{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,25]],"date-time":"2026-02-25T17:11:47Z","timestamp":1772039507503,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":45,"publisher":"ACM","license":[{"start":{"date-parts":[[2015,12,7]],"date-time":"2015-12-07T00:00:00Z","timestamp":1449446400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2015,12,7]]},"DOI":"10.1145\/2818000.2818031","type":"proceedings-article","created":{"date-parts":[[2015,12,11]],"date-time":"2015-12-11T17:06:08Z","timestamp":1449853568000},"page":"351-360","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":18,"title":["DynaGuard"],"prefix":"10.1145","author":[{"given":"Theofilos","family":"Petsios","sequence":"first","affiliation":[{"name":"Columbia University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Vasileios P.","family":"Kemerlis","sequence":"additional","affiliation":[{"name":"Brown University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Michalis","family":"Polychronakis","sequence":"additional","affiliation":[{"name":"Stony Brook University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Angelos D.","family":"Keromytis","sequence":"additional","affiliation":[{"name":"Columbia University"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2015,12,7]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102165"},{"key":"e_1_3_2_1_2_1","volume-title":"LibreSSL's PRNG is Unsafe on Linux. https:\/\/www.agwa.name\/blog\/post\/libressls_prng_is_unsafe_on_linux","author":"Ayer A.","year":"2014","unstructured":"A. Ayer . LibreSSL's PRNG is Unsafe on Linux. https:\/\/www.agwa.name\/blog\/post\/libressls_prng_is_unsafe_on_linux , 2014 . A. Ayer. LibreSSL's PRNG is Unsafe on Linux. https:\/\/www.agwa.name\/blog\/post\/libressls_prng_is_unsafe_on_linux, 2014."},{"key":"e_1_3_2_1_3_1","first-page":"271","volume-title":"Proc. of USENIX Sec","author":"Bhatkar S.","year":"2005","unstructured":"S. Bhatkar , D. C. DuVarney , and S. R. Efficient Techniques for Comprehensive Protection from Memory Error Exploits . In Proc. of USENIX Sec , pages 271 -- 286 , 2005 . S. Bhatkar, D. C. DuVarney, and S. R. Efficient Techniques for Comprehensive Protection from Memory Error Exploits. In Proc. of USENIX Sec, pages 271--286, 2005."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.22"},{"key":"e_1_3_2_1_5_1","volume-title":"https:\/\/goo.gl\/sZuopi","author":"Bo\u00dflet M.","year":"2013","unstructured":"M. Bo\u00dflet . Open SSL PRNG Is Not (Really) Fork-safe. https:\/\/goo.gl\/sZuopi , 2013 . M. Bo\u00dflet. OpenSSL PRNG Is Not (Really) Fork-safe. https:\/\/goo.gl\/sZuopi, 2013."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2015.23248"},{"key":"e_1_3_2_1_7_1","first-page":"409","volume-title":"Proc. of ICDCS","author":"Chiueh T.-c.","year":"2001","unstructured":"T.-c. Chiueh and F.-H. Hsu . RAD : A Compile-Time Solution to Buffer Overflow Attacks . In Proc. of ICDCS , pages 409 -- 417 , 2001 . T.-c. Chiueh and F.-H. Hsu. RAD: A Compile-Time Solution to Buffer Overflow Attacks. In Proc. of ICDCS, pages 409--417, 2001."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/1055626.1055636"},{"key":"e_1_3_2_1_9_1","first-page":"91","volume-title":"Proc. of USENIX Sec","author":"Cowan C.","year":"2003","unstructured":"C. Cowan , S. Beattie , J. Johansen , and P. Wagle . PointGuard: Protecting Pointers From Buffer Overflow Vulnerabilities . In Proc. of USENIX Sec , pages 91 -- 104 , 2003 . C. Cowan, S. Beattie, J. Johansen, and P. Wagle. PointGuard: Protecting Pointers From Buffer Overflow Vulnerabilities. In Proc. of USENIX Sec, pages 91--104, 2003."