{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,21]],"date-time":"2025-10-21T02:54:48Z","timestamp":1761015288802},"reference-count":31,"publisher":"IEEE","license":[{"start":{"date-parts":[[2023,12,13]],"date-time":"2023-12-13T00:00:00Z","timestamp":1702425600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,12,13]],"date-time":"2023-12-13T00:00:00Z","timestamp":1702425600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023,12,13]]},"DOI":"10.1109\/asianhost59942.2023.10409308","type":"proceedings-article","created":{"date-parts":[[2024,1,24]],"date-time":"2024-01-24T18:36:47Z","timestamp":1706121407000},"page":"1-6","source":"Crossref","is-referenced-by-count":1,"title":["When Memory Mappings Attack: On the (Mis)use of the ARM Cortex-M FPB Unit"],"prefix":"10.1109","volume":"98","author":[{"given":"Haoqi","family":"Shan","sequence":"first","affiliation":[{"name":"CertiK"}]},{"given":"Dean","family":"Sullivan","sequence":"additional","affiliation":[{"name":"University of New Hampshire"}]},{"given":"Orlando","family":"Arias","sequence":"additional","affiliation":[{"name":"University of Massachusetts, Lowell"}]}],"member":"263","reference":[{"key":"ref1","article-title":"Reflections on trusting trustzone","author":"Rosenberg","year":"2014","journal-title":"BlackHat USA"},{"year":"2015","key":"ref2","article-title":"CVE-2015-4421: Huawei tzdriver Module Vulnerable checks"},{"year":"2015","key":"ref3","article-title":"CVE-2015-4422: Huawei TEEOS Vulnerable Checks"},{"year":"2015","key":"ref4","article-title":"CVE-2015-6639: QSEE - PRDiag* Commands Privilege Escalation"},{"year":"2018","key":"ref5","article-title":"CVE-2018-16522: AWS secure connectivity modules \u2013 uninitialized pointer free"},{"year":"2018","key":"ref6","article-title":"CVE-2018-16526: usGenerateProtocolChecksum memory corruption"},{"year":"2017","key":"ref7","article-title":"Cve-2017-13209: Insecure permissions check that allows hal service change"},{"key":"ref8","article-title":"When firmware modifications attack: A case study of embedded exploitation","volume-title":"NDSS","author":"Cui","year":"2013"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1109\/sp.2017.47"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2017.23313"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.14"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-66332-6_12"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/2592798.2592824"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/2744769.2744922"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.37"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23107"},{"volume-title":"Arm cortex-m \u2013 arm","key":"ref17"},{"issue":"D","volume-title":"ARMv6-M Architecture Reference Manual","year":"2017","key":"ref18"},{"volume-title":"ARMv7-M Architecture Reference Manual","year":"2018","key":"ref19"},{"volume-title":"ARMv8-M Architecture Reference Manual","year":"2019","key":"ref20"},{"year":"2018","key":"ref21","article-title":"CVE-2018-16528: AWS secure connectivity modules \u2013 mbedTLS context corruption"},{"year":"2015","key":"ref22","article-title":"CVE-2015-6638: Imagination Technologies driver arbitrary code execution"},{"article-title":"Practical real-time operating system seecurity for the masses","year":"2016","author":"Meriac","key":"ref23"},{"article-title":"FreeRTOS TCP\/IP Stack Vulnerabilities Put A Wide Range of Devices at Risk of Compromise: From Smart Homes to Critical Infrastructure Systems","year":"2018","author":"Karliner","key":"ref24"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2013.25"},{"key":"ref26","first-page":"63","article-title":"Stackguard: Automatic adaptive detection and prevention of buffer-overflow attacks","volume-title":"USENIX Security Symposium","volume":"98","author":"Cowan"},{"key":"ref27","first-page":"243","article-title":"Stackguard: Simple stack smash protection for gcc","volume-title":"Proceedings of the GCC Developers Summit","author":"Wagle"},{"key":"ref28","article-title":"Stackghost: Hardware facilitated stack protection","volume-title":"USENIX Security Symposium","volume":"112","author":"Frantzen"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/2744769.2744847"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1145\/2857705.2857722"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1145\/2897937.2898098"}],"event":{"name":"2023 Asian Hardware Oriented Security and Trust Symposium (AsianHOST)","start":{"date-parts":[[2023,12,13]]},"location":"Tianjin, China","end":{"date-parts":[[2023,12,15]]}},"container-title":["2023 Asian Hardware Oriented Security and Trust Symposium (AsianHOST)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10409268\/10409304\/10409308.pdf?arnumber=10409308","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,2,1]],"date-time":"2024-02-01T07:52:38Z","timestamp":1706773958000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10409308\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,12,13]]},"references-count":31,"URL":"https:\/\/doi.org\/10.1109\/asianhost59942.2023.10409308","relation":{},"subject":[],"published":{"date-parts":[[2023,12,13]]}}}