{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,2,5]],"date-time":"2024-02-05T18:49:54Z","timestamp":1707158994067},"reference-count":57,"publisher":"Association for Computing Machinery (ACM)","issue":"4","content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["ACM Trans. Archit. Code Optim."],"published-print":{"date-parts":[[2006,12]]},"abstract":"<jats:p>\n            We present Minos, a microarchitecture that implements Biba's low water-mark integrity policy on individual words of data. Minos stops attacks that corrupt control data to hijack program control flow, but is orthogonal to the memory model. Control data is any data that is loaded into the program counter on control-flow transfer, or any data used to calculate such data. The key is that Minos tracks the integrity of all data, but protects control flow by checking this integrity when a program uses the data for control transfer. Existing policies, in contrast, need to differentiate between control and noncontrol data\n            <jats:italic>a priori<\/jats:italic>\n            , a task made impossible by coercions between pointers and other data types, such as integers in the C language. Our implementation of Minos for Red Hat Linux 6.2 on a Pentium-based emulator is a stable, usable Linux system on the network on which we are currently running a web server (http:\/\/minos.cs.ucdavis.edu). Our emulated Minos systems running Linux and Windows have stopped ten actual attacks. Extensive full-system testing and real-world attacks have given us a unique perspective on the policy tradeoffs that must be made in any system, such as Minos; this paper details and discusses these. We also present a microarchitectural implementation of Minos that achieves negligible impact on cycle time with a small investment in die area, as well as and minor changes to the Linux kernel to handle the tag bits and perform virtual memory swapping.\n          <\/jats:p>","DOI":"10.1145\/1187976.1187977","type":"journal-article","created":{"date-parts":[[2007,1,16]],"date-time":"2007-01-16T19:38:29Z","timestamp":1168976309000},"page":"359-389","update-policy":"http:\/\/dx.doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":39,"title":["Minos"],"prefix":"10.1145","volume":"3","author":[{"given":"Jedidiah R.","family":"Crandall","sequence":"first","affiliation":[{"name":"University of California at Davis, Davis, California"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"S. Felix","family":"Wu","sequence":"additional","affiliation":[{"name":"University of California at Davis, Davis, California"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Frederic T.","family":"Chong","sequence":"additional","affiliation":[{"name":"University of California at Davis and Santa Barbara, Santa Barbara, California"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2006,12]]},"reference":[{"key":"e_1_2_1_1_1","volume-title":"ACM Conference on Computer and Communications Security. 10","author":"Abadi M.","unstructured":"Abadi , M. , Budiu , M. , \u00dalfar Erlingsson , and Ligatti, J . 2005. Control-flow integrity: Principles, implementations, and applications . In ACM Conference on Computer and Communications Security. 10 .1145\/1102120.1102165 Abadi, M., Budiu, M., \u00dalfar Erlingsson, and Ligatti, J. 2005. Control-flow integrity: Principles, implementations, and applications. In ACM Conference on Computer and Communications Security. 