},{"key":"e_1_3_2_1_10_1","first-page":"63","volume-title":"Proc. of USENIX Sec","author":"Cowan C.","year":"1997","unstructured":"C. Cowan , C. Pu , D. Maier , H. Hintony , J. Walpole , P. Bakke , S. Beattie , A. Grier , P. Wagle , and Q. Zhang . StackGuard: Automatic Adaptive Detection and Prevention of Buffer-Overflow Attacks . In Proc. of USENIX Sec , pages 63 -- 78 , 1997 . C. Cowan, C. Pu, D. Maier, H. Hintony, J. Walpole, P. Bakke, S. Beattie, A. Grier, P. Wagle, and Q. Zhang. StackGuard: Automatic Adaptive Detection and Prevention of Buffer-Overflow Attacks. In Proc. of USENIX Sec, pages 63--78, 1997."},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/2714576.2714635"},{"key":"e_1_3_2_1_12_1","unstructured":"T. de Raadt. Advances in OpenBSD. http:\/\/www.openbsd.org\/papers\/csw03\/index.html 2003.  T. de Raadt. Advances in OpenBSD. http:\/\/www.openbsd.org\/papers\/csw03\/index.html 2003."},{"key":"e_1_3_2_1_13_1","unstructured":"H. Etoh. GCC extension for protecting applications from stack-smashing attacks. http:\/\/goo.gl\/Tioc4C 2005.  H. Etoh. GCC extension for protecting applications from stack-smashing attacks. http:\/\/goo.gl\/Tioc4C 2005."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.53"},{"key":"e_1_3_2_1_15_1","first-page":"475","volume-title":"Proc. of USENIX Sec","author":"Giuffrida C.","year":"2012","unstructured":"C. Giuffrida , A. Kuijsten , and A. S. Tanenbaum . Enhanced Operating System Security Through Efficient and Fine-grained Address Space Randomization . In Proc. of USENIX Sec , pages 475 -- 490 , 2012 . C. Giuffrida, A. Kuijsten, and A. S. Tanenbaum. Enhanced Operating System Security Through Efficient and Fine-grained Address Space Randomization. In Proc. of USENIX Sec, pages 475--490, 2012."},{"key":"e_1_3_2_1_16_1","volume-title":"http:\/\/inertiawar.com\/openbsd\/","author":"Hawkes B.","year":"2006","unstructured":"B. Hawkes . Exploiting OpenBSD. http:\/\/inertiawar.com\/openbsd\/ , 2006 . B. Hawkes. Exploiting OpenBSD. http:\/\/inertiawar.com\/openbsd\/, 2006."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/1186736.1186737"},{"key":"e_1_3_2_1_18_1","volume-title":"Windows ISV Software Security Defenses. https:\/\/msdn.microsoft.com\/en-us\/library\/bb430720.aspx","author":"Howard M.","year":"2010","unstructured":"M. Howard , M. Miller , J. Lambert , and M. Thomlinson . Windows ISV Software Security Defenses. https:\/\/msdn.microsoft.com\/en-us\/library\/bb430720.aspx , 2010 . M. Howard, M. Miller, J. Lambert, and M. Thomlinson. Windows ISV Software Security Defenses. https:\/\/msdn.microsoft.com\/en-us\/library\/bb430720.aspx, 2010."},{"key":"e_1_3_2_1_19_1","unstructured":"Intel. Pin: Instrumentation API. http:\/\/www.cs.virginia.edu\/kim\/publicity\/pin\/docs\/31933\/Pin\/html\/group__INS__INST__API.html 2009.  Intel. Pin: Instrumentation API. http:\/\/www.cs.virginia.edu\/kim\/publicity\/pin\/docs\/31933\/Pin\/html\/group__INS__INST__API.html 2009."},{"key":"e_1_3_2_1_20_1","volume-title":"x86 NX support. https:\/\/lwn.net\/Articles\/87814\/","author":"Corbet Jonathan","year":"2003","unstructured":"Jonathan Corbet . x86 NX support. https:\/\/lwn.net\/Articles\/87814\/ , 2003 . Jonathan Corbet. x86 NX support. https:\/\/lwn.net\/Articles\/87814\/, 2003."},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/2151024.2151042"},{"key":"e_1_3_2_1_22_1","first-page":"147","volume-title":"Code-Pointer Integrity. In Proc. of OSDI","author":"Kuznetsov V.","year":"2014","unstructured":"V. Kuznetsov , L. Szekeres , M. Payer , G. Candea , R. Sekar , and D. Song . Code-Pointer Integrity. In Proc. of OSDI , pages 147 -- 163 , 2014 . V. Kuznetsov, L. Szekeres, M. Payer, G. Candea, R. Sekar, and D. Song. Code-Pointer Integrity. In Proc. of OSDI, pages 147--163, 2014."