{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T01:43:30Z","timestamp":1740102210785,"version":"3.37.3"},"reference-count":37,"publisher":"IEEE","license":[{"start":{"date-parts":[[2023,7,9]],"date-time":"2023-07-09T00:00:00Z","timestamp":1688860800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,7,9]],"date-time":"2023-07-09T00:00:00Z","timestamp":1688860800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100006190","name":"Research and Development","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100006190","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023,7,9]]},"DOI":"10.1109\/dac56929.2023.10247906","type":"proceedings-article","created":{"date-parts":[[2023,9,15]],"date-time":"2023-09-15T17:31:31Z","timestamp":1694799091000},"page":"1-3","source":"Crossref","is-referenced-by-count":0,"title":["Processor Vulnerability Discovery"],"prefix":"10.1109","author":[{"given":"Yongqiang","family":"Lyu","sequence":"first","affiliation":[{"name":"Tsinghua University,National Research Center for Information Science and Technology,Beijing,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rihui","family":"Sun","sequence":"additional","affiliation":[{"name":"Harbin Institue of Technology,Department of Computer Scienece and Technology,Harbin,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gang","family":"Qu","sequence":"additional","affiliation":[{"name":"University of Maryland,Department of Electrical and Computer Engineering,College Park,Maryland,USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00089"},{"key":"ref35","first-page":"19","article-title":"CacheGuard: A Behavior Model Checker for Cache Timing Side-Channel Security","author":"xu","year":"2021","journal-title":"Proceedings of Asia and South Pacific Design Automation Conference"},{"key":"ref12","first-page":"991","article-title":"Foreshadow: Extracting the keys to the intel SGX kingdom with transient Out-of-Order execution","author":"bulck","year":"2018","journal-title":"27th USENIX Security Symp"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560578"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1145\/3296957.3173204"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00011"},{"key":"ref14","first-page":"3825","article-title":"RETBLEED: Arbitrary speculative code execution with return instructions","author":"wikner","year":"2022","journal-title":"31st USENIX Security Symposium"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/DSC55868.2022.00015"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/ISCA52012.2021.00073"},{"key":"ref30","first-page":"3917","article-title":"&#x00C6;PIC leak: Architecturally leaking uninitialized data from the microarchitecture","author":"borrello","year":"2022","journal-title":"31st USENIX Security Symposium"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3354252"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00103"},{"key":"ref10","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363219"},{"key":"ref32","first-page":"3219","article-title":"TheHuzz: Instruction fuzzing of processors using Golden-Reference models for finding Software-Exploitable vulnerabilities","author":"kande","year":"2022","journal-title":"31st USENIX Security Symposium"},{"key":"ref2","first-page":"973","article-title":"Meltdown: Reading kernel memory from user space","author":"lipp","year":"2018","journal-title":"27th USENIX Security Symp"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1145\/3282307"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/DAC56929.2023.10247985"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.46586\/tches.v2020.i1.321-347"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1007\/s10766-018-0611-9"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00066"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1109\/HPCA53966.2022.00013"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1109\/AsianHOST56390.2022.10022280"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363194"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/ISCA52012.2021.00036"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00063"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2021.3139840"},{"key":"ref21","first-page":"679","article-title":"Hertzbleed: Turning power Side-Channel attacks into remote timing attacks on x86","author":"wang","year":"2022","journal-title":"31st USENIX Security Symposium"},{"key":"ref28","first-page":"1427","article-title":"Medusa: Microarchitectural data leakage via automated attack synthesis","author":"moghimi","year":"2020","journal-title":"29th USENIX Security Symposium"},{"key":"ref27","first-page":"955","article-title":"Translation Leak-aside Buffer: Defeating Cache Side-channel Protections with TLB Attacks","author":"gras","year":"2018","journal-title":"27th USENIX Security Symp"},{"article-title":"Silifuzz: Fuzzing cpus by proxy","year":"2021","author":"serebryany","key":"ref29"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00057"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/AsianHOST47458.2019.9006701"},{"key":"ref9","first-page":"1445","article-title":"V0LTpwn: Attacking x86 processor integrity from software","author":"kenjar","year":"2020","journal-title":"29th USENIX Security Symposium"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/ISCA.2014.6853210"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00002"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3354201"},{"key":"ref5","first-page":"1057","article-title":"CLKSCREW: Exposing the perils of Security-Oblivious energy management","author":"tang","year":"2017","journal-title":"26th USENIX Security Symposium"}],"event":{"name":"2023 60th ACM\/IEEE Design Automation Conference (DAC)","start":{"date-parts":[[2023,7,9]]},"location":"San Francisco, CA, USA","end":{"date-parts":[[2023,7,13]]}},"container-title":["2023 60th ACM\/IEEE Design Automation Conference (DAC)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10247654\/10247655\/10247906.pdf?arnumber=10247906","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,10,2]],"date-time":"2023-10-02T17:41:05Z","timestamp":1696268465000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10247906\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,7,9]]},"references-count":37,"URL":"https:\/\/doi.org\/10.1109\/dac56929.2023.10247906","relation":{},"subject":[],"published":{"date-parts":[[2023,7,9]]}}}