{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,10,29]],"date-time":"2024-10-29T14:20:14Z","timestamp":1730211614444,"version":"3.28.0"},"reference-count":42,"publisher":"IEEE","license":[{"start":{"date-parts":[[2022,7,27]],"date-time":"2022-07-27T00:00:00Z","timestamp":1658880000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2022,7,27]],"date-time":"2022-07-27T00:00:00Z","timestamp":1658880000000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022,7,27]]},"DOI":"10.1109\/csr54599.2022.9850330","type":"proceedings-article","created":{"date-parts":[[2022,8,16]],"date-time":"2022-08-16T15:35:46Z","timestamp":1660664146000},"page":"68-75","source":"Crossref","is-referenced-by-count":3,"title":["Semantic-Aware Vulnerability Detection"],"prefix":"10.1109","author":[{"given":"Zhen","family":"Huang","sequence":"first","affiliation":[{"name":"DePaul University,School of Computing,Chicago,Illinois,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Marc","family":"White","sequence":"additional","affiliation":[{"name":"DePaul University,School of Computing,Chicago,Illinois,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"year":"2021","key":"ref39","article-title":"CVE Details"},{"year":"2021","key":"ref38","article-title":"The Z3 Theorem Solver"},{"year":"2021","key":"ref33","article-title":"XMail Mail Server"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-78800-3_27"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1145\/2786805.2786841"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1145\/2509136.2509553"},{"year":"2021","key":"ref37","article-title":"GiNaC is Not a CAS"},{"key":"ref36","article-title":"KLEE: Unassisted and automatic generation of high-coverage tests for complex systems programs","author":"cadar","year":"2008","journal-title":"USENIX Symposium on Operating Systems Design and Implementation (OSDI)"},{"year":"2021","key":"ref35","article-title":"Internet Message Format"},{"year":"2021","key":"ref34","article-title":"XMail Reference Doc"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1145\/2884781.2884804"},{"year":"2021","key":"ref40","article-title":"BugZilla"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1109\/CompComm.2017.8322752"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23158"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1145\/3238147.3238177"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/2560217.2560219"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3457682.3457707"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1145\/3465481.3465771"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.14722\/bar.2019.23052"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.43"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/3447852.3458717"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2016.2584063"},{"year":"2020","key":"ref4","article-title":"VMware Flaw a Vector in SolarWinds Breach?"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/3180155.3180251"},{"year":"2020","key":"ref3","article-title":"Russian government hackers are behind a broad espionage campaign that has compromised U.S. agencies, including Treasury and Commerce"},{"key":"ref6","first-page":"3","article-title":"Dynamic taint analysis for automatic detection, analysis, and signaturegeneration of exploits on commodity software","volume":"5","author":"newsome","year":"2005","journal-title":"NDSS"},{"key":"ref29","first-page":"49","article-title":"Under-Constrained symbolic execution: Correctness checking for real code","author":"ramos","year":"0"},{"key":"ref5","doi-asserted-by":"crossref","first-page":"385","DOI":"10.1145\/360248.360252","article-title":"Symbolic execution and program testing","volume":"19","author":"king","year":"1976","journal-title":"Communications of the ACM"},{"key":"ref8","first-page":"13","article-title":"Vulnerability extrapolation: Assisted discovery of vulnerabilities using machine learning","author":"yamaguchi","year":"2011","journal-title":"Proceedings of the USENIX Conference on Offensive Technologies ser WOOT"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.37"},{"year":"2021","key":"ref2","article-title":"PetitPotam Vulnerability Exploited in Ransomware Attacks"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/2991079.2991102"},{"year":"2021","key":"ref1","article-title":"533 million Facebook users&#x2019; phone numbers and personal data have been leaked online"},{"key":"ref20","first-page":"2381","article-title":"Undo workarounds for kernel bugs","author":"talebi","year":"2021","journal-title":"30th USENIX Security Symposium (USENIX Security 21)"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3453483.3454051"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00071"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2014.51"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.62"},{"year":"2021","key":"ref41","article-title":"Exploit Database"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2019.2946148"},{"key":"ref26","article-title":"A survey of symbolic execution techniques","volume":"51","author":"baldoni","year":"2018","journal-title":"ACM Comput Surv"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/1455518.1455522"}],"event":{"name":"2022 IEEE International Conference on Cyber Security and Resilience (CSR)","start":{"date-parts":[[2022,7,27]]},"location":"Rhodes, Greece","end":{"date-parts":[[2022,7,29]]}},"container-title":["2022 IEEE International Conference on Cyber Security and Resilience (CSR)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9850275\/9850277\/09850330.pdf?arnumber=9850330","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,9,5]],"date-time":"2022-09-05T16:23:07Z","timestamp":1662394987000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9850330\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,7,27]]},"references-count":42,"URL":"https:\/\/doi.org\/10.1109\/csr54599.2022.9850330","relation":{},"subject":[],"published":{"date-parts":[[2022,7,27]]}}}