},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.34"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/1065010.1065034"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1109\/NCA.2013.12"},{"key":"e_1_3_2_1_26_1","volume-title":"DeepSeC","author":"Marco-Gisbert H.","year":"2014","unstructured":"H. Marco-Gisbert and I. Ripoll . On the Effectiveness of Full-ASLR on 64-bit Linux . In DeepSeC , 2014 . H. Marco-Gisbert and I. Ripoll. On the Effectiveness of Full-ASLR on 64-bit Linux. In DeepSeC, 2014."},{"key":"e_1_3_2_1_27_1","unstructured":"Metasploit. Nginx HTTP Server 1.3.9-1.4.0 - Chuncked Encoding Stack Buffer Overflow. http:\/\/www.exploit-db.com\/exploits\/25775\/ 2013.  Metasploit. Nginx HTTP Server 1.3.9-1.4.0 - Chuncked Encoding Stack Buffer Overflow. http:\/\/www.exploit-db.com\/exploits\/25775\/ 2013."},{"key":"e_1_3_2_1_28_1","volume-title":"https:\/\/msdn.microsoft.com\/en-us\/library\/8dbf701c.aspx","author":"Buffer Security GS","year":"2002","unstructured":"Microsoft. \/ GS ( Buffer Security Check). https:\/\/msdn.microsoft.com\/en-us\/library\/8dbf701c.aspx , 2002 . Microsoft. \/GS (Buffer Security Check). https:\/\/msdn.microsoft.com\/en-us\/library\/8dbf701c.aspx, 2002."},{"key":"e_1_3_2_1_29_1","volume-title":"https:\/\/msdn.microsoft.com\/en-us\/library\/9a89h429.aspx","author":"Safe Exception SAFESEH","year":"2003","unstructured":"Microsoft. \/ SAFESEH (Image has Safe Exception Handlers). https:\/\/msdn.microsoft.com\/en-us\/library\/9a89h429.aspx , 2003 . Microsoft. \/SAFESEH (Image has Safe Exception Handlers). https:\/\/msdn.microsoft.com\/en-us\/library\/9a89h429.aspx, 2003."},{"key":"e_1_3_2_1_30_1","unstructured":"Microsoft. A detailed description of the Data Execution Prevention (DEP) feature. http:\/\/support.microsoft.com\/kb\/875352 2013.  Microsoft. A detailed description of the Data Execution Prevention (DEP) feature. http:\/\/support.microsoft.com\/kb\/875352 2013."},{"key":"e_1_3_2_1_31_1","volume-title":"i386 W^X. https:\/\/marc.info\/?l=openbsd-misc&m=105056000801065","author":"BSD.","year":"2003","unstructured":"Open BSD. i386 W^X. https:\/\/marc.info\/?l=openbsd-misc&m=105056000801065 , 2003 . OpenBSD. i386 W^X. https:\/\/marc.info\/?l=openbsd-misc&m=105056000801065, 2003."},{"key":"e_1_3_2_1_32_1","volume-title":"Random fork-safety. https:\/\/wiki.openssl.org\/index.php\/Random_fork-safety","author":"SSL.","year":"2014","unstructured":"Open SSL. Random fork-safety. https:\/\/wiki.openssl.org\/index.php\/Random_fork-safety , 2014 . OpenSSL. Random fork-safety. https:\/\/wiki.openssl.org\/index.php\/Random_fork-safety, 2014."},{"key":"e_1_3_2_1_33_1","volume-title":"MySQL Benchmark Tool. https:\/\/dev.mysql.com\/downloads\/benchmarks.html","year":"2015","unstructured":"Oracle. MySQL Benchmark Tool. https:\/\/dev.mysql.com\/downloads\/benchmarks.html , 2015 . Oracle. MySQL Benchmark Tool. https:\/\/dev.mysql.com\/downloads\/benchmarks.html, 2015."},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1145\/977091.977139"},{"key":"e_1_3_2_1_35_1","volume-title":"Address Space Layout Randomization. https:\/\/pax.grsecurity.net\/docs\/aslr.txt","author":"Team X","year":"2003","unstructured":"Pa X Team . Address Space Layout Randomization. https:\/\/pax.grsecurity.net\/docs\/aslr.txt , 2003 . PaX Team. Address Space Layout Randomization. https:\/\/pax.grsecurity.net\/docs\/aslr.txt, 2003."},{"key":"e_1_3_2_1_36_1","volume-title":"Non-executable","author":"Team X","year":"2003","unstructured":"Pa X Team . Non-executable pages design & implementation. https:\/\/pax.grsecurity.net\/docs\/noexec.txt, 2003 . PaX Team. Non-executable pages design & implementation. https:\/\/pax.grsecurity.net\/docs\/noexec.txt, 2003."