{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,1]],"date-time":"2026-02-01T03:44:11Z","timestamp":1769917451679,"version":"3.49.0"},"publisher-location":"New York, NY, USA","reference-count":35,"publisher":"ACM","license":[{"start":{"date-parts":[[2010,12,6]],"date-time":"2010-12-06T00:00:00Z","timestamp":1291593600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/501100004963","name":"Seventh Framework Programme","doi-asserted-by":"publisher","award":["IST-216026-WOMBAT"],"award-info":[{"award-number":["IST-216026-WOMBAT"]}],"id":[{"id":"10.13039\/501100004963","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100004963","name":"Seventh Framework Programme","doi-asserted-by":"publisher","award":["257007"],"award-info":[{"award-number":["257007"]}],"id":[{"id":"10.13039\/501100004963","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2010,12,6]]},"DOI":"10.1145\/1920261.1920269","type":"proceedings-article","created":{"date-parts":[[2010,12,20]],"date-time":"2010-12-20T16:13:47Z","timestamp":1292861627000},"page":"49-58","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":146,"title":["G-Free"],"prefix":"10.1145","author":[{"given":"Kaan","family":"Onarlioglu","sequence":"first","affiliation":[{"name":"Bilkent University, Ankara"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Leyla","family":"Bilge","sequence":"additional","affiliation":[{"name":"Eurecom, Sophia Antipolis"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Andrea","family":"Lanzi","sequence":"additional","affiliation":[{"name":"Eurecom, Sophia Antipolis"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Davide","family":"Balzarotti","sequence":"additional","affiliation":[{"name":"Eurecom, Sophia Antipolis"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Engin","family":"Kirda","sequence":"additional","affiliation":[{"name":"Eurecom, Sophia Antipolis"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2010,12,6]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"Phoronix test suite. http:\/\/www.phoronix-test-suite.com\/.  Phoronix test suite. http:\/\/www.phoronix-test-suite.com\/."},{"key":"e_1_3_2_1_2_1","unstructured":"Rop attack against data execution prevention technology 2009. http:\/\/www.h-online.com\/security\/news\/item\/Exploit-s-new-technology-trick-%dodges-memory-protection-959253.html.  Rop attack against data execution prevention technology 2009. http:\/\/www.h-online.com\/security\/news\/item\/Exploit-s-new-technology-trick-%dodges-memory-protection-959253.html."},{"key":"e_1_3_2_1_3_1","unstructured":"Symantec: Internet Security Threat Report. http:\/\/www4.symantec.com\/Vrt\/wl?tu_id=jLac123913792490340803 2009.  Symantec: Internet Security Threat Report. http:\/\/www4.symantec.com\/Vrt\/wl?tu_id=jLac123913792490340803 2009."},{"key":"e_1_3_2_1_4_1","volume-title":"http:\/\/www.intel.com\/products\/processor\/manuals\/","author":"Architectures Software Developer's Manuals Intel","year":"2010","unstructured":"Intel 64 and IA-32 Architectures Software Developer's Manuals . http:\/\/www.intel.com\/products\/processor\/manuals\/ , 2010 . Intel 64 and IA-32 Architectures Software Developer's Manuals. http:\/\/www.intel.com\/products\/processor\/manuals\/, 2010."},{"key":"e_1_3_2_1_5_1","volume-title":"Phrack Magazine n. 49","author":"One Aleph","year":"1996","unstructured":"Aleph One . Smashing the stack for fun and profit . In Phrack Magazine n. 49 , 1996 . Aleph One. Smashing the stack for fun and profit. In Phrack Magazine n. 49, 1996."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/1455770.1455776"},{"key":"e_1_3_2_1_7_1","volume-title":"Proceedings of EVT\/WOTE 2009","author":"Checkoway S.","year":"2009","unstructured":"S. Checkoway , A. J. Feldman , B. Kantor , J. A. Halderman , E. W. Felten , and H. Shacham . Can DREs Provide Long-Lasting Security? The Case of Return-Oriented Programming and the AVC Advantage . In Proceedings of EVT\/WOTE 2009 . USENIX\/ACCURATE\/IAVoSS, 2009 . S. Checkoway, A. J. Feldman, B. Kantor, J. A. Halderman, E. W. Felten, and H. Shacham. Can DREs Provide Long-Lasting Security? The Case of Return-Oriented Programming and the AVC Advantage. In Proceedings of EVT\/WOTE 2009. USENIX\/ACCURATE\/IAVoSS, 2009."