{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,5]],"date-time":"2026-06-05T04:53:02Z","timestamp":1780635182871,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":48,"publisher":"ACM","license":[{"start":{"date-parts":[[2013,9,9]],"date-time":"2013-09-09T00:00:00Z","timestamp":1378684800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2013,9,9]]},"DOI":"10.1145\/2535813.2535824","type":"proceedings-article","created":{"date-parts":[[2013,12,10]],"date-time":"2013-12-10T13:28:27Z","timestamp":1386682107000},"page":"95-106","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":35,"title":["Booby trapping software"],"prefix":"10.1145","author":[{"given":"Stephen","family":"Crane","sequence":"first","affiliation":[{"name":"University of California, Irvine, Irvine, CA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Per","family":"Larsen","sequence":"additional","affiliation":[{"name":"University of California, Irvine, Irvine, CA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Stefan","family":"Brunthaler","sequence":"additional","affiliation":[{"name":"University of California, Irvine, Irvine, CA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Michael","family":"Franz","sequence":"additional","affiliation":[{"name":"University of California, Irvine, Irvine, CA, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2013,9,9]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"Metasploit Penetration Testing Software. http:\/\/www.metasploit.com\/.  Metasploit Penetration Testing Software. http:\/\/www.metasploit.com\/."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/1609956.1609960"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.5555\/872016.872155"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/1993498.1993540"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1109\/ISSA.2010.5588654"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-45248-5_8"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/1053283.1053286"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/1966913.1966919"},{"key":"e_1_3_2_1_9_1","series-title":"Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","volume-title":"Security and Privacy in Communication Networks","author":"Bowen B. M.","year":"2009","unstructured":"B. M. Bowen , S. Hershkop , A. D. Keromytis , and S. J. Stolfo . Baiting inside attackers using decoy documents . In Y. Chen, T. D. Dimitriou, and J. Zhou, editors, Security and Privacy in Communication Networks , Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering . Springer Berlin Heidelberg , 2009 . B. M. Bowen, S. Hershkop, A. D. Keromytis, and S. J. Stolfo. Baiting inside attackers using decoy documents. In Y. Chen, T. D. Dimitriou, and J. Zhou, editors, Security and Privacy in Communication Networks, Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering. Springer Berlin Heidelberg, 2009."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/1455770.1455776"},{"key":"e_1_3_2_1_11_1","volume-title":"Proceedings of the IEEE Systems, Man, and Cybernetics Information Assurance and Security Workshop","author":"Carver C.","year":"2000","unstructured":"C. Carver , J. M. Hill , J. R. Surdu , and U. W. Pooch . A methodology for using intelligent agents to provide automated intrusion response . In Proceedings of the IEEE Systems, Man, and Cybernetics Information Assurance and Security Workshop , West Point, NY, pages 110--116 , 2000 . C. Carver, J. M. Hill, J. R. Surdu, and U. W. Pooch. A methodology for using intelligent agents to provide automated intrusion response. In Proceedings of the IEEE Systems, Man, and Cybernetics Information Assurance and Security Workshop, West Point, NY, pages 110--116, 2000."},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1145\/1866307.1866370"},{"key":"e_1_3_2_1_13_1","volume-title":"Proceedings of the 4th Electronic Voting Technology Workshop\/Workshop on Trustworthy Elections. USENIX Association","author":"Checkoway S.","year":"2009","unstructured":"S. Checkoway , A. J. Feldman , B. Kantor , J. A. Halderman , E. W. Felten , and H. Shacham . Can DREs provide long-lasting security? The case of return-oriented programming and the AVC Advantage . In Proceedings of the 4th Electronic Voting Technology Workshop\/Workshop on Trustworthy Elections. USENIX Association , 2009 . S. Checkoway, A. J. Feldman, B. Kantor, J. A. Halderman, E. W. Felten, and H. Shacham. Can DREs provide long-lasting security? The case of return-oriented programming and the AVC Advantage. In Proceedings of the 4th Electronic Voting Technology Workshop\/Workshop on Trustworthy Elections. USENIX Association, 2009."