{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:30:05Z","timestamp":1750307405604,"version":"3.41.0"},"reference-count":31,"publisher":"Association for Computing Machinery (ACM)","issue":"2","license":[{"start":{"date-parts":[[2010,4,14]],"date-time":"2010-04-14T00:00:00Z","timestamp":1271203200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["SIGOPS Oper. Syst. Rev."],"published-print":{"date-parts":[[2010,4,14]]},"abstract":"<jats:p>Pointer tainting is a form of Dynamic Information Flow Tracking used primarily to prevent software security attacks such as buffer overflows. Researchers have also applied pointer tainting to malware and virus analysis.<\/jats:p>\n          <jats:p>A recent paper by Slowinska and Bos has criticized pointer tainting as a security mechanism, arguing that it is has serious, inherent false positive and false negative defects. We present a rebuttal that addresses the confusion due to the two uses of pointer tainting in security literature. We clarify that many of the arguments against pointer tainting apply only to its use as a malware and virus analysis platform, but do not apply to the application of pointer tainting to memory corruption protection. Hence, we argue that pointer tainting remains a useful and promising technique for robust protection against memory corruption attacks.<\/jats:p>","DOI":"10.1145\/1773912.1773933","type":"journal-article","created":{"date-parts":[[2010,4,27]],"date-time":"2010-04-27T12:45:25Z","timestamp":1272372325000},"page":"88-92","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":9,"title":["Tainting is not pointless"],"prefix":"10.1145","volume":"44","author":[{"given":"Michael","family":"Dalton","sequence":"first","affiliation":[{"name":"Stanford University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hari","family":"Kannan","sequence":"additional","affiliation":[{"name":"Stanford University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Christos","family":"Kozyrakis","sequence":"additional","affiliation":[{"name":"Stanford University"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2010,4,14]]},"reference":[{"key":"e_1_2_1_1_1","unstructured":"ATPHTTPD Buffer Overflow Exploit Code. http:\/\/www.securiteam.com\/exploits\/6B00K003GY.html 2001.  ATPHTTPD Buffer Overflow Exploit Code. http:\/\/www.securiteam.com\/exploits\/6B00K003GY.html 2001."},{"key":"e_1_2_1_2_1","first-page":"41","volume-title":"USENIX '05: Proceedings of the USENIX Annual Technical Conference","author":"Bellard F.","year":"2005"},{"key":"e_1_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.5555\/1267308.1267319"},{"key":"e_1_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-70542-0_8"},{"key":"e_1_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2005.36"},{"volume-title":"Proceedings of the 14th USENIX Security Symposium","year":"2005","author":"Chen S.","key":"e_1_2_1_6_1"},{"key":"e_1_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1109\/MICRO.2004.26"},{"volume-title":"Deconstructing Hardware Architectures for Security. In the 5th Annual Workshop on Duplicating, Deconstructing, and Debunking","year":"2006","author":"Dalton M.","key":"e_1_2_1_8_1"},{"key":"e_1_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1145\/1250662.1250722"},{"key":"e_1_2_1_10_1","first-page":"395","volume-title":"Proceedings of the 17th Annual USENIX Security Symposium","author":"Dalton M.","year":"2008"},{"key":"e_1_2_1_11_1","first-page":"395","volume-title":"Proceedings of the 17th Annual USENIX Security Symposium","author":"Dalton M.","year":"2008"},{"volume-title":"Proceedings of the 18th Annual USENIX Security Symposium","year":"2009","author":"Dalton M.","key":"e_1_2_1_12_1"},{"volume-title":"Addison-Wesley Professional","year":"2005","author":"Hoglund G.","key":"e_1_2_1_13_1"},{"key":"e_1_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1109\/PRDC.2006.22"},{"key":"e_1_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/1294261.1294293"},{"key":"e_1_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/948109.948149"},{"key":"e_1_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/1554339.1554349"},{"volume-title":"Proceedings of the Network and Distributed System Security Symposium","year":"2005","author":"Newsome J.","key":"e_1_2_1_18_1"},{"key":"e_1_2_1_19_1","unstructured":"Santa Cruz Operation. System V Application Binary Interface SPARC Architecture Processor Supplement 1996.  Santa Cruz Operation. System V Application Binary Interface SPARC Architecture Processor Supplement 1996."},{"key":"e_1_2_1_20_1","unstructured":"Santa Cruz Operation. System V Application Binary Interface Intel386 Architecture Processor Supplement 1997.  Santa Cruz Operation. System V Application Binary Interface Intel386 Architecture Processor Supplement 1997."},{"volume-title":"Network and Distributed Systems Security (NDSS) Symposium","year":"2009","author":"Saxena P.","key":"e_1_2_1_21_1"},{"key":"e_1_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/1519065.1519073"},{"key":"e_1_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/1111037.1111070"},{"key":"e_1_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/1024393.1024404"},{"key":"e_1_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/1508244.1508258"},{"key":"e_1_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/MC.2005.163"},{"key":"e_1_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1109\/MICRO.2004.31"},{"key":"e_1_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/844128.844146"},{"volume-title":"Proceedings of the 15th Annual Network and Distributed System Security Symposium (NDSS'08)","year":"2008","author":"Yin H.","key":"e_1_2_1_29_1"},{"key":"e_1_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315261"},{"key":"e_1_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.5555\/1267308.1267327"}],"container-title":["ACM SIGOPS Operating Systems Review"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1773912.1773933","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1773912.1773933","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T11:39:27Z","timestamp":1750246767000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1773912.1773933"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2010,4,14]]},"references-count":31,"journal-issue":{"issue":"2","published-print":{"date-parts":[[2010,4,14]]}},"alternative-id":["10.1145\/1773912.1773933"],"URL":"https:\/\/doi.org\/10.1145\/1773912.1773933","relation":{},"ISSN":["0163-5980"],"issn-type":[{"type":"print","value":"0163-5980"}],"subject":[],"published":{"date-parts":[[2010,4,14]]},"assertion":[{"value":"2010-04-14","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}