},{"key":"e_1_3_2_1_8_1","volume-title":"Escape from return-oriented programming: Return-oriented programming without returns (on the x86). Technical report","author":"Checkoway S.","year":"2010","unstructured":"S. Checkoway and H. Shacham . Escape from return-oriented programming: Return-oriented programming without returns (on the x86). Technical report , 2010 . S. Checkoway and H. Shacham. Escape from return-oriented programming: Return-oriented programming without returns (on the x86). Technical report, 2010."},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-10772-6_13"},{"key":"e_1_3_2_1_10_1","volume-title":"Proceedings of the 12th Usenix Security Symposium","author":"Cowan C.","year":"2003","unstructured":"C. Cowan , S. Beattie , J. Johansen , and P. Wagle . PointGuard: Protecting Pointers from Buffer Overflow Vulnerabilities . In Proceedings of the 12th Usenix Security Symposium , 2003 . C. Cowan, S. Beattie, J. Johansen, and P. Wagle. PointGuard: Protecting Pointers from Buffer Overflow Vulnerabilities. In Proceedings of the 12th Usenix Security Symposium, 2003."},{"key":"e_1_3_2_1_11_1","volume-title":"Proceedings of the 7th USENIX Security Symposium, USA","author":"Cowan C.","year":"1998","unstructured":"C. Cowan , C. Pu , D. Maier , J. Walpole , P. Bakke , S. Beattie , A. Grier , P. Wagle , Q. Zhang , and H. Hinton . StackGuard: Automatic adaptive detection and prevention of buffer-overflow attacks . In Proceedings of the 7th USENIX Security Symposium, USA , 1998 . C. Cowan, C. Pu, D. Maier, J. Walpole, P. Bakke, S. Beattie, A. Grier, P. Wagle, Q. Zhang, and H. Hinton. StackGuard: Automatic adaptive detection and prevention of buffer-overflow attacks. In Proceedings of the 7th USENIX Security Symposium, USA, 1998."},{"key":"e_1_3_2_1_12_1","volume-title":"Proceedings of the DARPA Information Survivability Conference and Exposition","author":"Cowan C.","year":"2000","unstructured":"C. Cowan , P. Wagle , C. Pu , S. Beattie , and J. Walpole . Buffer overflows: Attacks and Defenses for the Vulnerability of the Decade . In Proceedings of the DARPA Information Survivability Conference and Exposition , 2000 . C. Cowan, P. Wagle, C. Pu, S. Beattie, and J. Walpole. Buffer overflows: Attacks and Defenses for the Vulnerability of the Decade. In Proceedings of the DARPA Information Survivability Conference and Exposition, 2000."},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/1655108.1655117"},{"key":"e_1_3_2_1_14_1","unstructured":"Felix Lidner. Confidence 2.0 . Developments in Cisco IOS forensics.  Felix Lidner. Confidence 2.0 . Developments in Cisco IOS forensics."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/1455770.1455775"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/1655077.1655083"},{"key":"e_1_3_2_1_17_1","volume-title":"Proceedings of USENIX security","author":"Frantsen M.","year":"2001","unstructured":"M. Frantsen and M. Shuey . Stackghost: Hardware facilitated stack protection . In Proceedings of USENIX security , 2001 . M. Frantsen and M. Shuey. Stackghost: Hardware facilitated stack protection. In Proceedings of USENIX security, 2001."},{"key":"e_1_3_2_1_18_1","volume-title":"GCC Extension for Protecting Applications from Stack-Smashing Attacks (ProPolice). In http:\/\/www.trl.ibm.com\/projects\/security\/ssp\/","author":"Etoh Hiroaki","year":"2003","unstructured":"Hiroaki Etoh . GCC Extension for Protecting Applications from Stack-Smashing Attacks (ProPolice). In http:\/\/www.trl.ibm.com\/projects\/security\/ssp\/ , 2003 . Hiroaki Etoh. GCC Extension for Protecting Applications from Stack-Smashing Attacks (ProPolice). In http:\/\/www.trl.ibm.com\/projects\/security\/ssp\/, 2003."},{"key":"e_1_3_2_1_19_1","volume-title":"Proceedings of the 18th USENIX Security Symposium, USA","author":"Hund R.","year":"2009","unstructured":"R. Hund , T. Holz , and F. Freiling . Return-Oriented Rootkits: Bypassing Kernel Code Integrity Protection Mechanisms . In Proceedings of the 18th USENIX Security Symposium, USA , 2009 . R. Hund, T. Holz, and F. Freiling. Return-Oriented Rootkits: Bypassing Kernel Code Integrity Protection Mechanisms. In Proceedings of the 18th USENIX Security Symposium, USA, 2009."