10.1145\/1102120.1102165"},{"key":"e_1_2_1_2_1","volume-title":"published","author":"Alighieri D.","year":"1994","unstructured":"Alighieri , D. 1308. Inferno (Robert Pinski translation , published in 1994 ). Farrar, Straus and Giroux . Alighieri, D. 1308. Inferno (Robert Pinski translation, published in 1994). Farrar, Straus and Giroux."},{"key":"e_1_2_1_3_1","unstructured":"Babayan B.\n     2000. \n      Security\n     (Unpublished available at http:\/\/web.archive.org as www.elbrus.ru\/mcst\/eng\/SECURE_INFORMATION_SYSTEM_V5_2e.pdf from 19 \n  June\n  2005\n  ).  Babayan B. 2000. Security (Unpublished available at http:\/\/web.archive.org as www.elbrus.ru\/mcst\/eng\/SECURE_INFORMATION_SYSTEM_V5_2e.pdf from 19 June 2005)."},{"key":"e_1_2_1_4_1","volume-title":"Proceedings of the 10th ACM conference on Computer and Communication Security. ACM Press","author":"Barrantes E. G.","unstructured":"Barrantes , E. G. , Ackley , D. H. , Palmer , T. S. , Stefanovic , D. , and Zovi , D. D . 2003. Randomized instruction set emulation to disrupt binary code injection attacks . In Proceedings of the 10th ACM conference on Computer and Communication Security. ACM Press , New York. 281--289. 10.1145\/948109.948147 Barrantes, E. G., Ackley, D. H., Palmer, T. S., Stefanovic, D., and Zovi, D. D. 2003. Randomized instruction set emulation to disrupt binary code injection attacks. In Proceedings of the 10th ACM conference on Computer and Communication Security. ACM Press, New York. 281--289. 10.1145\/948109.948147"},{"key":"e_1_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.5555\/579090"},{"key":"e_1_2_1_7_1","unstructured":"Bochs. 2005. Bochs: the Open Source IA-32 Emulation Project (Home Page) http:\/\/bochs.sourceforge.net.  Bochs. 2005. Bochs: the Open Source IA-32 Emulation Project (Home Page) http:\/\/bochs.sourceforge.net."},{"key":"e_1_2_1_8_1","unstructured":"Boutcher D. 2001. The Linux Kernel on iSeries (Unpublished available at http:\/\/lwn.net\/2001\/features\/OLS\/pdf\/pdf\/iseries.pdf).  Boutcher D. 2001. The Linux Kernel on iSeries (Unpublished available at http:\/\/lwn.net\/2001\/features\/OLS\/pdf\/pdf\/iseries.pdf)."},{"key":"e_1_2_1_9_1","unstructured":"Bovet D. D. and Cesati M. 2002. Understanding the Linux kernel 2nd ed. O'Reilly Sebastopol CA.   Bovet D. D. and Cesati M. 2002. Understanding the Linux kernel 2nd ed. O'Reilly Sebastopol CA."},{"key":"e_1_2_1_10_1","unstructured":"CERT. 2005. CERT http:\/\/www.cert.org.  CERT. 2005. CERT http:\/\/www.cert.org."},{"key":"e_1_2_1_11_1","volume-title":"USENIX Security Symposium","author":"Chen S.","year":"2005","unstructured":"Chen , S. , Xu , J. , and Sezer , E. C . 2005. Non-control-hijacking attacks are realistic threats . In USENIX Security Symposium 2005 . Chen, S., Xu, J., and Sezer, E. C. 2005. Non-control-hijacking attacks are realistic threats. In USENIX Security Symposium 2005."},{"key":"e_1_2_1_12_1","volume-title":"Proc. 13th USENIX Security Symposium.","author":"Chow J.","unstructured":"Chow , J. , Pfaff , B. , Garfinkel , T. , Christopher , K. , and Rosenblum , M . 2004. Understanding data lifetime via whole system simulation . In Proc. 13th USENIX Security Symposium. Chow, J., Pfaff, B., Garfinkel, T., Christopher, K., and Rosenblum, M. 2004. Understanding data lifetime via whole system simulation. In Proc. 13th USENIX Security Symposium."},{"key":"e_1_2_1_13_1","volume-title":"Proc. 14th USENIX Security Symposium.","author":"Chow J.","unstructured":"Chow , J. , Pfaff , B. , Garfinkel , T. , and Rosenblum , M . 2005. Shredding your garbage: Reducing data lifetime through secure deallocation . In Proc. 14th USENIX Security Symposium. Chow, J., Pfaff, B., Garfinkel, T., and Rosenblum, M. 2005. Shredding your garbage: Reducing data lifetime through secure deallocation. In Proc. 14th USENIX Security Symposium."