{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,30]],"date-time":"2025-10-30T11:32:03Z","timestamp":1761823923590,"version":"3.37.3"},"reference-count":42,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"2","license":[{"start":{"date-parts":[[2019,3,1]],"date-time":"2019-03-01T00:00:00Z","timestamp":1551398400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2019,3,1]],"date-time":"2019-03-01T00:00:00Z","timestamp":1551398400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2019,3,1]],"date-time":"2019-03-01T00:00:00Z","timestamp":1551398400000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"name":"MSIP","award":["R0190-15-2010"],"award-info":[{"award-number":["R0190-15-2010"]}]},{"name":"MSIP, Korea"},{"name":"ICT R&#x0026;D program, MSIP\/IITP","award":["R0126-16-1005"],"award-info":[{"award-number":["R0126-16-1005"]}]},{"DOI":"10.13039\/501100003725","name":"National Research Foundation of Korea","doi-asserted-by":"publisher","award":["2014R1A2A1A10051792"],"award-info":[{"award-number":["2014R1A2A1A10051792"]}],"id":[{"id":"10.13039\/501100003725","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2019,3,1]]},"DOI":"10.1109\/tdsc.2017.2679710","type":"journal-article","created":{"date-parts":[[2017,3,8]],"date-time":"2017-03-08T19:29:13Z","timestamp":1489001353000},"page":"287-300","source":"Crossref","is-referenced-by-count":9,"title":["KI-Mon ARM: A Hardware-Assisted Event-triggered Monitoring Platform for Mutable Kernel Object"],"prefix":"10.1109","volume":"16","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-5344-6266","authenticated-orcid":false,"given":"Hojoon","family":"Lee","sequence":"first","affiliation":[]},{"given":"Hyungon","family":"Moon","sequence":"additional","affiliation":[]},{"given":"Ingoo","family":"Heo","sequence":"additional","affiliation":[]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2070-2408","authenticated-orcid":false,"given":"Daehee","family":"Jang","sequence":"additional","affiliation":[]},{"given":"Jinsoo","family":"Jang","sequence":"additional","affiliation":[]},{"given":"Kihwan","family":"Kim","sequence":"additional","affiliation":[]},{"given":"Yunheung","family":"Paek","sequence":"additional","affiliation":[]},{"given":"Brent Byunghoon","family":"Kang","sequence":"additional","affiliation":[]}],"member":"263","reference":[{"key":"ref39","doi-asserted-by":"publisher","DOI":"10.1145\/1653662.1653729"},{"key":"ref38","article-title":"An architecture for specification-based detection of semantic integrity violations in kernel dynamic data","author":"petroni","year":"2006","journal-title":"Proc 15th Conf USENIX Secur Symp"},{"article-title":"Tiny virtual machine monitor.","year":"0","author":"kaneda","key":"ref33"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1145\/1133373.1133423"},{"journal-title":"Cortex-A Series Programmers Guide","year":"2011","key":"ref31"},{"journal-title":"Linux Kernel Development","year":"2010","author":"love","key":"ref30"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2010.38"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102165"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.30"},{"article-title":"Lguest: The simple x86 hypervisor.","year":"2012","author":"russell","key":"ref34"},{"year":"2012","key":"ref10"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1145\/2694344.2694386"},{"year":"2012","key":"ref11"},{"year":"2012","key":"ref12"},{"year":"2012","key":"ref13"},{"article-title":"Xen 0wning trilogy","year":"2008","author":"rafal wojtczuk","key":"ref14"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1109\/ACSAC.2008.29"},{"year":"2014","key":"ref16"},{"journal-title":"GRLIB IP Core User's Manual Aeroflex Gaisle G&#x00F6;teborg Sweden","year":"2012","key":"ref17"},{"year":"0","key":"ref18"},{"year":"2014","key":"ref19"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-15512-3_10"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2008.24"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-87403-4_2"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315260"},{"key":"ref6","first-page":"13","article-title":"Copilot - a coprocessor-based kernel runtime integrity monitor","author":"petroni","year":"2004","journal-title":"Proc 13th Conf USENIX Secur Symp"},{"article-title":"LiveDm: Temporal mapping of dynamic kernel memory for dynamic kernel Malware analysis and debugging","year":"2010","author":"junghwan rhee","key":"ref29"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/1294261.1294294"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1145\/1866307.1866313"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382202"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1109\/ARES.2009.116"},{"key":"ref9","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-15512-3_9"},{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1145\/1950365.1950398"},{"journal-title":"Understanding the Linux Kernel","year":"2002","author":"bovet","key":"ref20"},{"year":"2012","key":"ref22","article-title":"adore-ng-0.41.tgz."},{"journal-title":"Professional Linux Kernel Architecture","year":"2008","author":"mauerer","key":"ref21"},{"key":"ref42","doi-asserted-by":"publisher","DOI":"10.1145\/2660267.2660303"},{"year":"2012","key":"ref24","article-title":"Kis 0.9."},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2016.23009"},{"year":"2012","key":"ref23","article-title":"knark-2.4.3.tgz."},{"year":"2012","key":"ref26"},{"year":"0","key":"ref25","article-title":"Enye lkm rookit modified for ubuntu 8.04."}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/8858\/8666010\/07874084.pdf?arnumber=7874084","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,7,13]],"date-time":"2022-07-13T20:53:02Z","timestamp":1657745582000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/7874084\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019,3,1]]},"references-count":42,"journal-issue":{"issue":"2"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2017.2679710","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"type":"print","value":"1545-5971"},{"type":"electronic","value":"1941-0018"},{"type":"electronic","value":"2160-9209"}],"subject":[],"published":{"date-parts":[[2019,3,1]]}}}