{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T04:31:19Z","timestamp":1750307479902,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":13,"publisher":"ACM","license":[{"start":{"date-parts":[[2010,10,4]],"date-time":"2010-10-04T00:00:00Z","timestamp":1286150400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2010,10,4]]},"DOI":"10.1145\/1866307.1866381","type":"proceedings-article","created":{"date-parts":[[2010,10,5]],"date-time":"2010-10-05T14:38:23Z","timestamp":1286289503000},"page":"639-641","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["In God we trust all others we monitor"],"prefix":"10.1145","author":[{"given":"Patrick","family":"Stewin","sequence":"first","affiliation":[{"name":"Berlin Institute of Technology, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jean-Pierre","family":"Seifert","sequence":"additional","affiliation":[{"name":"Berlin Institute of Technology, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2010,10,4]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"}}E. Abreu. FBI confirms \"Magic Lantern\" Project exists. http:\/\/www.si.umich.edu\/~rfrost\/courses\/SI110\/readings\/Privacy\/Magic_Lantern.pdf Dec. 2001. Found at: School of Information -- University of Michigan.  }}E. Abreu. FBI confirms \"Magic Lantern\" Project exists. http:\/\/www.si.umich.edu\/~rfrost\/courses\/SI110\/readings\/Privacy\/Magic_Lantern.pdf Dec. 2001. Found at: School of Information -- University of Michigan."},{"key":"e_1_3_2_1_2_1","first-page":"2009","author":"Bendrath R.","year":"2009","unstructured":"}} R. Bendrath , G. Hornung , and A. Pfitzmann . Surveillance in Germany: Strategies and Counterstrategies. Userpage Ralf Bendrath: http:\/\/userpage.fu-berlin.de\/~bendrath\/Bendrath-Hornung-Pfitzmann_Surveillance-in-Germany_ 2009 .pdf, June 2009 . }}R. Bendrath, G. Hornung, and A. Pfitzmann. Surveillance in Germany: Strategies and Counterstrategies. Userpage Ralf Bendrath: http:\/\/userpage.fu-berlin.de\/~bendrath\/Bendrath-Hornung-Pfitzmann_Surveillance-in-Germany_2009.pdf, June 2009.","journal-title":"Surveillance in Germany: Strategies and Counterstrategies. Userpage Ralf Bendrath: http:\/\/userpage.fu-berlin.de\/~bendrath\/Bendrath-Hornung-Pfitzmann_Surveillance-in-Germany_"},{"key":"e_1_3_2_1_3_1","unstructured":"}}Y. Bulygin. Chipset based Approach to detect Virtualization Malware. TuCancUnix: http:\/\/www.tucancunix.net\/ceh\/bhusa\/BHUSA08\/speakers\/Bulygin_Detection_of_Rootkits\/bh-us-08-bulygin_Chip_Based_Approach_to_Detect_Rootkits.pdf 2008.  }}Y. Bulygin. Chipset based Approach to detect Virtualization Malware. TuCancUnix: http:\/\/www.tucancunix.net\/ceh\/bhusa\/BHUSA08\/speakers\/Bulygin_Detection_of_Rootkits\/bh-us-08-bulygin_Chip_Based_Approach_to_Detect_Rootkits.pdf 2008."},{"key":"e_1_3_2_1_4_1","volume-title":"Jan.","author":"}}Electronic Privacy Information Center","year":"2005","unstructured":"}}Electronic Privacy Information Center . Carnivore. http:\/\/epic.org\/privacy\/carnivore\/default.html , Jan. 2005 . }}Electronic Privacy Information Center. Carnivore. http:\/\/epic.org\/privacy\/carnivore\/default.html, Jan. 2005."},{"key":"e_1_3_2_1_5_1","volume-title":"Free Archive: http:\/\/www.freearchive.org\/o\/90a083d1cd08b540693a4458543d8ac1ca4ca752ed67845986f3476921bf83ef\/info","author":"}}Federal Bureau of Investigation.","year":"2009","unstructured":"}}Federal Bureau of Investigation. Declassified FBI CIPAV spyware documents. wired.com , Free Archive: http:\/\/www.freearchive.org\/o\/90a083d1cd08b540693a4458543d8ac1ca4ca752ed67845986f3476921bf83ef\/info , Apr. 2009 . }}Federal Bureau of Investigation. Declassified FBI CIPAV spyware documents. wired.com, Free Archive: http:\/\/www.freearchive.org\/o\/90a083d1cd08b540693a4458543d8ac1ca4ca752ed67845986f3476921bf83ef\/info, Apr. 2009."},{"key":"e_1_3_2_1_6_1","unstructured":"}}Guidance Software. EnCase Forensic. http:\/\/www.guidancesoftware.com\/computer-forensics-ediscovery-software-digital-evidence.htm.  }}Guidance Software. EnCase Forensic. http:\/\/www.guidancesoftware.com\/computer-forensics-ediscovery-software-digital-evidence.htm."