},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.5555\/647253.720293"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/1755913.1755934"},{"key":"e_1_3_2_1_23_1","volume-title":"Phrack Magazine n. 58","year":"2001","unstructured":"Nergal. The advanced return-into-lib(c) exploits . In Phrack Magazine n. 58 , 2001 . Nergal. The advanced return-into-lib(c) exploits. In Phrack Magazine n. 58, 2001."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.5555\/1433006.1433008"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACSAC.2009.16"},{"key":"e_1_3_2_1_26_1","volume-title":"Exploiting format string vulnerabilities","author":"Teso Team","year":"2001","unstructured":"Scut, Team Teso . Exploiting format string vulnerabilities . 2001 . Scut, Team Teso. Exploiting format string vulnerabilities. 2001."},{"key":"e_1_3_2_1_27_1","volume-title":"x86-64 buffer overflow exploits and the borrowed code chunks exploitation technique","author":"Krahmer Sebastian","year":"2005","unstructured":"Sebastian Krahmer . x86-64 buffer overflow exploits and the borrowed code chunks exploitation technique , 2005 . http:\/\/www.suse.de\/~krahmer\/no-nx.pdf. Sebastian Krahmer. x86-64 buffer overflow exploits and the borrowed code chunks exploitation technique, 2005. http:\/\/www.suse.de\/~krahmer\/no-nx.pdf."},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/1294261.1294294"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315313"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/1030083.1030124"},{"key":"e_1_3_2_1_31_1","volume-title":"return-to-libc attack. Technical report, bugtraq","author":"Designer Solar","year":"1997","unstructured":"Solar Designer . return-to-libc attack. Technical report, bugtraq , 1997 . Solar Designer. return-to-libc attack. Technical report, bugtraq, 1997."},{"key":"e_1_3_2_1_32_1","unstructured":"The PaX Team. Pax address space layout randomization. Technical report http:\/\/pax.grsecurity.net\/docs\/aslr.txt.  The PaX Team. Pax address space layout randomization. Technical report http:\/\/pax.grsecurity.net\/docs\/aslr.txt."},{"key":"e_1_3_2_1_33_1","unstructured":"The PaX Team. Pax non-executable pages. Technical report http:\/\/pax.grsecurity.net\/docs\/noexec.txt.  The PaX Team. Pax non-executable pages. Technical report http:\/\/pax.grsecurity.net\/docs\/noexec.txt."},{"key":"e_1_3_2_1_34_1","volume-title":"Master's thesis","author":"Kornau Tim","year":"2010","unstructured":"Tim Kornau . Return oriented programming for the arm architecture. Technical report , Master's thesis , Ruhr-Universit\u00e4t Bochum , 2010 . Tim Kornau. Return oriented programming for the arm architecture. Technical report, Master's thesis, Ruhr-Universit\u00e4t Bochum, 2010."},{"key":"e_1_3_2_1_35_1","unstructured":"Vendicator. Stackshield: A \"stack smashing\" technique protection tool for linux. Technical report http:\/\/www.angelfire.com\/sk\/stackshield\/.  Vendicator. Stackshield: A \"stack smashing\" technique protection tool for linux. Technical report http:\/\/www.angelfire.com\/sk\/stackshield\/."},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1145\/1653662.1653728"}],"event":{"name":"ACSAC '10: 2010 Annual Computer Security Applications Conference","location":"Austin Texas USA","acronym":"ACSAC '10","sponsor":["ACSA Applied Computing Security Assoc"]},"container-title":["Proceedings of the 26th Annual Computer Security Applications Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1920261.1920269","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1920261.1920269","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T20:22:43Z","timestamp":1750278163000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1920261.1920269"}},"subtitle":["defeating return-oriented programming through gadget-less binaries"],"short-title":[],"issued":{"date-parts":[[2010,12,6]]},"references-count":35,"alternative-id":["10.1145\/1920261.1920269","10.1145\/1920261"],"URL":"https:\/\/doi.org\/10.1145\/1920261.1920269","relation":{},"subject":[],"published":{"date-parts":[[2010,12,6]]},"assertion":[{"value":"2010-12-06","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}