{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,27]],"date-time":"2026-02-27T03:46:28Z","timestamp":1772163988750,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":51,"publisher":"ACM","license":[{"start":{"date-parts":[[2007,10,14]],"date-time":"2007-10-14T00:00:00Z","timestamp":1192320000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2007,10,14]]},"DOI":"10.1145\/1294261.1294274","type":"proceedings-article","created":{"date-parts":[[2007,10,19]],"date-time":"2007-10-19T12:15:18Z","timestamp":1192796118000},"page":"117-130","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":78,"title":["Bouncer"],"prefix":"10.1145","author":[{"given":"Manuel","family":"Costa","sequence":"first","affiliation":[{"name":"Microsoft Research, Cambridge, United Kingdom"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Miguel","family":"Castro","sequence":"additional","affiliation":[{"name":"Microsoft Research, Cambridge, United Kingdom"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lidong","family":"Zhou","sequence":"additional","affiliation":[{"name":"Microsoft Research, Mountain View"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lintao","family":"Zhang","sequence":"additional","affiliation":[{"name":"Microsoft Research, Mountain View"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Marcus","family":"Peinado","sequence":"additional","affiliation":[{"name":"Microsoft, Redmond"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2007,10,14]]},"reference":[{"key":"e_1_3_2_2_1_1","unstructured":"GHttpd Log() Function Buffer Overflow Vulnerability. http:\/\/www.securityfocus.com\/bid\/5960.  GHttpd Log() Function Buffer Overflow Vulnerability. http:\/\/www.securityfocus.com\/bid\/5960."},{"key":"e_1_3_2_2_2_1","unstructured":"Null HTTPd Remote Heap Overflow Vulnerability. http:\/\/www.securityfocus.com\/bid\/5774.  Null HTTPd Remote Heap Overflow Vulnerability. http:\/\/www.securityfocus.com\/bid\/5774."},{"key":"e_1_3_2_2_3_1","unstructured":"STunnel Client Negotiation Protocol Format String Vulnerability. http:\/\/www.securityfocus.com\/bid\/3748.  STunnel Client Negotiation Protocol Format String Vulnerability. http:\/\/www.securityfocus.com\/bid\/3748."},{"key":"e_1_3_2_2_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102165"},{"key":"e_1_3_2_2_5_1","volume-title":"Compilers: Principles, techniques, and tools","author":"Aho A.","year":"1986","unstructured":"A. Aho , R. Sethi , and J. D. Ullman . Compilers: Principles, techniques, and tools . Prentice Hall , 1986 . A. Aho, R. Sethi, and J. D. Ullman. Compilers: Principles, techniques, and tools. Prentice Hall, 1986."},{"key":"e_1_3_2_2_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/1108792.1108813"},{"key":"e_1_3_2_2_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/1133981.1134000"},{"key":"e_1_3_2_2_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/1134760.1220164"},{"key":"e_1_3_2_2_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2006.41"},{"key":"e_1_3_2_2_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2007.17"},{"key":"e_1_3_2_2_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/1180405.1180445"},{"key":"e_1_3_2_2_12_1","volume-title":"OSDI","author":"Castro M.","year":"2006","unstructured":"M. Castro , M. Costa , and T. Harris . Securing software by enforcing data-flow integrity . In OSDI , Nov. 2006 . M. Castro, M. Costa, and T. Harris. Securing software by enforcing data-flow integrity. In OSDI, Nov. 2006."},{"key":"e_1_3_2_2_13_1","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2005.36"},{"key":"e_1_3_2_2_14_1","volume-title":"USENIX Security Symposium","author":"Chen S.","year":"2005","unstructured":"S. Chen , J. Xu , E. C. Sezer , P. Gauriar , and R. K. Iyer . Non-control-data attacks are realistic threats . In USENIX Security Symposium , July 2005 . S. Chen, J. Xu, E. C. Sezer, P. Gauriar, and R. K. Iyer. Non-control-data attacks are realistic threats. In USENIX Security Symposium, July 2005."},{"key":"e_1_3_2_2_15_1","volume-title":"University of Cambridge","author":"Costa M.","year":"2006","unstructured":"M. Costa . End-to-End Containment of Internet Worm Epidemics. PhD thesis , University of Cambridge , Oct. 2006 . M. Costa. End-to-End Containment of Internet Worm Epidemics. PhD thesis, University of Cambridge, Oct. 2006."