{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T09:58:57Z","timestamp":1740131937626,"version":"3.37.3"},"reference-count":58,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"2","license":[{"start":{"date-parts":[[2020,2,1]],"date-time":"2020-02-01T00:00:00Z","timestamp":1580515200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2020,2,1]],"date-time":"2020-02-01T00:00:00Z","timestamp":1580515200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2020,2,1]],"date-time":"2020-02-01T00:00:00Z","timestamp":1580515200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"name":"National Key Research &#x0026; Development Program","award":["2016YFB1000104"],"award-info":[{"award-number":["2016YFB1000104"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Comput."],"published-print":{"date-parts":[[2020,2,1]]},"DOI":"10.1109\/tc.2019.2946770","type":"journal-article","created":{"date-parts":[[2019,10,11]],"date-time":"2019-10-11T20:02:16Z","timestamp":1570824136000},"page":"226-238","source":"Crossref","is-referenced-by-count":1,"title":["Secure and Efficient Control Data Isolation with Register-Based Data Cloaking"],"prefix":"10.1109","volume":"69","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-6717-3051","authenticated-orcid":false,"given":"Xiayang","family":"Wang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7328-1451","authenticated-orcid":false,"given":"Fuqian","family":"Huang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9720-0361","authenticated-orcid":false,"given":"Haibo","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1109\/CGO.2015.7054189"},{"year":"2016","key":"ref38"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813646"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2016.23218"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1145\/1250734.1250767"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/CGO.2011.5764696"},{"key":"ref37","first-page":"177","article-title":"Automatic generation of data-oriented exploits","author":"hu","year":"2015","journal-title":"24th USENIX Security Symp"},{"key":"ref36","first-page":"813","article-title":"Dynamic hooks: Hiding control flow changes within non-control data","author":"vogl","year":"2014","journal-title":"Proc 23rd USENIX Secur Symp"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.62"},{"key":"ref34","first-page":"12","article-title":"Non-control-data attacks are realistic threats","author":"chen","year":"2005","journal-title":"Proc 14th Conf USENIX Security Symp"},{"year":"2018","key":"ref28"},{"year":"2018","key":"ref27"},{"article-title":"Stop the instruction set war","year":"2009","author":"fog","key":"ref29"},{"year":"2018","key":"ref2"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2013.13"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1145\/2714576.2714635"},{"key":"ref22","first-page":"75","article-title":"XFI: Software guards for system address spaces","author":"erlingsson","year":"2006","journal-title":"Proc Symp Operating Systems Design and Implementation"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.30"},{"key":"ref24","first-page":"7","article-title":"PointGuardtm: Protecting pointers from buffer overflow vulnerabilities","author":"cowan","year":"2003","journal-title":"Proc 12th Conf Usenix Security Symp"},{"key":"ref23","article-title":"StackGhost: Hardware facilitated stack protection","author":"frantzen","year":"2001","journal-title":"Proc 10th Conf Usenix Security Symp"},{"key":"ref26","first-page":"11","article-title":"Securing software by enforcing data-flow integrity","author":"castro","year":"2006","journal-title":"Proc USENIX Symp on Operating System Design and Implementation"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-33338-5_5"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1145\/2366231.2337171"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/HPCA.2013.6522324"},{"key":"ref58","first-page":"131","article-title":"Efficient protection of path-sensitive control security","author":"ding","year":"2017","journal-title":"Proc 26th USENIX Security Symp"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.1145\/3037697.3037716"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1109\/HPCA.2017.18"},{"key":"ref55","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813673"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2014.23156"},{"key":"ref53","first-page":"447","article-title":"Transparent ROP exploit mitigation using indirect branch tracing","author":"pappas","year":"2013","journal-title":"Proc 22nd USENIX Conf Security"},{"key":"ref52","first-page":"1","article-title":"CFIMon: Detecting violation of control flow integrity using performance counters","author":"xia","year":"2012","journal-title":"Proc 42nd Annu IEEE\/IFIP Int Conf Dependable Syst Netw"},{"key":"ref10","first-page":"367","article-title":"Shuffler: Fast and deployable continuous code re-randomization","author":"williams-king","year":"2016","journal-title":"Proc USENIX Symp on Operating System Design and Implementation"},{"key":"ref11","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102165"},{"year":"2018","key":"ref40","article-title":"How fast is redis?"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978321"},{"key":"ref13","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.53"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2013.23"},{"key":"ref15","article-title":"Meltdown: Reading kernel memory from user space","author":"lipp","year":"2018","journal-title":"27th USENIX Secur"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00002"},{"key":"ref17","first-page":"147","article-title":"Code-pointer integrity","volume":"14","author":"kuznetsov","year":"2014","journal-title":"Proc Symp Operating Systems Design and Implementation"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813676"},{"key":"ref19","first-page":"11","article-title":"Breakthrough AES performance with intel AES new instructions","author":"akdemir","year":"2010","journal-title":"Juniper White Paper"},{"key":"ref4","first-page":"383","article-title":"Return-oriented rootkits: Bypassing kernel code integrity protection mechanisms","author":"hund","year":"2009","journal-title":"Proc 18th Conf USENIX Security Symp"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.22"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315313"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/1966913.1966919"},{"year":"2004","key":"ref8"},{"key":"ref7","first-page":"523","article-title":"Hacking in darkness: Return-oriented programming against secure enclaves","author":"lee","year":"2017","journal-title":"Proc 26th USENIX Security Symp"},{"key":"ref49","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813644"},{"key":"ref9","first-page":"17","article-title":"Efficient techniques for comprehensive protection from memory error exploits","author":"bhatkar","year":"2005","journal-title":"Proc 14th Conf USENIX Security Symp"},{"key":"ref46","first-page":"337","article-title":"Control flow integrity for cots binaries","author":"zhang","year":"2013","journal-title":"Proc 22nd USENIX Conf Security"},{"key":"ref45","first-page":"559","article-title":"Practical control flow integrity and randomization for binary executables","author":"zhang","year":"2013","journal-title":"Proc IEEE Symp Security Privacy"},{"key":"ref48","first-page":"27","article-title":"Enforcing forward-edge control-flow integrity in GCC & LLVM","volume":"26","author":"tice","year":"2014","journal-title":"Proc 23rd USENIX Secur Symp"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1145\/1920261.1920269"},{"article-title":"Poster: Getting the point(er): On the feasibility of attacks on code-pointer integrity","year":"0","author":"kuznetsov","key":"ref42"},{"key":"ref41","first-page":"17","article-title":"TRESOR runs encryption securely outside RAM","author":"m\u00fcller","year":"2011","journal-title":"Proc 20th USENIX Conf Security"},{"year":"2018","key":"ref44","article-title":"Clang 7 documentation"},{"year":"2016","key":"ref43","article-title":"Intel releases new technology specifications to protect against ROP attacks"}],"container-title":["IEEE Transactions on Computers"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/12\/8959511\/08865621.pdf?arnumber=8865621","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,4,27]],"date-time":"2022-04-27T14:06:07Z","timestamp":1651068367000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/8865621\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,2,1]]},"references-count":58,"journal-issue":{"issue":"2"},"URL":"https:\/\/doi.org\/10.1109\/tc.2019.2946770","relation":{},"ISSN":["0018-9340","1557-9956","2326-3814"],"issn-type":[{"type":"print","value":"0018-9340"},{"type":"electronic","value":"1557-9956"},{"type":"electronic","value":"2326-3814"}],"subject":[],"published":{"date-parts":[[2020,2,1]]}}}