{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:43:46Z","timestamp":1750308226042,"version":"3.41.0"},"reference-count":33,"publisher":"Association for Computing Machinery (ACM)","issue":"1","license":[{"start":{"date-parts":[[2005,3,1]],"date-time":"2005-03-01T00:00:00Z","timestamp":1109635200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["SIGARCH Comput. Archit. News"],"published-print":{"date-parts":[[2005,3]]},"abstract":"<jats:p>With more computing platforms connected to the Internet each day, computer system security has become a critical issue. One of the major security problems is execution of malicious injected code. In this paper we propose new processor extensions that allow execution of trusted instructions only. The proposed extensions verify instruction block signatures in run-time. Signatures are generated during a trusted installation process, using a multiple input signature register (MISR), and stored in an encrypted form. The coefficients of the MISR and the key used for signature encryption are based on a hidden processor key. Signature verification is done in the background, concurrently with program execution, thus reducing negative impact on performance. The preliminary results indicate that the proposed processor extensions will prevent execution of any unauthorized code at a relatively small increase in system complexity and execution time.<\/jats:p>","DOI":"10.1145\/1055626.1055641","type":"journal-article","created":{"date-parts":[[2005,11,7]],"date-time":"2005-11-07T19:28:32Z","timestamp":1131391712000},"page":"108-117","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":11,"title":["Using instruction block signatures to counter code injection attacks"],"prefix":"10.1145","volume":"33","author":[{"given":"Milena","family":"Milenkovi\u0107","sequence":"first","affiliation":[{"name":"The University of Alabama in Huntsville"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Aleksandar","family":"Milenkovi\u0107","sequence":"additional","affiliation":[{"name":"The University of Alabama in Huntsville"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Emil","family":"Jovanov","sequence":"additional","affiliation":[{"name":"The University of Alabama in Huntsville"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2005,3]]},"reference":[{"key":"e_1_2_1_1_1","first-page":"149","volume-title":"A Comparison of Publicly Available Tools for Dynamic Buffer Overflow Prevention,\" Proceedings of the 10th Network and Distributed System Security Symposium","author":"Wilander J.","year":"2003"},{"key":"e_1_2_1_2_1","unstructured":"T. Newsham \"Format string attacks\" September 2000 &lt;http:\/\/www.securityfocus.com\/guest\/3342&gt; (January 2004).  T. Newsham \"Format string attacks\" September 2000 &lt;http:\/\/www.securityfocus.com\/guest\/3342&gt; (January 2004)."},{"key":"e_1_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/986537.986582"},{"key":"e_1_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/161494.161501"},{"volume-title":"A first step towards automated detection of buffer overrun vulnerabilities,\" Network and Distributed System Security Symposium (NDCS)","year":"2000","author":"Wagner D.","key":"e_1_2_1_5_1"},{"key":"e_1_2_1_6_1","first-page":"177","volume-title":"Washington","author":"Larochelle D.","year":"2001"},{"key":"e_1_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/781131.781149"},{"key":"e_1_2_1_8_1","first-page":"63","volume-title":"San Antonio","author":"Cowan C.","year":"1998"},{"key":"e_1_2_1_9_1","first-page":"81","article-title":"Type-Assisted Dynamic Buffer Overflow Detection","author":"Lhee K.-s.","year":"2002","journal-title":"11th USENIX Security Symposium"},{"key":"e_1_2_1_10_1","first-page":"80","volume-title":"USA","author":"Fetzer C.","year":"2001"},{"key":"e_1_2_1_11_1","first-page":"211","volume-title":"Usenix Annual Technical Conference","author":"Prasad M.","year":"2003"},{"key":"e_1_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1002\/spe.4380220403"},{"key":"e_1_2_1_13_1","first-page":"275","article-title":"Cyclone: A Safe Dialect of C","author":"Jim T.","year":"2002","journal-title":"USENIX Annual Technical Conference, Monterey, CA"},{"key":"e_1_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/352600.352624"},{"key":"e_1_2_1_15_1","unstructured":"\"http:\/\/pax.grsecurity.net\/\" (February 2004). \"http:\/\/pax.grsecurity.net\/\" (February 2004)."},{"key":"e_1_2_1_16_1","first-page":"36","article-title":"Memory Protection with PaX and the Stack Smashing Protector: Breaking out Peace","author":"Busser P.","year":"2004","journal-title":"Linux Magazine"},{"volume-title":"Format-String Attacks, and More,\" 12th USENIX Security Symposium","year":"2003","author":"Bhatkar S.","key":"e_1_2_1_17_1"},{"key":"e_1_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1145\/948109.948147"},{"key":"e_1_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/940071.940113"},{"key":"e_1_2_1_20_1","first-page":"29","volume-title":"On Preventing Instrusions by Process Behavior Monitoring,\" 8th USENIX Security Symposium","author":"Sekar R.","year":"1999"},{"key":"e_1_2_1_21_1","first-page":"133","article-title":"Detecting Instructions Using System Calls: Alternative Data Models","author":"Warrender C.","year":"1999","journal-title":"IEEE Symposium on Security and Privacy, Oakland, CA"},{"key":"e_1_2_1_22_1","first-page":"3316","article-title":"An Improved Intrusion Detection Method Based on Process Profiling","volume":"43","author":"Sato I.","year":"2002","journal-title":"IPSJ Journal"},{"key":"e_1_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.5555\/1298081.1298084"},{"volume-title":"Performance Signatures: A Mechanism for Intrusion Detection,\" Proceedings of the 1997 IEEE Information Survivability Workshop","year":"1997","author":"Oppenheimer D. L.","key":"e_1_2_1_24_1"},{"volume-title":"Architecture Support for Defending Against Buffer Overflow Attacks,\" Workshop on Evaluating and Architecting System dependability (EASY)","year":"2002","author":"Xu J.","key":"e_1_2_1_25_1"},{"key":"e_1_2_1_26_1","first-page":"237","volume-title":"Boppard","author":"Lee R. B.","year":"2003"},{"volume-title":"November 22","year":"2003","author":"Ozdoganoglu H.","key":"e_1_2_1_27_1"},{"key":"e_1_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/948109.948146"},{"key":"e_1_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/605397.605409"},{"key":"e_1_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/1024393.1024404"},{"key":"e_1_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/12.2145"},{"key":"e_1_2_1_32_1","first-page":"52","volume-title":"Oakland","author":"Joseph M. K.","year":"1988"},{"key":"e_1_2_1_33_1","first-page":"99","volume-title":"Exploiting Streams in Instruction and Data Address Trace Compression,\" Proceedings of IEEE 6th Annual Workshop on Workload Characterization","author":"Milenkovic A.","year":"2003"}],"container-title":["ACM SIGARCH Computer Architecture News"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1055626.1055641","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1055626.1055641","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T16:31:27Z","timestamp":1750264287000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1055626.1055641"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2005,3]]},"references-count":33,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2005,3]]}},"alternative-id":["10.1145\/1055626.1055641"],"URL":"https:\/\/doi.org\/10.1145\/1055626.1055641","relation":{},"ISSN":["0163-5964"],"issn-type":[{"type":"print","value":"0163-5964"}],"subject":[],"published":{"date-parts":[[2005,3]]},"assertion":[{"value":"2005-03-01","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}