{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,17]],"date-time":"2026-03-17T02:13:36Z","timestamp":1773713616793,"version":"3.50.1"},"reference-count":61,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"2","license":[{"start":{"date-parts":[[2026,3,1]],"date-time":"2026-03-01T00:00:00Z","timestamp":1772323200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2026,3,1]],"date-time":"2026-03-01T00:00:00Z","timestamp":1772323200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2026,3,1]],"date-time":"2026-03-01T00:00:00Z","timestamp":1772323200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans. Dependable and Secure Comput."],"published-print":{"date-parts":[[2026,3]]},"DOI":"10.1109\/tdsc.2025.3626996","type":"journal-article","created":{"date-parts":[[2025,10,30]],"date-time":"2025-10-30T18:05:38Z","timestamp":1761847538000},"page":"2336-2353","source":"Crossref","is-referenced-by-count":0,"title":["MIRAGE: Multi-Binary Image Risk Assessment With Attack Graph Employment"],"prefix":"10.1109","volume":"23","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-7745-1377","authenticated-orcid":false,"given":"David","family":"Tayouri","sequence":"first","affiliation":[{"name":"Department of Software, Information Systems Engineering, Ben-Gurion University of the Negev, Beer-Sheva, Israel"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-6813-8562","authenticated-orcid":false,"given":"Telem","family":"Nachum","sequence":"additional","affiliation":[{"name":"Department of Software, Information Systems Engineering, Ben-Gurion University of the Negev, Beer-Sheva, Israel"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0630-4059","authenticated-orcid":false,"given":"Asaf","family":"Shabtai","sequence":"additional","affiliation":[{"name":"Department of Software, Information Systems Engineering, Ben-Gurion University of the Negev, Beer-Sheva, Israel"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-34238-8"},{"key":"ref2","article-title":"Palo alto networks 2020 unit 42 IoT threat report","author":"Alto","year":"2020"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2025.3558985"},{"key":"ref4","article-title":"The 2023 IoT security landscape report","year":"2023"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2016.23415"},{"key":"ref6","first-page":"303","article-title":"Sharing more and checking less: Leveraging common input keywords to detect bugs in embedded systems","volume-title":"Proc. USENIX Secur. Symp.","author":"Chen"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2025.3547243"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-78120-0_6"},{"key":"ref9","article-title":"Known exploited vulnerabilities","year":"2025"},{"key":"ref10","article-title":"People\u2019s Republic of China-linked cyber actors hide in router firmware","year":"2023"},{"key":"ref11","first-page":"95","article-title":"A large-scale analysis of the security of embedded firmwares","volume-title":"Proc. 23rd USENIX Secur. Symp.","author":"Costin"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1109\/COMSNETS59351.2024.10427440"},{"key":"ref13","article-title":"Rough auditing tool for security","author":"Dunham","year":"2025"},{"key":"ref14","article-title":"Assessing enterprise firmware security risk in 2020","year":"2020"},{"key":"ref15","article-title":"First epss","year":"2025"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1109\/ICCC51575.2020.9345103"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2020.2973043"},{"key":"ref18","article-title":"Binwalk firmware analysis tool","author":"Heffner","year":"2010"},{"key":"ref19","first-page":"271","article-title":"BIGMAC: Fine-grained policy analysis of android firmware","volume-title":"Proc. 29th USENIX Secur. Symp.","author":"Hernandez"},{"key":"ref20","doi-asserted-by":"publisher","DOI":"10.1016\/j.cosrev.2017.09.001"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/DAC.2018.8465794"},{"key":"ref22","article-title":"CVE binary tool website","year":"2025"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1007\/s10586-024-04604-2"},{"key":"ref24","first-page":"50","article-title":"Multiplatform use-after-free and double-free detection in binaries","volume":"48","author":"Keropyan","year":"2017","journal-title":"Math. Problems Comput. Sci."