},{"key":"e_1_2_1_14_1","volume-title":"20th Symposium on Operating Systems Principles. 10","author":"Costa M.","unstructured":"Costa , M. , Crowcroft , J. , Castro , M. , Rowstron , A. , Zhou , L. , Zhang , L. , and Barham , P . 2005. Vigilante: End to end containment of internet worms . In 20th Symposium on Operating Systems Principles. 10 .1145\/1095810.1095824 Costa, M., Crowcroft, J., Castro, M., Rowstron, A., Zhou, L., Zhang, L., and Barham, P. 2005. Vigilante: End to end containment of internet worms. In 20th Symposium on Operating Systems Principles. 10.1145\/1095810.1095824"},{"key":"e_1_2_1_15_1","volume-title":"Proc. of the 7th Usenix Security Symposium. 63--78","author":"Cowan C.","unstructured":"Cowan , C. , Pu , C. , Maier , D. , Walpole , J. , Bakke , P. , Beattie , S. , Grier , A. , Wagle , P. , Zhang , Q. , and Hinton , H . 1998. StackGuard: Automatic adaptive detection and prevention of buffer-overflow attacks . In Proc. of the 7th Usenix Security Symposium. 63--78 . Cowan, C., Pu, C., Maier, D., Walpole, J., Bakke, P., Beattie, S., Grier, A., Wagle, P., Zhang, Q., and Hinton, H. 1998. StackGuard: Automatic adaptive detection and prevention of buffer-overflow attacks. In Proc. of the 7th Usenix Security Symposium. 63--78."},{"key":"e_1_2_1_16_1","volume-title":"Proc. of the 12th Usenix Security Symposium.","author":"Cowan C.","unstructured":"Cowan , C. , Beattie , S. , Johansen , J. , and Wagle , P . 2003. PointGuardTM: Protecting pointers from buffer overflow vulnerabilities . In Proc. of the 12th Usenix Security Symposium. Cowan, C., Beattie, S., Johansen, J., and Wagle, P. 2003. PointGuardTM: Protecting pointers from buffer overflow vulnerabilities. In Proc. of the 12th Usenix Security Symposium."},{"key":"e_1_2_1_17_1","volume-title":"Workshop on Architectural Support for Security and Anti-Virus.","author":"Crandall J. R.","unstructured":"Crandall , J. R. and Chong , F. T . 2004a. A Security Assessment of the Minos Architecture . In Workshop on Architectural Support for Security and Anti-Virus. Crandall, J. R. and Chong, F. T. 2004a. A Security Assessment of the Minos Architecture. In Workshop on Architectural Support for Security and Anti-Virus."},{"key":"e_1_2_1_18_1","volume-title":"The 37th International Symposium on Microarchitecture. 10","author":"Crandall J. R.","year":"2004","unstructured":"Crandall , J. R. and Chong , F. T . 2004b. Minos: Control data attack prevention orthogonal to memory model . In The 37th International Symposium on Microarchitecture. 10 .1109\/MICRO. 2004 .26 Crandall, J. R. and Chong, F. T. 2004b. Minos: Control data attack prevention orthogonal to memory model. In The 37th International Symposium on Microarchitecture. 10.1109\/MICRO.2004.26"},{"key":"e_1_2_1_19_1","volume-title":"Proceedings of the 12th ACM Conference on Computer and Communication Security. ACM Press","author":"Crandall J. R.","unstructured":"Crandall , J. R. , Su , Z. , Wu , S. F. , and Chong , F. T . 2005a. On deriving unknown vulnerabilities from zero-day polymorphic and metamorphic worm exploits . In Proceedings of the 12th ACM Conference on Computer and Communication Security. ACM Press , New York. 10.1145\/1102120.1102152 Crandall, J. R., Su, Z., Wu, S. F., and Chong, F. T. 2005a. On deriving unknown vulnerabilities from zero-day polymorphic and metamorphic worm exploits. In Proceedings of the 12th ACM Conference on Computer and Communication Security. ACM Press, New York. 10.1145\/1102120.1102152"},{"key":"e_1_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1007\/11506881_3"},{"key":"e_1_2_1_21_1","volume-title":"Fifth Annual Workshop on Duplicating, Deconstructing, and Debunking.","author":"Dalton M.","unstructured":"Dalton , M. , Kannan , H. , and Kozyrakis , C . 