},{"key":"e_1_3_2_2_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/1095810.1095824"},{"key":"e_1_3_2_2_17_1","volume-title":"USENIX Security Symposium","author":"Cowan C.","year":"1998","unstructured":"C. Cowan , C. Pu , D. Maier , H. Hinton , J. Wadpole , P. Bakke , S. Beattie , A. Grier , P. Wagle , and Q. Zhang . Stackguard: Automatic detection and prevention of buffer-overrun attacks . In USENIX Security Symposium , Jan. 1998 . C. Cowan, C. Pu, D. Maier, H. Hinton, J. Wadpole, P. Bakke, S. Beattie, A. Grier, P. Wagle, and Q. Zhang. Stackguard: Automatic detection and prevention of buffer-overrun attacks. In USENIX Security Symposium, Jan. 1998."},{"key":"e_1_3_2_2_18_1","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102152"},{"key":"e_1_3_2_2_19_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2007.34"},{"key":"e_1_3_2_2_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/360933.360975"},{"key":"e_1_3_2_2_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/568522.568525"},{"key":"e_1_3_2_2_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/1190216.1190226"},{"key":"e_1_3_2_2_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/1065010.1065036"},{"key":"e_1_3_2_2_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/1065010.1065016"},{"key":"e_1_3_2_2_25_1","volume-title":"Virus Bulletin","author":"Kephart J. O.","year":"1994","unstructured":"J. O. Kephart and W. C. Arnold . Automatic extraction of computer virus signatures . In Virus Bulletin , Sept. 1994 . J. O. Kephart and W. C. Arnold. Automatic extraction of computer virus signatures. In Virus Bulletin, Sept. 1994."},{"key":"e_1_3_2_2_26_1","volume-title":"USENIX Security Symposium","author":"Kim H.","year":"2004","unstructured":"H. Kim and B. Karp . Autograph: Toward automated, distributed worm signature detection . In USENIX Security Symposium , Aug. 2004 . H. Kim and B. Karp. Autograph: Toward automated, distributed worm signature detection. In USENIX Security Symposium, Aug. 2004."},{"key":"e_1_3_2_2_27_1","doi-asserted-by":"publisher","DOI":"10.1145\/360248.360252"},{"key":"e_1_3_2_2_28_1","doi-asserted-by":"publisher","DOI":"10.5555\/647253.720293"},{"key":"e_1_3_2_2_29_1","doi-asserted-by":"publisher","DOI":"10.1016\/0020-0190(88)90054-3"},{"key":"e_1_3_2_2_30_1","volume-title":"HotNets","author":"Kreibich C.","year":"2003","unstructured":"C. Kreibich and J. Crowcroft . Honeycomb -- creating intrusion detection signatures using honeypots . In HotNets , Nov. 2003 . C. Kreibich and J. Crowcroft. Honeycomb -- creating intrusion detection signatures using honeypots. In HotNets, Nov. 2003."},{"key":"e_1_3_2_2_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSAC.2005.12"},{"key":"e_1_3_2_2_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102150"},{"key":"e_1_3_2_2_33_1","unstructured":"Microsoft. Phoenix compiler framework. http:\/\/research.microsoft.com\/phoenix\/phoenixrdk.aspx.  Microsoft. Phoenix compiler framework. http:\/\/research.microsoft.com\/phoenix\/phoenixrdk.aspx."},{"key":"e_1_3_2_2_34_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSECP.2003.1219056"},{"key":"e_1_3_2_2_35_1","volume-title":"NDSS","author":"Newsome J.","year":"2006","unstructured":"J. Newsome , D. Brumley , and D. Song . Vulnerability-specific execution filtering for exploit prevention on commodity software . In NDSS , Feb. 2006 . J. Newsome, D. Brumley, and D. Song. Vulnerability-specific execution filtering for exploit prevention on commodity software. In NDSS, Feb. 2006."},{"key":"e_1_3_2_2_36_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2005.15"},{"key":"e_1_3_2_2_37_1","volume-title":"NDSS","author":"Newsome J.","year":"2005","unstructured":"J. Newsome and D. Song . Dynamic taint analysis for automatic detection, analysis and signature generation of exploits on commodity software . In NDSS , Feb. 2005 . J. Newsome and D. Song. Dynamic taint analysis for automatic detection, analysis and signature generation of exploits on commodity software. In NDSS, Feb. 2005."