},{"key":"ref25","article-title":"Thousands of mikrotik routers hacked to eavesdrop on network traffic","author":"Khandelwal","year":"2018"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/COMPSAC.2019.10271"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.3390\/a17110504"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/ICC45855.2022.9839008"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.3390\/jsan7030028"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/CyberSecurity49315.2020.9138852"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSPW54576.2021.00020"},{"key":"ref32","article-title":"Attack landscape H1 2019: IoT, SMB traffic abound","author":"Michael","year":"2025"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/ICDCS.2017.283"},{"key":"ref34","article-title":"The ongoing rise in IoT attacks: What we\u2019re seeing in 2023","author":"Nuspire","year":"2023"},{"key":"ref35","article-title":"Exploit database website","year":"2025"},{"key":"ref36","volume-title":"A Logic-Programming Approach to Network Security Analysis","author":"Ou","year":"2005"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1145\/310889.310919"},{"key":"ref38","article-title":"QEMU website","year":"2025"},{"key":"ref39","doi-asserted-by":"crossref","DOI":"10.1145\/3316781.3323478","article-title":"Formal verification of security critical hardware-firmware interactions in commercial SoCs","volume-title":"Proc. 56th Annu. Des. Automat. Conf.","author":"Ray"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00036"},{"key":"ref41","article-title":"An expert system for automatic software protection","author":"Regano","year":"2019"},{"key":"ref42","article-title":"Attack landscape H2 2019: An unprecedented year for cyber attacks","author":"Sattler","year":"2025"},{"key":"ref43","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.17"},{"key":"ref44","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2025.104534"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2020.3041999"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2019.00045"},{"key":"ref47","article-title":"Mirage github","author":"Tayouri","year":"2025"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/CVPR52734.2025.01872"},{"key":"ref49","first-page":"2329","article-title":"Aegis: Mitigating targeted bit-flip attacks against deep neural networks","volume-title":"Proc. 32nd USENIX Secur. Symp.","author":"Wang"},{"key":"ref50","doi-asserted-by":"publisher","DOI":"10.1109\/ICEIEC49280.2020.9152340"},{"key":"ref51","doi-asserted-by":"publisher","DOI":"10.1109\/ACCESS.2019.2893733"},{"key":"ref52","article-title":"Flawfinder website","author":"Wheeler","year":"2025"},{"key":"ref53","first-page":"5627","article-title":"Your firmware has arrived: A study of firmware update vulnerabilities","volume-title":"Proc. USENIX Secur. Symp.","author":"Wu"},{"key":"ref54","doi-asserted-by":"publisher","DOI":"10.1109\/ICPADS.2017.00104"},{"key":"ref55","article-title":"MulVAL: A logic-based enterprise network security analyzer","author":"Zhang","year":"2025"},{"key":"ref56","doi-asserted-by":"publisher","DOI":"10.1109\/ICASID.2013.6825274"},{"key":"ref57","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2014.23229"},{"key":"ref58","doi-asserted-by":"publisher","DOI":"10.1155\/2019\/2031063"},{"key":"ref59","doi-asserted-by":"publisher","DOI":"10.1109\/IPCCC47392.2019.8958740"},{"key":"ref60","doi-asserted-by":"publisher","DOI":"10.1109\/TrustCom\/BigDataSE.2019.00041"},{"key":"ref61","doi-asserted-by":"publisher","DOI":"10.1145\/3341325.3342000"}],"container-title":["IEEE Transactions on Dependable and Secure Computing"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/8858\/11434575\/11222866.pdf?arnumber=11222866","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,3,17]],"date-time":"2026-03-17T01:17:07Z","timestamp":1773710227000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/11222866\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,3]]},"references-count":61,"journal-issue":{"issue":"2"},"URL":"https:\/\/doi.org\/10.1109\/tdsc.2025.3626996","relation":{},"ISSN":["1545-5971","1941-0018","2160-9209"],"issn-type":[{"value":"1545-5971","type":"print"},{"value":"1941-0018","type":"electronic"},{"value":"2160-9209","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026,3]]}}}