2006. Deconstructing hardware architectures for security . In Fifth Annual Workshop on Duplicating, Deconstructing, and Debunking. Dalton, M., Kannan, H., and Kozyrakis, C. 2006. Deconstructing hardware architectures for security. In Fifth Annual Workshop on Duplicating, Deconstructing, and Debunking."},{"key":"e_1_2_1_22_1","volume-title":"MICRO 37: Proceedings of the 37th annual International Symposium on Microarchitecture. IEEE Computer Society","author":"Drinic M.","year":"2004","unstructured":"Drinic , M. and Kirovski , D . 2004. A hardware-software platform for intrusion prevention . In MICRO 37: Proceedings of the 37th annual International Symposium on Microarchitecture. IEEE Computer Society , Washington, DC. 233--242. 10.1109\/MICRO. 2004 .2 Drinic, M. and Kirovski, D. 2004. A hardware-software platform for intrusion prevention. In MICRO 37: Proceedings of the 37th annual International Symposium on Microarchitecture. IEEE Computer Society, Washington, DC. 233--242. 10.1109\/MICRO.2004.2"},{"key":"e_1_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.2000.848460"},{"key":"e_1_2_1_24_1","volume-title":"Proceedings of the 2005 IEEE Symposium on Security and Privacy (S&P 2005","author":"Gopalakrishna R.","year":"2005","unstructured":"Gopalakrishna , R. , Spafford , E. H. , and Vitek , J . 2005. Efficient intrusion detection using automaton inlining . In Proceedings of the 2005 IEEE Symposium on Security and Privacy (S&P 2005 ). IEEE Computer Society, Washington, DC. 18--31. 10.1109\/SP. 2005 .1 Gopalakrishna, R., Spafford, E. H., and Vitek, J. 2005. Efficient intrusion detection using automaton inlining. In Proceedings of the 2005 IEEE Symposium on Security and Privacy (S&P 2005). IEEE Computer Society, Washington, DC. 18--31. 10.1109\/SP.2005.1"},{"key":"e_1_2_1_25_1","volume-title":"EuroSys '06","author":"Ho A.","year":"1806","unstructured":"Ho , A. , Fetterman , M. , Clark , C. , Warfield , A. , and Hand , S . 2006. Practical taint-based protection using demand emulation . In EuroSys '06 , Leuven, Belgium. 10.1145\/12 1806 3.1217939 Ho, A., Fetterman, M., Clark, C., Warfield, A., and Hand, S. 2006. Practical taint-based protection using demand emulation. In EuroSys '06, Leuven, Belgium. 10.1145\/1218063.1217939"},{"key":"e_1_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.5555\/1298081.1298084"},{"key":"e_1_2_1_27_1","unstructured":"Intel. 2002. Press Release 12 March 2002.  Intel. 2002. Press Release 12 March 2002."},{"key":"e_1_2_1_28_1","unstructured":"jp. 2003. Advanced Doug lea's malloc() exploits Phrack 61.  jp. 2003. Advanced Doug lea's malloc() exploits Phrack 61."},{"key":"e_1_2_1_29_1","volume-title":"Proceedings of the 10th ACM conference on Computer and communication security. ACM Press","author":"Kc G. S.","unstructured":"Kc , G. S. , Keromytis , A. D. , and Prevelakis , V . 2003. Countering code-injection attacks with instruction-set randomization . In Proceedings of the 10th ACM conference on Computer and communication security. ACM Press , New York. 272--280. 10.1145\/948109.948146 Kc, G. S., Keromytis, A. D., and Prevelakis, V. 2003. Countering code-injection attacks with instruction-set randomization. In Proceedings of the 10th ACM conference on Computer and communication security. ACM Press, New York. 272--280. 