},{"key":"e_1_3_2_1_7_1","volume-title":"Nov.","author":"Higgins K. J.","year":"2009","unstructured":"}} K. J. Higgins . Microsoft Forensics Tool For Law Enforcement Leaked Online. DarkReading: http:\/\/www.darkreading.com\/security\/vulnerabilities\/showArticle.jhtml?articleID=221600872 &cid=ref-true , Nov. 2009 . }}K. J. Higgins. Microsoft Forensics Tool For Law Enforcement Leaked Online. DarkReading: http:\/\/www.darkreading.com\/security\/vulnerabilities\/showArticle.jhtml?articleID=221600872 &cid=ref-true, Nov. 2009."},{"key":"e_1_3_2_1_8_1","volume-title":"Mar.","author":"Lineberry A.","year":"2009","unstructured":"}} A. Lineberry . Malicious Code Injection via \/dev\/mem. Black Hat Europe: http:\/\/www.blackhat.com\/presentations\/bh-europe-09\/Lineberry\/BlackHat-Europe-2009-Lineberry-code-injection-via-dev-mem.pdf , Mar. 2009 . }}A. Lineberry. Malicious Code Injection via \/dev\/mem. Black Hat Europe: http:\/\/www.blackhat.com\/presentations\/bh-europe-09\/Lineberry\/BlackHat-Europe-2009-Lineberry-code-injection-via-dev-mem.pdf, Mar. 2009."},{"key":"e_1_3_2_1_9_1","unstructured":"}}Microsoft Corporation. Solutions Center for Government: Computer Online Forensic Evidence Extractor (COFEE). http:\/\/www.microsoft.com\/industry\/government\/solutions\/cofee\/default.aspx.  }}Microsoft Corporation. Solutions Center for Government: Computer Online Forensic Evidence Extractor (COFEE). http:\/\/www.microsoft.com\/industry\/government\/solutions\/cofee\/default.aspx."},{"key":"e_1_3_2_1_10_1","volume-title":"Aug.","author":"Rutkowska J.","year":"2006","unstructured":"}} J. Rutkowska . Subverting Vista kernel for fun and profit. Black Hat USA: http:\/\/blackhat.com\/presentations\/bh-usa-06\/BH-US-06-Rutkowska.pdf , Aug. 2006 . }}J. Rutkowska. Subverting Vista kernel for fun and profit. Black Hat USA: http:\/\/blackhat.com\/presentations\/bh-usa-06\/BH-US-06-Rutkowska.pdf, Aug. 2006."},{"issue":"4","key":"e_1_3_2_1_11_1","first-page":"335","volume":"12","author":"Saint-Hilaire Y.","year":"2008","unstructured":"}} Y. Saint-Hilaire . Extreme Programming with Intel v Pro Technology: Pushing the Limits with Innovative Software. Intel Technology Journal , 12 ( 4 ): 335 -- 342 , Dec. 2008 . }}Y. Saint-Hilaire. Extreme Programming with Intel vPro Technology: Pushing the Limits with Innovative Software. Intel Technology Journal, 12(4):335 -- 342, Dec. 2008.","journal-title":"Pro Technology: Pushing the Limits with Innovative Software. Intel Technology Journal"},{"key":"e_1_3_2_1_12_1","volume-title":"July","author":"Tereshkin A.","year":"2009","unstructured":"}} A. Tereshkin and R. Wojtczuk . Introducing Ring -3 Rootkits. ITL: http:\/\/www.invisiblethingslab.com\/itl\/Resources.html , July 2009 . }}A. Tereshkin and R. Wojtczuk. Introducing Ring -3 Rootkits. ITL: http:\/\/www.invisiblethingslab.com\/itl\/Resources.html, July 2009."},{"key":"e_1_3_2_1_13_1","volume-title":"Mar.","author":"Wojtczuk R.","year":"2009","unstructured":"}} R. Wojtczuk and J. Rutkowska . Attacking SMM Memory via Intel CPU Cache Poisoning. ITL: http:\/\/invisiblethingslab.com\/itl\/Resources.html , Mar. 2009 . }}R. Wojtczuk and J. Rutkowska. Attacking SMM Memory via Intel CPU Cache Poisoning. ITL: http:\/\/invisiblethingslab.com\/itl\/Resources.html, Mar. 2009."}],"event":{"name":"CCS '10: 17th ACM Conference on Computer and Communications Security 2010","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"],"location":"Chicago Illinois USA","acronym":"CCS '10"},"container-title":["Proceedings of the 17th ACM conference on Computer and communications security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1866307.1866381","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1866307.1866381","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T12:08:59Z","timestamp":1750248539000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1866307.1866381"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2010,10,4]]},"references-count":13,"alternative-id":["10.1145\/1866307.1866381","10.1145\/1866307"],"URL":"https:\/\/doi.org\/10.1145\/1866307.1866381","relation":{},"subject":[],"published":{"date-parts":[[2010,10,4]]},"assertion":[{"value":"2010-10-04","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}