},{"key":"e_1_3_2_1_37_1","volume-title":"new gcc plugin: latent entropy extraction. https:\/\/grsecurity.net\/pipermail\/grsecurity\/2012-July\/001093.html","author":"Team X","year":"2012","unstructured":"Pa X Team . new gcc plugin: latent entropy extraction. https:\/\/grsecurity.net\/pipermail\/grsecurity\/2012-July\/001093.html , 2012 . PaX Team. new gcc plugin: latent entropy extraction. https:\/\/grsecurity.net\/pipermail\/grsecurity\/2012-July\/001093.html, 2012."},{"key":"e_1_3_2_1_38_1","unstructured":"A. 'pi3' Zabrocki. Scraps of notes on remote stack overflow exploitation. http:\/\/phrack.org\/issues\/67\/13.html 2010.  A. 'pi3' Zabrocki. Scraps of notes on remote stack overflow exploitation. http:\/\/phrack.org\/issues\/67\/13.html 2010."},{"key":"e_1_3_2_1_39_1","unstructured":"PTS. Phoronix Test Suite June 2015. http:\/\/www.phoronix-test-suite.com.  PTS. Phoronix Test Suite June 2015. http:\/\/www.phoronix-test-suite.com."},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315313"},{"key":"e_1_3_2_1_41_1","volume-title":"fai Wong. Transparent Runtime Shadow Stack: Protection against malicious return address modifications","author":"Sinnadurai S.","year":"2008","unstructured":"S. Sinnadurai , Q. Zhao , and W. fai Wong. Transparent Runtime Shadow Stack: Protection against malicious return address modifications , 2008 . http:\/\/citeseerx.ist.psu.edu\/viewdoc\/summary?doi=10.1.1.120.5702. S. Sinnadurai, Q. Zhao, and W. fai Wong. Transparent Runtime Shadow Stack: Protection against malicious return address modifications, 2008. http:\/\/citeseerx.ist.psu.edu\/viewdoc\/summary?doi=10.1.1.120.5702."},{"key":"e_1_3_2_1_42_1","unstructured":"skape. Preventing the Exploitation of SEH Overwrites. http:\/\/www.uninformed.org\/?v=5&a=2&t=txt 2006.  skape. Preventing the Exploitation of SEH Overwrites. http:\/\/www.uninformed.org\/?v=5&a=2&t=txt 2006."},{"key":"e_1_3_2_1_43_1","volume-title":"GNU Compiler Collection Internals. https:\/\/gcc.gnu.org\/onlinedocs\/gccint\/","author":"Stallman R. M.","year":"2015","unstructured":"R. M. Stallman and the GCC Developer Community . GNU Compiler Collection Internals. https:\/\/gcc.gnu.org\/onlinedocs\/gccint\/ , 2015 . R. M. Stallman and the GCC Developer Community. GNU Compiler Collection Internals. https:\/\/gcc.gnu.org\/onlinedocs\/gccint\/, 2015."},{"key":"e_1_3_2_1_44_1","first-page":"156","volume-title":"Proc. of ICISS","author":"Acker S. Van","year":"2010","unstructured":"S. Van Acker , N. Nikiforakis , P. Philippaerts , Y. Younan , and F. Piessens . ValueGuard: Protection of native applications against data-only buffer overflows . In Proc. of ICISS , pages 156 -- 170 . 2010 . S. Van Acker, N. Nikiforakis, P. Philippaerts, Y. Younan, and F. Piessens. ValueGuard: Protection of native applications against data-only buffer overflows. In Proc. of ICISS, pages 156--170. 2010."},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-33338-5_5"}],"event":{"name":"ACSAC 2015: 2015 Annual Computer Security Applications Conference","location":"Los Angeles CA USA","acronym":"ACSAC 2015","sponsor":["ACSA Applied Computing Security Assoc"]},"container-title":["Proceedings of the 31st Annual Computer Security Applications Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2818000.2818031","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2818000.2818031","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T05:43:26Z","timestamp":1750225406000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2818000.2818031"}},"subtitle":["Armoring Canary-based Protections against Brute-force Attacks"],"short-title":[],"issued":{"date-parts":[[2015,12,7]]},"references-count":45,"alternative-id":["10.1145\/2818000.2818031","10.1145\/2818000"],"URL":"https:\/\/doi.org\/10.1145\/2818000.2818031","relation":{},"subject":[],"published":{"date-parts":[[2015,12,7]]},"assertion":[{"value":"2015-12-07","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}