10.1145\/948109.948146"},{"key":"e_1_2_1_30_1","volume-title":"11th USENIX Security Symposium.","author":"Kiriansky V.","unstructured":"Kiriansky , V. , Bruening , D. , and Amarasinghe , S . 2002. Secure execution via program shepherding . In 11th USENIX Security Symposium. Kiriansky, V., Bruening, D., and Amarasinghe, S. 2002. Secure execution via program shepherding. In 11th USENIX Security Symposium."},{"key":"e_1_2_1_31_1","volume-title":"Proceedings of ASPLOS-X","author":"Kirovski D.","unstructured":"Kirovski , D. , Drinic , M. , and Potkonjak , M . 2002. Enabling trusted software integrity . In Proceedings of ASPLOS-X , San Jose, CA. 10.1145\/605397.605409 Kirovski, D., Drinic, M., and Potkonjak, M. 2002. Enabling trusted software integrity. In Proceedings of ASPLOS-X, San Jose, CA. 10.1145\/605397.605409"},{"key":"e_1_2_1_32_1","volume-title":"Capability-Based Computer Systems. Butterworth-Heinemann","author":"Levy H. M.","unstructured":"Levy , H. M. 1984. Capability-Based Computer Systems. Butterworth-Heinemann , London . Levy, H. M. 1984. Capability-Based Computer Systems. Butterworth-Heinemann, London."},{"key":"e_1_2_1_34_1","volume-title":"Proceedings of ASPLOS-IX. 168--177","author":"Lie D.","unstructured":"Lie , D. , Thekkath , C. A. , Mitchell , M. , Lincoln , P. , Boneh , D. , Mitchell , J. C. , and Horowitz , M . 2000. Architectural support for copy and tamper resistant software . In Proceedings of ASPLOS-IX. 168--177 . 10.1145\/378993.379237 Lie, D., Thekkath, C. A., Mitchell, M., Lincoln, P., Boneh, D., Mitchell, J. C., and Horowitz, M. 2000. Architectural support for copy and tamper resistant software. In Proceedings of ASPLOS-IX. 168--177. 10.1145\/378993.379237"},{"key":"e_1_2_1_35_1","volume-title":"FREENIX Track: 2001 USENIX Annual Technical Conference.","author":"Loscocco P.","unstructured":"Loscocco , P. and Smalley , S . 2001. Integrating flexible support for security policies into the linux operating system . In FREENIX Track: 2001 USENIX Annual Technical Conference. Loscocco, P. and Smalley, S. 2001. Integrating flexible support for security policies into the linux operating system. In FREENIX Track: 2001 USENIX Annual Technical Conference."},{"key":"e_1_2_1_36_1","volume-title":"Internet Management Workshop. 10","author":"Moore D.","unstructured":"Moore , D. , Shannon , C. , and Brown , J . 2002. Code-Red: A study on the spread and victims of an Internet Worm . In Internet Management Workshop. 10 .1145\/637201.637244 Moore, D., Shannon, C., and Brown, J. 2002. Code-Red: A study on the spread and victims of an Internet Worm. In Internet Management Workshop. 10.1145\/637201.637244"},{"key":"e_1_2_1_37_1","volume-title":"Final Evaluation Report","author":"National Security Agency. 1997.","unstructured":"National Security Agency. 1997. Final Evaluation Report , IBM Corporation Application System 400. National Security Agency. 1997. Final Evaluation Report, IBM Corporation Application System 400."},{"key":"e_1_2_1_38_1","unstructured":"Nergal. 2001. The advanced return-into-lib(c) exploits: PaX case study Phrack 58.  Nergal. 2001. The advanced return-into-lib(c) exploits: PaX case study Phrack 58."},{"key":"e_1_2_1_39_1","volume-title":"Proceedings of the 12th Annual Network and Distributed System Security Symposium (NDSS","author":"Newsome J.","year":"2005","unstructured":"Newsome , J. and Song , D . 