access"],"published-print":{"date-parts":[[2023]]},"DOI":"10.1109\/access.2023.3279280","type":"journal-article","created":{"date-parts":[[2023,5,23]],"date-time":"2023-05-23T18:45:09Z","timestamp":1684867509000},"page":"52009-52025","source":"Crossref","is-referenced-by-count":3,"title":["Use of Ensemble Learning to Detect Buffer Overflow Exploitation"],"prefix":"10.1109","volume":"11","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-0136-9534","authenticated-orcid":false,"given":"Ayman","family":"Youssef","sequence":"first","affiliation":[{"name":"Faculty of Science, Engineering, and Built Environment, School of Information Technology, Deakin University, Melbourne, VIC, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Mohamed","family":"Abdelrazek","sequence":"additional","affiliation":[{"name":"A2I2D, Applied Aritificial Intelligence Institute, Deakin University, Melbourne, VIC, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1814-0856","authenticated-orcid":false,"given":"Chandan","family":"Karmakar","sequence":"additional","affiliation":[{"name":"Faculty of Science, Engineering, and Built Environment, School of Information Technology, Deakin University, Melbourne, VIC, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"article-title":"Special report: Ukraine","volume-title":"Digital Security Unit","year":"2022","key":"ref1"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-41224-0_3"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.5220\/0006642503790385"},{"key":"ref4","first-page":"255","article-title":"Efficient techniques for comprehensive protection from memory error exploits","volume-title":"Proc. 14th USENIX Secur. Symp.","author":"Bhatkar"},{"volume-title":"Data Execution Prevention\u2014Win32 Apps |Microsoft Docs","year":"2023","key":"ref5"},{"volume-title":"Bypassing DEP With VirtualProtect (x86). Vulndev","year":"2023","key":"ref6"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/1966913.1966920"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1007\/s11416-017-0299-1"},{"volume-title":"What is the Cyber Kill Chain? Introduction Guide |CrowdStrike","year":"2023","key":"ref9"},{"volume-title":"Cyber Kill Chain \u24c7","year":"2022","author":"Martin","key":"ref10"},{"first-page":"1","volume-title":"Gaining the Advantage\u2014Applying Cyber Kill Chain Methodology to Network Defense","year":"2015","key":"ref11"},{"volume-title":"What is an Exploit ?\u2014Cisco","year":"2023","key":"ref12"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1049\/iet-ifs.2017.0460"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/3203422.3203433"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3477314.3507108"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1145\/3029806.3029812"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/SPW.2018.00025"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1007\/978-0-387-84927-0_15"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.3390\/electronics11203363"},{"key":"ref20","article-title":"ROPNN: Detection of ROP payloads using deep neural networks","author":"Li","year":"2018","journal-title":"arXiv:1807.11110"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.2991\/ijcis.d.190905.001"},{"key":"ref22","article-title":"Tackling imbalanced data in cybersecurity with transfer learning: A case with ROP payload detection","author":"Wang","year":"2021","journal-title":"arXiv:2105.02996"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.2967746"},{"article-title":"Program anomaly detection against data-oriented attacks","year":"2018","author":"Cheng","key":"ref24"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/2948618.2948620"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.23919\/ICACT.2018.8323798"},{"journal-title":"Desktop Operating System Market Share Worldwide |Statcounter Global Stats","year":"2022","key":"ref27"},{"volume-title":"CWE\u20142022 CWE Top 25 Most Dangerous Software Weaknesses","year":"2022","key":"ref28"},{"volume-title":"NVD\u2014Search and Statistics","year":"2022","key":"ref29"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/access.2022.3207287"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1023\/A:1010933404324"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/2939672.2939785"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/DSC.2018.00030"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2018.2841987"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1145\/3178582"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.3390\/info9070149"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.3390\/fi8030029"},{"article-title":"Developing a high-accuracy cross platform host-based intrusion detection system capable of reliably detecting zero-day attacks","year":"2014","author":"Creech","key":"ref38"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/MilCIS.2015.7348942"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.5220\/0006639801080116"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2017.03.018"},{"journal-title":"Malware\u2014Wikipedia","year":"2023","key":"ref42"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/ICDSP.2016.7868617"},{"journal-title":"Generating Payloads\u2014Metasploit Unleashed","year":"2022","key":"ref44"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1186\/s42400-019-0038-7"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1145\/3344382"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1145\/3214304"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-92708-0_22"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1109\/iccet.2010.5485224"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.3034766"},{"volume-title":"IEEE Standard Glossary of Software Engineering Terminology","year":"1990","key":"ref51"},{"key":"ref52","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2021.103009"},{"key":"ref53","doi-asserted-by":"publisher","DOI":"10.1109\/ARES.2013.59"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/AICCSA47632.2019.9035265"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1145\/1646353.1646374"},{"key":"ref56","article-title":"Automated software vulnerability detection with machine learning","author":"Harer","year":"2018","journal-title":"arXiv:1803.04497"},{"article-title":"Hybrid fuzz testing: Discovering software bugs via fuzzing and symbolic execution","year":"2012","author":"Pak","key":"ref57"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.1109\/TR.2018.2834476"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1145\/3363824"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134020"},{"key":"ref61","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2009.5070546"},{"key":"ref62","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.50"},{"key":"ref63","first-page":"1","article-title":"Dynamic taint analysis for automatic detection, analysis, and signature generation of exploits on commodity software","volume-title":"Proc. Netw. Distrib. Syst. Secur. Symp. (NDSS)","author":"Newsome"},{"key":"ref64","first-page":"256","article-title":"ROP is still dangerous: Breaking modern defenses","volume-title":"Proc. 23rd USENIX Conf. Secur. Symp.","author":"Carlini"},{"key":"ref65","doi-asserted-by":"publisher","DOI":"10.1145\/1866307.1866370"},{"key":"ref66","doi-asserted-by":"publisher","DOI":"10.1145\/3203422.3203433"},{"volume-title":"Summary Report 2022\u2014AV-Comparatives","year":"2023","key":"ref67"},{"volume-title":"AV-TEST Seal of Approval |AV-TEST Institute","year":"2023","key":"ref68"},{"volume-title":"Intel \u24c7 64 and IA-32 Architectures Software Developer Manuals","year":"2023","key":"ref69"}],"container-title":["IEEE Access"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/6287639\/10005208\/10131927.pdf?arnumber=10131927","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,3,1]],"date-time":"2024-03-01T05:50:24Z","timestamp":1709272224000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10131927\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023]]},"references-count":69,"URL":"https:\/\/doi.org\/10.1109\/access.2023.3279280","relation":{},"ISSN":["2169-3536"],"issn-type":[{"type":"electronic","value":"2169-3536"}],"subject":[],"published":{"date-parts":[[2023]]}}}