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.5555\/1940366.1940380"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1016\/0167-4048(93)90054-9"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1016\/S0167-4048(98)80071-0"},{"key":"e_1_3_2_1_17_1","first-page":"63","volume-title":"Proceedings of the 7th USENIX Security Symposium","author":"Cowan C.","year":"1998","unstructured":"C. Cowan , C. Pu , D. Maier , H. Hintony , J. Walpole , P. Bakke , S. Beattie , A. Grier , P. Wagle , and Q. Zhang . StackGuard: Automatic Adaptive Detection and Prevention of Buffer-Overflow Attacks . In Proceedings of the 7th USENIX Security Symposium , pages 63 -- 78 . USENIX Association , 1998 . C. Cowan, C. Pu, D. Maier, H. Hintony, J. Walpole, P. Bakke, S. Beattie, A. Grier, P. Wagle, and Q. Zhang. StackGuard: Automatic Adaptive Detection and Prevention of Buffer-Overflow Attacks. In Proceedings of the 7th USENIX Security Symposium, pages 63--78. USENIX Association, 1998."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1145\/2076732.2076788"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/949305.949314"},{"key":"e_1_3_2_1_20_1","volume-title":"The Handbook of Information Security","author":"Dittrich D.","year":"2005","unstructured":"D. Dittrich and K. E. Himma . Active response to computer intrusions . In The Handbook of Information Security , volume III . 2005 . D. Dittrich and K. E. Himma. Active response to computer intrusions. In The Handbook of Information Security, volume III. 2005."},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.5555\/822075.822408"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/1900546.1900550"},{"key":"e_1_3_2_1_23_1","first-page":"475","volume-title":"Proceedings of the 21st USENIX Security Symposium","author":"Giuffrida C.","year":"2012","unstructured":"C. Giuffrida , A. Kuijsten , and A. S. Tanenbaum . Enhanced operating system security through efficient and fine-grained address space randomization . In Proceedings of the 21st USENIX Security Symposium , pages 475 -- 490 , 2012 . C. Giuffrida, A. Kuijsten, and A. S. Tanenbaum. Enhanced operating system security through efficient and fine-grained address space randomization. In Proceedings of the 21st USENIX Security Symposium, pages 475--490, 2012."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.39"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1109\/CGO.2013.6494997"},{"key":"e_1_3_2_1_26_1","volume-title":"Proceedings of the 6th USENIX Workshop on Offensive Technologies, WOOT '12","author":"Homescu A.","year":"2012","unstructured":"A. Homescu , M. Stewart , P. Larsen , S. Brunthaler , and M. Franz . Microgadgets: size does matter in turing-complete return-oriented programming . In Proceedings of the 6th USENIX Workshop on Offensive Technologies, WOOT '12 . USENIX Association , 2012 . A. Homescu, M. Stewart, P. Larsen, S. Brunthaler, and M. Franz. Microgadgets: size does matter in turing-complete return-oriented programming. In Proceedings of the 6th USENIX Workshop on Offensive Technologies, WOOT '12. USENIX Association, 2012."},{"key":"e_1_3_2_1_27_1","first-page":"383","volume-title":"Proceedings of the 18th USENIX Security Symposium","author":"Hund R.","year":"2009","unstructured":"R. Hund , T. Holz , and F. C. Freiling . Return-oriented rootkits: Bypassing kernel code integrity protection mechanisms . In Proceedings of the 18th USENIX Security Symposium , pages 383 -- 398 . USENIX Association , 2009 . R. Hund, T. Holz, and F. C. Freiling. Return-oriented rootkits: Bypassing kernel code integrity protection mechanisms. In Proceedings of the 18th USENIX Security Symposium, pages 383--398. USENIX Association, 2009."},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-89598-5_7"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1109\/ISTAS.2002.1013841"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/948109.948146"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1145\/1755913.1755934"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/36206.36194"},{"key":"e_1_3_2_1_33_1","volume-title":"Stuxnet Under the Microscope","author":"Matrosov A.","year":"2010","unstructured":"A. Matrosov , E. Rodionov , D. Harley , and J. Malcho . Stuxnet Under the Microscope , 2010 . http:\/\/go.eset.com\/us\/resources\/white-papers\/Stuxnet_Under_the_Microscope.pdf. Accessed 04\/09\/2013. A. Matrosov, E. Rodionov, D. Harley, and J. Malcho. Stuxnet Under the Microscope, 2010. http:\/\/go.eset.com\/us\/resources\/white-papers\/Stuxnet_Under_the_Microscope.pdf. Accessed 04\/09\/2013."