2005. Dynamic taint analysis for automatic detection, analysis, and signature generation of exploits on commodity software . In Proceedings of the 12th Annual Network and Distributed System Security Symposium (NDSS 2005 ). Newsome, J. and Song, D. 2005. Dynamic taint analysis for automatic detection, analysis, and signature generation of exploits on commodity software. In Proceedings of the 12th Annual Network and Distributed System Security Symposium (NDSS 2005)."},{"key":"e_1_2_1_40_1","volume-title":"Computer Architecture: A Quantitative Approach, 3rd. ed. Morgan Kaufmann","author":"Patterson D. A.","year":"2003","unstructured":"Patterson , D. A. and Hennessy , J. L . 2003 . Computer Architecture: A Quantitative Approach, 3rd. ed. Morgan Kaufmann , San Mateo, CA . Patterson, D. A. and Hennessy, J. L. 2003. Computer Architecture: A Quantitative Approach, 3rd. ed. Morgan Kaufmann, San Mateo, CA."},{"key":"e_1_2_1_41_1","volume-title":"5th Annual Workshop on Duplicating, Deconstructing, and Debunking.","author":"Piromsopa K.","unstructured":"Piromsopa , K. and Enbody , R. J . 2006. Defeating buffer-overflow prevention hardware . In 5th Annual Workshop on Duplicating, Deconstructing, and Debunking. Piromsopa, K. and Enbody, R. J. 2006. Defeating buffer-overflow prevention hardware. In 5th Annual Workshop on Duplicating, Deconstructing, and Debunking."},{"key":"e_1_2_1_42_1","volume-title":"Proceedings of ASPLOS-I. ACM Press","author":"Pollack F. J.","year":"1835","unstructured":"Pollack , F. J. , Cox , G. W. , Hammerstrom , D. W. , Kahn , K. C. , Lai , K. K. , and Rattner , J. R . 1982. Supporting Ada memory management in the iAPX-432 . In Proceedings of ASPLOS-I. ACM Press , New York. 117--131. 10.1145\/800050.80 1835 Pollack, F. J., Cox, G. W., Hammerstrom, D. W., Kahn, K. C., Lai, K. K., and Rattner, J. R. 1982. Supporting Ada memory management in the iAPX-432. In Proceedings of ASPLOS-I. ACM Press, New York. 117--131. 10.1145\/800050.801835"},{"key":"e_1_2_1_43_1","volume-title":"Proceedings of the IEEE 63","author":"Saltzer J.","unstructured":"Saltzer , J. and Schroeder , M . 1975. The protection of information in computer systems . In Proceedings of the IEEE 63 . 1278--1308. Saltzer, J. and Schroeder, M. 1975. The protection of information in computer systems. In Proceedings of the IEEE 63. 1278--1308."},{"key":"e_1_2_1_44_1","volume-title":"Exploiting Format String Vulnerabilities (Unpublished,","year":"2001","unstructured":"scut. 2001. Exploiting Format String Vulnerabilities (Unpublished, available at http:\/\/web.archive.org as http:\/\/www.team-teso.net\/articles\/formatstring\/ from 18 October 2001 ). scut. 2001. Exploiting Format String Vulnerabilities (Unpublished, available at http:\/\/web.archive.org as http:\/\/www.team-teso.net\/articles\/formatstring\/ from 18 October 2001)."},{"key":"e_1_2_1_45_1","unstructured":"Security Focus. 2005. Security Focus Vulnerability Notes http:\/\/www.securityfocus.com.  Security Focus. 2005. Security Focus Vulnerability Notes http:\/\/www.securityfocus.com."},{"key":"e_1_2_1_46_1","volume-title":"CCS '04: Proceedings of the 11th ACM conference on Computer and communications security. ACM Press","author":"Shacham H.","unstructured":"Shacham , H. , Page , M. , Pfaff , B. , Goh , E.-J. , Modadugu , N. , and Boneh , D . 2004. On the effectiveness of address-space randomization . In CCS '04: Proceedings of the 11th ACM conference on Computer and communications security. ACM Press , New York. 298--307. 10.1145\/1030083.1030124 Shacham, H., Page, M., Pfaff, B., Goh, E.-J., Modadugu, N., and Boneh, D. 2004. On the effectiveness of address-space randomization. In CCS '04: Proceedings of the 11th ACM conference on Computer and communications security. ACM Press, New York. 298--307. 