{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,25]],"date-time":"2026-02-25T17:47:35Z","timestamp":1772041655077,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":76,"publisher":"ACM","license":[{"start":{"date-parts":[[2018,12,3]],"date-time":"2018-12-03T00:00:00Z","timestamp":1543795200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["CNS1749895"],"award-info":[{"award-number":["CNS1749895"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/100007297","name":"Office of Naval Research","doi-asserted-by":"publisher","award":["N00014-17-1-2891"],"award-info":[{"award-number":["N00014-17-1-2891"]}],"id":[{"id":"10.13039\/100007297","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/100006502","name":"Defense Sciences Office, DARPA","doi-asserted-by":"publisher","award":["D18AP00045"],"award-info":[{"award-number":["D18AP00045"]}],"id":[{"id":"10.13039\/100006502","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2018,12,3]]},"DOI":"10.1145\/3274694.3274703","type":"proceedings-article","created":{"date-parts":[[2018,12,4]],"date-time":"2018-12-04T13:07:01Z","timestamp":1543928821000},"page":"1-16","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":29,"title":["Shredder"],"prefix":"10.1145","author":[{"given":"Shachee","family":"Mishra","sequence":"first","affiliation":[{"name":"Stony Brook University"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Michalis","family":"Polychronakis","sequence":"additional","affiliation":[{"name":"Stony Brook University"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2018,12,3]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"McSema: Framework for lifting x86 amd64 and aarch64 program binaries to LLVM bitcode. (2017). https:\/\/github.com\/trailofbits\/mcsema.  McSema: Framework for lifting x86 amd64 and aarch64 program binaries to LLVM bitcode. (2017). https:\/\/github.com\/trailofbits\/mcsema."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102165"},{"key":"e_1_3_2_1_3_1","unstructured":"Alex Abramov. Manually Enumerating Process Modules. (2015). http:\/\/www.codereversing.com\/blog\/archives\/265.  Alex Abramov. Manually Enumerating Process Modules. (2015). http:\/\/www.codereversing.com\/blog\/archives\/265."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSAC.2005.5"},{"key":"e_1_3_2_1_5_1","volume-title":"Proceedings of the 25rd USENIX Security Symposium. 583--600","author":"Andriesse Dennis"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/2660267.2660378"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.5555\/1267724.1267745"},{"key":"e_1_3_2_1_8_1","volume-title":"Proceedings of the 9th European Symposium on Research in Computer Security (ESORICS). 352--368","author":"Battistoni Roberto"},{"key":"e_1_3_2_1_9_1","unstructured":"James Bennett Yichong Lin and Thoufique Haq. The Number of the Beast. (2013). http:\/\/blog.fireeye.com\/research\/2013\/02\/the-number-of-the-beast.html.  James Bennett Yichong Lin and Thoufique Haq. The Number of the Beast. (2013). http:\/\/blog.fireeye.com\/research\/2013\/02\/the-number-of-the-beast.html."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/504909.504911"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2006.12"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.23"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2016.23364"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/3054924"},{"key":"e_1_3_2_1_15_1","volume-title":"Proceedings of the 24th USENIX Security Symposium. 161--176","author":"Carlini Nicholas"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-10772-6_13"},{"key":"e_1_3_2_1_17_1","volume-title":"Proceedings of the 14th USENIX Security Symposium.","author":"Chen Shuo"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.30"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"crossref","unstructured":"Yueqiang Cheng Zongwei Zhou Miao Yu Xuhua Ding and Robert H. Deng. 2014. ROPecker: A Generic and Practical Approach For Defending Against ROP Attacks. (2014).  Yueqiang Cheng Zongwei Zhou Miao Yu Xuhua Ding and Robert H. Deng. 2014. ROPecker: A Generic and Practical Approach For Defending Against ROP Attacks. (2014).","DOI":"10.14722\/ndss.2014.23156"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.52"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2015.23262"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/1655108.1655117"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/1966913.1966920"},{"key":"e_1_3_2_1_24_1","unstructured":"Solar Designer. Getting around non-executable stack (and fix). (1997). http:\/\/seclists.org\/bugtraq\/1997\/Aug\/63.  