{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,1]],"date-time":"2025-10-01T15:13:29Z","timestamp":1759331609006,"version":"build-2065373602"},"reference-count":39,"publisher":"IEEE","license":[{"start":{"date-parts":[[2025,6,8]],"date-time":"2025-06-08T00:00:00Z","timestamp":1749340800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,6,8]],"date-time":"2025-06-08T00:00:00Z","timestamp":1749340800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2025,6,8]]},"DOI":"10.1109\/icc52391.2025.11161046","type":"proceedings-article","created":{"date-parts":[[2025,9,26]],"date-time":"2025-09-26T17:34:55Z","timestamp":1758908095000},"page":"3370-3375","source":"Crossref","is-referenced-by-count":0,"title":["Practical Protection Design of Forward-Edge Control-Flow Integrity for Linux Kernel"],"prefix":"10.1109","author":[{"given":"Jinmeng","family":"Zhou","sequence":"first","affiliation":[{"name":"College of Computer Science and Technology, Zhejiang University,Hangzhou,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ziyue","family":"Pan","sequence":"additional","affiliation":[{"name":"College of Computer Science and Technology, Zhejiang University,Hangzhou,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xun","family":"Xie","sequence":"additional","affiliation":[{"name":"College of Computer Science and Technology, Zhejiang University,Hangzhou,China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Wenbo","family":"Shen","sequence":"additional","affiliation":[{"name":"College of Computer Science and Technology, Zhejiang University,Hangzhou,China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102165"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/1609956.1609960"},{"key":"ref3","first-page":"161","article-title":"{ControlFlow} bending: On the effectiveness of {Control-Flow} integrity","volume-title":"24th USENIX Security Symposium (USENIX Security 15)","author":"Carlini","year":"2015"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1145\/2857705.2857722"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/3054924"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/3658644.3670308"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/3634737.3661135"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813673"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813644"},{"key":"ref10","first-page":"131","article-title":"Efficient protection of path-sensitive control security","volume-title":"26th {USENIX} Security Symposium ({USENIX} Security 17)","author":"Ding","year":"2017"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243797"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/3445814.3446740"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2019.00017"},{"key":"ref14","first-page":"195","article-title":"Originsensitive control flow integrity","volume-title":"28th {USENIX} Security Symposium ({USENIX} Security 19)","author":"Khandaker","year":"2019"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2018.2797932"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1145\/3607199.3607219"},{"key":"ref17","first-page":"941","article-title":"Enforcing forward-edge control-flow integrity in {GCC} & {LLVM}","volume-title":"23rd {USENIX} Security Symposium ({USENIX} Security 14)","author":"Tice","year":"2014"},{"volume-title":"Control flow guard for platform security - win32 apps - microsoft learn","year":"2024","key":"ref18"},{"volume-title":"Control flow integrity","year":"2020","key":"ref19"},{"key":"ref20","first-page":"189","article-title":"{SoK}: On the effectiveness of {Control-Flow} integrity in practice","volume-title":"18th USENIX WOOT Conference on Offensive Technologies (WOOT 24)","author":"Becker","year":"2024"},{"key":"ref21","first-page":"177","article-title":"{PAC} it up: Towards pointer integrity using {ARM} pointer authentication","volume-title":"28th USENIX Security Symposium (USENIX Security 19)","author":"Liljestrand","year":"2019"},{"key":"ref22","first-page":"89","article-title":"{In-Kernel}{ControlFlow} integrity on commodity {OSes} using {ARM} pointer authentication","volume-title":"31st USENIX Security Symposium (USENIX Security 22)","author":"Yoo","year":"2022"},{"key":"ref23","first-page":"401","article-title":"Stitching the gadgets: On the ineffectiveness of coarse-grained control-flow integrity protection","volume-title":"23rd {USENIX} Security Symposium ({USENIX} Security 14)","author":"Davi","year":"2014"},{"key":"ref24","first-page":"1205","article-title":"Pex: A permission check analysis framework for linux kernel","volume-title":"28th {USENIX} Security Symposium ({USENIX} Security 19)","author":"Zhang","year":"2019"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3354244"},{"key":"ref26","first-page":"5895","article-title":"Improving Indirect-Call analysis in LLVM with type and Data-Flow Co-Analysis","volume-title":"33rd USENIX Security Symposium (USENIX Security 24)","author":"Liu","year":"2024"},{"volume-title":"Dragonboard 845c","year":"2020","key":"ref27"},{"volume-title":"Control flow integrity in the android kernel","year":"2020","key":"ref28"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1145\/3564625.3564627"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2011.2159712"},{"key":"ref31","first-page":"1","article-title":"kbouncer: Efficient and transparent rop mitigation","volume":"1","author":"Pappas","year":"2012","journal-title":"Apr"},{"key":"ref32","doi-asserted-by":"crossref","DOI":"10.14722\/ndss.2014.23156","article-title":"Ropecker: A generic and practical approach for defending against ROP attacks","volume-title":"21st Annual Network and Distributed System Security Symposium, NDSS 2014","author":"Cheng","year":"2014"},{"key":"ref33","article-title":"Ropguard: Runtime prevention of return-oriented programming attacks","volume-title":"Technical report, Tech. Rep.","author":"Fratri\u0107","year":"2012"},{"key":"ref34","first-page":"337","article-title":"Control flow integrity for {COTS} binaries","volume-title":"22nd {USENIX} Security Symposium ({USENIX} Security 13)","author":"Zhang","year":"2013"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-20550-2_8"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1109\/DAC.2014.6881460"},{"key":"ref37","article-title":"Cryptographically enforced control flow integrity","author":"Mashtizadeh","year":"2014","journal-title":"arXiv preprint"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2015.23271"},{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2016.24"}],"event":{"name":"ICC 2025 - IEEE International Conference on Communications","start":{"date-parts":[[2025,6,8]]},"location":"Montreal, QC, Canada","end":{"date-parts":[[2025,6,12]]}},"container-title":["ICC 2025 - IEEE International Conference on Communications"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/11160703\/11160705\/11161046.pdf?arnumber=11161046","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,9,30]],"date-time":"2025-09-30T13:23:46Z","timestamp":1759238626000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11161046\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,6,8]]},"references-count":39,"URL":"https:\/\/doi.org\/10.1109\/icc52391.2025.11161046","relation":{},"subject":[],"published":{"date-parts":[[2025,6,8]]}}}