10.1145\/1030083.1030124"},{"key":"e_1_2_1_47_1","volume-title":"Proceedings of the USENIX Security Conference.","author":"Sovarel A.","unstructured":"Sovarel , A. , Evans , D. , and Paul , N . 2005. Where's the FEEB&quest;: The effectiveness of instruction set randomization . In Proceedings of the USENIX Security Conference. Sovarel, A., Evans, D., and Paul, N. 2005. Where's the FEEB&quest;: The effectiveness of instruction set randomization. In Proceedings of the USENIX Security Conference."},{"key":"e_1_2_1_48_1","volume-title":"Proceedings of the USENIX Security Symposium. 149--167","author":"Staniford S.","unstructured":"Staniford , S. , Paxson , V. , and Weaver , N . 2002. How to own the internet in your spare time . In Proceedings of the USENIX Security Symposium. 149--167 . Staniford, S., Paxson, V., and Weaver, N. 2002. How to own the internet in your spare time. In Proceedings of the USENIX Security Symposium. 149--167."},{"key":"e_1_2_1_49_1","volume-title":"Proceedings of the 17th Annual ACM International Conference on Supercomputing. 10","author":"Suh G. E.","unstructured":"Suh , G. E. , Clarke , D. , Gassend , B. , van Dijk , M. , and Devadas , S . 2003. AEGIS: Architecture for tamper-evident and tamper-resistant processing . In Proceedings of the 17th Annual ACM International Conference on Supercomputing. 10 .1145\/782814.782838 Suh, G. E., Clarke, D., Gassend, B., van Dijk, M., and Devadas, S. 2003. AEGIS: Architecture for tamper-evident and tamper-resistant processing. In Proceedings of the 17th Annual ACM International Conference on Supercomputing. 10.1145\/782814.782838"},{"key":"e_1_2_1_50_1","volume-title":"Proceedings of ASPLOS-XI. 10","author":"Suh G. E.","unstructured":"Suh , G. E. , Lee , J. , Zhang , D. , and Devadas , S . 2004. Secure Program Execution via Dynamic Information Flow Tracking . In Proceedings of ASPLOS-XI. 10 .1145\/1024393.1024404 Suh, G. E., Lee, J., Zhang, D., and Devadas, S. 2004. Secure Program Execution via Dynamic Information Flow Tracking. In Proceedings of ASPLOS-XI. 10.1145\/1024393.1024404"},{"key":"e_1_2_1_51_1","unstructured":"Trusted Computing Group. 2004. TCG Specification: Architecture Overview (available at https:\/\/www.trustedcomputinggroup.org\/groups\/TCG_1_0_Architecture_Overview.pdf).  Trusted Computing Group. 2004. TCG Specification: Architecture Overview (available at https:\/\/www.trustedcomputinggroup.org\/groups\/TCG_1_0_Architecture_Overview.pdf)."},{"key":"e_1_2_1_52_1","volume-title":"The 37th International Symposium on Microarchitecture. 10","author":"Tuck N.","year":"2004","unstructured":"Tuck , N. , Calder , B. , and Varghese , G . 2004. Hardware and binary modification support for code pointer protection from buffer overflow . In The 37th International Symposium on Microarchitecture. 10 .1109\/MICRO. 2004 .20 Tuck, N., Calder, B., and Varghese, G. 2004. Hardware and binary modification support for code pointer protection from buffer overflow. In The 37th International Symposium on Microarchitecture. 10.1109\/MICRO.2004.20"},{"key":"e_1_2_1_53_1","doi-asserted-by":"publisher","DOI":"10.1109\/MICRO.2004.31"},{"key":"e_1_2_1_54_1","volume-title":"SP '01: Proceedings of the 2001 IEEE Symposium on Security and Privacy. IEEE Computer Society","author":"Wagner D.","unstructured":"Wagner , D. and Dean , D . 2001. Intrusion detection via static analysis . In SP '01: Proceedings of the 2001 IEEE Symposium on Security and Privacy. IEEE Computer Society , Washington, DC. 156. Wagner, D. and Dean, D. 2001. Intrusion detection via static analysis. In SP '01: Proceedings of the 2001 IEEE Symposium on Security and Privacy. IEEE Computer Society, Washington, DC. 156."