},{"key":"e_1_3_2_1_34_1","volume-title":"Proceedings of the 15th USENIX Security Symposium. USENIX Association","author":"McCamant S.","year":"2006","unstructured":"S. McCamant and G. Morrisett . Evaluating SFI for a CISC architecture . In Proceedings of the 15th USENIX Security Symposium. USENIX Association , 2006 . S. McCamant and G. Morrisett. Evaluating SFI for a CISC architecture. In Proceedings of the 15th USENIX Security Symposium. USENIX Association, 2006."},{"key":"e_1_3_2_1_35_1","first-page":"58","article-title":"The advanced return-into-lib(c) exploits: PaX case study","author":"Nergal","year":"2001","unstructured":"Nergal . The advanced return-into-lib(c) exploits: PaX case study . Phrack Magazine, Issue 58 , 2001 . Nergal. The advanced return-into-lib(c) exploits: PaX case study. Phrack Magazine, Issue 58, 2001.","journal-title":"Phrack Magazine, Issue"},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1145\/1920261.1920269"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.41"},{"key":"e_1_3_2_1_38_1","unstructured":"PaX. Homepage of The PaX Team 2009. http:\/\/pax.grsecurity.net.  PaX. Homepage of The PaX Team 2009. http:\/\/pax.grsecurity.net."},{"key":"e_1_3_2_1_39_1","volume-title":"Proceedings of the 20th USENIX Security Symposium. USENIX Association","author":"Schwartz E. J.","year":"2011","unstructured":"E. J. Schwartz , T. Avgerinos , and D. Brumley . Q: Exploit Hardening Made Easy . In Proceedings of the 20th USENIX Security Symposium. USENIX Association , 2011 . E. J. Schwartz, T. Avgerinos, and D. Brumley. Q: Exploit Hardening Made Easy. In Proceedings of the 20th USENIX Security Symposium. USENIX Association, 2011."},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315313"},{"key":"e_1_3_2_1_41_1","volume-title":"Proceedings of the general track, 2005 USENIX annual technical conference: April 10 - 15, 2005","author":"Sidiroglou S.","year":"2005","unstructured":"S. Sidiroglou , M. E. Locasto , S. W. Boyd , and A. D. Keromytis . Building a reactive immune system for software services . Proceedings of the general track, 2005 USENIX annual technical conference: April 10 - 15, 2005 , Anaheim, CA, USA, pages 149--161 , 2005 . S. Sidiroglou, M. E. Locasto, S. W. Boyd, and A. D. Keromytis. Building a reactive immune system for software services. Proceedings of the general track, 2005 USENIX annual technical conference: April 10 - 15, 2005, Anaheim, CA, USA, pages 149--161, 2005."},{"key":"e_1_3_2_1_42_1","first-page":"145","volume-title":"Proceedings of the 14th USENIX Security Symposium","author":"Sovarel N.","year":"2005","unstructured":"N. Sovarel , D. Evans , and N. Paul . Where's the FEEB?: The Effectiveness of Instruction Set Randomization . In Proceedings of the 14th USENIX Security Symposium , pages 145 -- 160 . USENIX Association , 2005 . N. Sovarel, D. Evans, and N. Paul. Where's the FEEB?: The Effectiveness of Instruction Set Randomization. In Proceedings of the 14th USENIX Security Symposium, pages 145--160. USENIX Association, 2005."},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSECP.2003.1193207"},{"key":"e_1_3_2_1_44_1","volume-title":"A \"stack smashing\" Technique Protection Tool for Linux","year":"2000","unstructured":"Vendicator. StackShield : A \"stack smashing\" Technique Protection Tool for Linux , 2000 . http:\/\/www.angelfire.com\/sk\/stackshield\/. Vendicator. StackShield: A \"stack smashing\" Technique Protection Tool for Linux, 2000. http:\/\/www.angelfire.com\/sk\/stackshield\/."},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.5555\/647184.719677"},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382216"},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2009.18"},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2009.25"}],"event":{"name":"NSPW '13: New Security Paradigms Workshop","location":"Banff Alberta Canada","acronym":"NSPW '13","sponsor":["ACSA Applied Computing Security Assoc"]},"container-title":["Proceedings of the 2013 New Security Paradigms Workshop"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2535813.2535824","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2535813.2535824","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T08:39:24Z","timestamp":1750235964000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2535813.2535824"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2013,9,9]]},"references-count":48,"alternative-id":["10.1145\/2535813.2535824","10.1145\/2535813"],"URL":"https:\/\/doi.org\/10.1145\/2535813.2535824","relation":{},"subject":[],"published":{"date-parts":[[2013,9,9]]},"assertion":[{"value":"2013-09-09","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}