},{"key":"e_1_3_2_2_38_1","doi-asserted-by":"publisher","DOI":"10.1145\/1095810.1095833"},{"key":"e_1_3_2_2_39_1","volume-title":"OSDI","author":"Rinard M.","year":"2004","unstructured":"M. Rinard , C. Cadar , D. Dumitran , D. M. Roy , T. Leu , and W. Beebee . Enhancing server availability and security through failure-oblivious computing . In OSDI , Dec. 2004 . M. Rinard, C. Cadar, D. Dumitran, D. M. Roy, T. Leu, and W. Beebee. Enhancing server availability and security through failure-oblivious computing. In OSDI, Dec. 2004."},{"key":"e_1_3_2_2_40_1","volume-title":"NDSS","author":"Ruwase O.","year":"2004","unstructured":"O. Ruwase and M. Lam . A practical dynamic buffer overflow detector . In NDSS , Feb. 2004 . O. Ruwase and M. Lam. A practical dynamic buffer overflow detector. In NDSS, Feb. 2004."},{"key":"e_1_3_2_2_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/1081706.1081750"},{"key":"e_1_3_2_2_42_1","volume-title":"OSDI","author":"Singh S.","year":"2004","unstructured":"S. Singh , C. Estan , G. Varghese , and S. Savage . Automated worm fingerprinting . In OSDI , Dec. 2004 . S. Singh, C. Estan, G. Varghese, and S. Savage. Automated worm fingerprinting. In OSDI, Dec. 2004."},{"key":"e_1_3_2_2_43_1","unstructured":"SPEC. Specweb99 benchmark. http:\/\/www.spec.org\/osg\/web99.  SPEC. Specweb99 benchmark. http:\/\/www.spec.org\/osg\/web99."},{"key":"e_1_3_2_2_44_1","volume-title":"RAID","author":"Toth T.","year":"2002","unstructured":"T. Toth and C. Kruegel . Accurate buffer overflow detection via abstract payload execution . In RAID , Oct. 2002 . T. Toth and C. Kruegel. Accurate buffer overflow detection via abstract payload execution. In RAID, Oct. 2002."},{"key":"e_1_3_2_2_45_1","volume-title":"TPC-C online transaction processing benchmark","author":"TPC.","year":"1999","unstructured":"TPC. TPC-C online transaction processing benchmark . 1999 . http:\/\/www.tpc.org\/tpcc. TPC. TPC-C online transaction processing benchmark. 1999. http:\/\/www.tpc.org\/tpcc."},{"key":"e_1_3_2_2_46_1","doi-asserted-by":"publisher","DOI":"10.1145\/1272996.1273010"},{"key":"e_1_3_2_2_47_1","volume-title":"Usenix Security Symposium","author":"Wang X.","year":"2006","unstructured":"X. Wang , C.-C. Pan , P. Liu , and S. Zhu . Sigfree: A signature-free buffer overflow attack blocker . In Usenix Security Symposium , Aug. 2006 . X. Wang, C.-C. Pan, P. Liu, and S. Zhu. Sigfree: A signature-free buffer overflow attack blocker. In Usenix Security Symposium, Aug. 2006."},{"key":"e_1_3_2_2_48_1","doi-asserted-by":"publisher","DOI":"10.1145\/1028976.1029011"},{"key":"e_1_3_2_2_49_1","volume-title":"Conference on Software Engineering. IEEE Computer Society Press","author":"Weiser M.","year":"1981","unstructured":"M. Weiser . Program slicing . In Conference on Software Engineering. IEEE Computer Society Press , 1981 . M. Weiser. Program slicing. In Conference on Software Engineering. IEEE Computer Society Press, 1981."},{"key":"e_1_3_2_2_50_1","doi-asserted-by":"publisher","DOI":"10.5555\/151145"},{"key":"e_1_3_2_2_51_1","doi-asserted-by":"publisher","DOI":"10.1145\/996841.996855"}],"event":{"name":"SOSP07: ACM SIGOPS 21st Symposium on Operating Systems Principles 2007","location":"Stevenson Washington USA","acronym":"SOSP07","sponsor":["SIGOPS ACM Special Interest Group on Operating Systems","ACM Association for Computing Machinery"]},"container-title":["Proceedings of twenty-first ACM SIGOPS symposium on Operating systems principles"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1294261.1294274","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1294261.1294274","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T10:52:22Z","timestamp":1750243942000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1294261.1294274"}},"subtitle":["securing software by blocking bad input"],"short-title":[],"issued":{"date-parts":[[2007,10,14]]},"references-count":51,"alternative-id":["10.1145\/1294261.1294274","10.1145\/1294261"],"URL":"https:\/\/doi.org\/10.1145\/1294261.1294274","relation":{"is-identical-to":[{"id-type":"doi","id":"10.1145\/1323293.1294274","asserted-by":"object"}]},"subject":[],"published":{"date-parts":[[2007,10,14]]},"assertion":[{"value":"2007-10-14","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}