},{"key":"e_1_2_1_55_1","volume-title":"Proceedings of the 9th ACM Conference on Computer and Communications Security. ACM Press","author":"Wagner D.","unstructured":"Wagner , D. and Soto , P . 2002. Mimicry attacks on host based intrusion detection systems . In Proceedings of the 9th ACM Conference on Computer and Communications Security. ACM Press , Washington, DC, New York. 255--264. 10.1145\/586110.586145 Wagner, D. and Soto, P. 2002. Mimicry attacks on host based intrusion detection systems. In Proceedings of the 9th ACM Conference on Computer and Communications Security. ACM Press, Washington, DC, New York. 255--264. 10.1145\/586110.586145"},{"key":"e_1_2_1_56_1","volume-title":"Proceedings of the 31st annual International Symposium on Computer Architecture. IEEE Computer Society","author":"Weaver C.","unstructured":"Weaver , C. , Emer , J. , and Mukherjee , S. S . 2004. Techniques to reduce the soft error rate of a high-performance microprocessor . In Proceedings of the 31st annual International Symposium on Computer Architecture. IEEE Computer Society , Washington, DC. 264. Weaver, C., Emer, J., and Mukherjee, S. S. 2004. Techniques to reduce the soft error rate of a high-performance microprocessor. In Proceedings of the 31st annual International Symposium on Computer Architecture. IEEE Computer Society, Washington, DC. 264."},{"key":"e_1_2_1_57_1","unstructured":"Web Server. 2005. http:\/\/minos.cs.ucdavis.edu\/.  Web Server. 2005. http:\/\/minos.cs.ucdavis.edu\/."},{"key":"e_1_2_1_58_1","volume-title":"Proceedings of ASPLOS-X. 10","author":"Witchel E.","unstructured":"Witchel , E. , Cates , J. , and Asanovi\u0107 , K . 2002. Mondrian memory protection . In Proceedings of ASPLOS-X. 10 .1145\/605397.605429 Witchel, E., Cates, J., and Asanovi\u0107, K. 2002. Mondrian memory protection. In Proceedings of ASPLOS-X. 10.1145\/605397.605429"},{"key":"e_1_2_1_59_1","volume-title":"Proceedings of the 36th Annual IEEE\/ACM International Symposium on Microarchitecture. IEEE Computer Society","author":"Yang J.","unstructured":"Yang , J. , Zhang , Y. , and Gao , L . 2003. Fast secure processor for inhibiting software piracy and tampering . In Proceedings of the 36th Annual IEEE\/ACM International Symposium on Microarchitecture. IEEE Computer Society , Washington, DC. 351. Yang, J., Zhang, Y., and Gao, L. 2003. Fast secure processor for inhibiting software piracy and tampering. In Proceedings of the 36th Annual IEEE\/ACM International Symposium on Microarchitecture. IEEE Computer Society, Washington, DC. 351."}],"container-title":["ACM Transactions on Architecture and Code Optimization"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1187976.1187977","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,12,28]],"date-time":"2022-12-28T17:54:58Z","timestamp":1672250098000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1187976.1187977"}},"subtitle":["Architectural support for protecting control data"],"short-title":[],"issued":{"date-parts":[[2006,12]]},"references-count":57,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2006,12]]}},"alternative-id":["10.1145\/1187976.1187977"],"URL":"https:\/\/doi.org\/10.1145\/1187976.1187977","relation":{},"ISSN":["1544-3566","1544-3973"],"issn-type":[{"value":"1544-3566","type":"print"},{"value":"1544-3973","type":"electronic"}],"subject":[],"published":{"date-parts":[[2006,12]]},"assertion":[{"value":"2006-12-01","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}