{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,31]],"date-time":"2026-01-31T10:46:27Z","timestamp":1769856387198,"version":"3.49.0"},"reference-count":48,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","issue":"12","license":[{"start":{"date-parts":[[2023,12,1]],"date-time":"2023-12-01T00:00:00Z","timestamp":1701388800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2023,12,1]],"date-time":"2023-12-01T00:00:00Z","timestamp":1701388800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2023,12,1]],"date-time":"2023-12-01T00:00:00Z","timestamp":1701388800000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IIEEE Trans. Software Eng."],"published-print":{"date-parts":[[2023,12]]},"DOI":"10.1109\/tse.2023.3332732","type":"journal-article","created":{"date-parts":[[2023,11,15]],"date-time":"2023-11-15T18:54:38Z","timestamp":1700074478000},"page":"5279-5294","source":"Crossref","is-referenced-by-count":9,"title":["PatchDiscovery: Patch Presence Test for Identifying Binary Vulnerabilities Based on Key Basic Blocks"],"prefix":"10.1109","volume":"49","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-5089-6018","authenticated-orcid":false,"given":"Xi","family":"Xu","sequence":"first","affiliation":[{"name":"School of Computer Science and Technology, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-7168-1120","authenticated-orcid":false,"given":"Qinghua","family":"Zheng","sequence":"additional","affiliation":[{"name":"School of Computer Science and Technology, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9697-2108","authenticated-orcid":false,"given":"Zheng","family":"Yan","sequence":"additional","affiliation":[{"name":"State Key Laboratory of Integrated Services Networks, School of Cyber Engineering, Xidian University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9327-0987","authenticated-orcid":false,"given":"Ming","family":"Fan","sequence":"additional","affiliation":[{"name":"Ministry of Education Key Laboratory for Intelligent Networks and Network Security, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6464-5428","authenticated-orcid":false,"given":"Ang","family":"Jia","sequence":"additional","affiliation":[{"name":"Ministry of Education Key Laboratory for Intelligent Networks and Network Security, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5420-4461","authenticated-orcid":false,"given":"Zhaohui","family":"Zhou","sequence":"additional","affiliation":[{"name":"Ministry of Education Key Laboratory for Intelligent Networks and Network Security, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0009-0001-3509-3919","authenticated-orcid":false,"given":"Haijun","family":"Wang","sequence":"additional","affiliation":[{"name":"Ministry of Education Key Laboratory for Intelligent Networks and Network Security, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7600-0934","authenticated-orcid":false,"given":"Ting","family":"Liu","sequence":"additional","affiliation":[{"name":"Ministry of Education Key Laboratory for Intelligent Networks and Network Security, Xi&#x2019;an Jiaotong University, Xi&#x2019;an, China"}]}],"member":"263","reference":[{"key":"ref1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE43902.2021.00084"},{"key":"ref2","doi-asserted-by":"publisher","DOI":"10.1145\/3238147.3240480"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.62"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.13"},{"key":"ref5","doi-asserted-by":"publisher","DOI":"10.1145\/3395363.3397361"},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/2664243.2664269"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1145\/2991079.2991102"},{"key":"ref8","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2019.00066"},{"key":"ref9","first-page":"887","article-title":"Precise and accurate patch presence test for binaries","volume-title":"Proc. USENIX Secur. Symp.","author":"Zhang","year":"2018"},{"key":"ref10","article-title":"Cybersecurity: One in three breaches are caused by unpatched vulnerabilities","year":"2019"},{"key":"ref11","article-title":"Unpatched vulnerabilities remain primary ransomware attack vector","year":"2022"},{"key":"ref12","article-title":"The \u2018new normal\u2019 state of cybersecurity","year":"2020"},{"key":"ref13","first-page":"49","article-title":"Under-constrained symbolic execution: Correctness checking for real code","volume-title":"Proc. 24th USENIX Secur. Symp. (USENIX Secur.)","author":"Ramos","year":"2015"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1145\/502059.502041"},{"key":"ref15","article-title":"Finding sources of security in the complex software supply chains of tomorrow","year":"2021"},{"key":"ref16","doi-asserted-by":"publisher","DOI":"10.1145\/3446371"},{"key":"ref17","doi-asserted-by":"publisher","DOI":"10.1016\/j.inffus.2021.12.006"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1016\/j.jpdc.2016.10.012"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2012.6227176"},{"key":"ref20","article-title":"Cve-2015-1791","year":"2023"},{"key":"ref21","article-title":"Openssl","year":"2023"},{"key":"ref22","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3417240"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134018"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1016\/j.comcom.2021.03.011"},{"key":"ref25","article-title":"Patchdiscovery","year":"2023"},{"key":"ref26","first-page":"1147","article-title":"BScout: Direct whole patch presence test for Java executables","volume-title":"Proc. 29th USENIX Secur. Symp. (USENIX Secur.)","author":"Dai","year":"2020"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1145\/2980983.2908126"},{"key":"ref28","article-title":"Cve-2018-20671","year":"2023"},{"key":"ref29","article-title":"binutils","year":"2023"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2018.2827379"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1145\/3062341.3062387"},{"key":"ref32","article-title":"angr","year":"2022"},{"key":"ref33","article-title":"IDA PRO","year":"2022"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1145\/2666356.2594343"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1145\/2950290.2950350"},{"key":"ref36","doi-asserted-by":"publisher","DOI":"10.1145\/1060745.1060840"},{"key":"ref37","article-title":"Minhashlshforest","year":"2022"},{"key":"ref38","volume-title":"Introduction to Algorithms","volume":"3","author":"Leiserson","year":"1994"},{"key":"ref39","article-title":"BinXrays open source data","author":"Xu","year":"2020"},{"key":"ref40","article-title":"Cve-2012-1140","year":"2012"},{"key":"ref41","article-title":"Cve-2014-0160","year":"2014"},{"key":"ref42","article-title":"The vulnerabilities in openSSL","year":"1998"},{"key":"ref43","article-title":"d_link","year":"1995"},{"key":"ref44","article-title":"trendnet","year":"1996"},{"key":"ref45","article-title":"binwalk","year":"2014"},{"key":"ref46","article-title":"Comparing one with many\u2014Solving binary2source function matching under function inlining","author":"Jia","year":"2022"},{"key":"ref47","doi-asserted-by":"publisher","DOI":"10.1145\/3561385"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00003"}],"container-title":["IEEE Transactions on Software Engineering"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/32\/10354277\/10319441.pdf?arnumber=10319441","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,1,12]],"date-time":"2024-01-12T03:37:48Z","timestamp":1705030668000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10319441\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,12]]},"references-count":48,"journal-issue":{"issue":"12"},"URL":"https:\/\/doi.org\/10.1109\/tse.2023.3332732","relation":{},"ISSN":["0098-5589","1939-3520","2326-3881"],"issn-type":[{"value":"0098-5589","type":"print"},{"value":"1939-3520","type":"electronic"},{"value":"2326-3881","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023,12]]}}}