Solar Designer. Getting around non-executable stack (and fix). (1997). http:\/\/seclists.org\/bugtraq\/1997\/Aug\/63."},{"key":"e_1_3_2_1_25_1","unstructured":"Thomas Dullien. 2018. Security Moore's law and the anomaly of cheap complexity. CyCon.  Thomas Dullien. 2018. Security Moore's law and the anomaly of cheap complexity. CyCon."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813646"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.5555\/829515.830554"},{"key":"e_1_3_2_1_28_1","volume-title":"Proceedings of the IEEE Symposium on Security & Privacy.","author":"Forrest Stephanie"},{"key":"e_1_3_2_1_29_1","unstructured":"Ivan Fratric. 2012. ROPGuard: Runtime Prevention of Return-Oriented Programming Attacks. (2012). http:\/\/www.ieee.hr\/_download\/repository\/Ivan_Fratric.pdf\/  Ivan Fratric. 2012. ROPGuard: Runtime Prevention of Return-Oriented Programming Attacks. (2012). http:\/\/www.ieee.hr\/_download\/repository\/Ivan_Fratric.pdf\/"},{"key":"e_1_3_2_1_30_1","volume-title":"Detours: Binary Interception of Win32 Functions. https:\/\/www.cs.columbia.edu\/~junfeng\/10fa-e6998\/papers\/detours.pdf.","author":"Hunt Galen","year":"1999"},{"key":"e_1_3_2_1_31_1","volume-title":"Proceedings of the Network and Distributed System Security Symposium (NDSS).","author":"Garfinkel Tal","year":"2003"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/2699026.2699107"},{"key":"e_1_3_2_1_33_1","volume-title":"Proceedings of the 6th USENIX Security Symposium.","author":"Goldberg Ian"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2014.52"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.39"},{"key":"e_1_3_2_1_36_1","unstructured":"Sebastian Krahmer. x86-64 buffer overflow exploits and the borrowed code chunks exploitation technique. (2005). http:\/\/www.suse.de\/~krahmer\/no-nx.pdf.  Sebastian Krahmer. x86-64 buffer overflow exploits and the borrowed code chunks exploitation technique. (2005). http:\/\/www.suse.de\/~krahmer\/no-nx.pdf."},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-39650-5_19"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-08509-8_12"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1145\/1972551.1972557"},{"key":"e_1_3_2_1_40_1","volume-title":"Proceedings of the Network and Distributed System Security Symposium (NDSS).","author":"Kurmus Anil","year":"2013"},{"key":"e_1_3_2_1_41_1","volume-title":"Code-pointer Integrity. In Proceedings of the 11th USENIX Conference on Operating Systems Design and Implementation (OSDI). 147--163","author":"Kuznetsov Volodymyr","year":"2014"},{"key":"e_1_3_2_1_42_1","unstructured":"MWR Labs. MWR Labs Pwn2Own 2013 Write-up - Webkit Exploit. (2013). https:\/\/labs.mwrinfosecurity.com\/blog\/mwr-labs-pwn2own-2013-write-up-webkit-exploit\/.  MWR Labs. MWR Labs Pwn2Own 2013 Write-up - Webkit Exploit. (2013). https:\/\/labs.mwrinfosecurity.com\/blog\/mwr-labs-pwn2own-2013-write-up-webkit-exploit\/."},{"key":"e_1_3_2_1_43_1","unstructured":"Aaron Lamb. The Chakra Exploit And The Limitations Of Modern Cyber Security Threat Mitigation Techniques. https:\/\/www.endgame.com\/blog\/technical-blog\/chakra-exploit-and-limitations-modern-mitigation-techniques. (2017).  Aaron Lamb. The Chakra Exploit And The Limitations Of Modern Cyber Security Threat Mitigation Techniques. https:\/\/www.endgame.com\/blog\/technical-blog\/chakra-exploit-and-limitations-modern-mitigation-techniques. (2017)."},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.25"},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.1145\/1755913.1755934"},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACSAC.2008.17"},{"key":"e_1_3_2_1_47_1","unstructured":"M. Russinovich D. A. Solomon and A. Ionescu. 2012. Windows Internals. (2012).  M. Russinovich D. A. Solomon and A. Ionescu. 2012. Windows Internals. (2012)."},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1145\/2695664.2695751"},{"key":"e_1_3_2_1_49_1","unstructured":"Microsoft. Enhanced Mitigation Experience Toolkit. ({n. d.}). http:\/\/www.microsoft.com\/emet.  Microsoft. Enhanced Mitigation Experience Toolkit. ({n. d.}). http:\/\/www.microsoft.com\/emet."},{"key":"e_1_3_2_1_50_1","unstructured":"Collin Mulliner and Matthias Neugschwandtner. 2015. Breaking Payloads with Runtime Code Stripping and Image Freezing. Black Hat USA.  Collin Mulliner and Matthias Neugschwandtner. 2015. Breaking Payloads with Runtime Code Stripping and Image Freezing. Black Hat USA."},{"key":"e_1_3_2_1_51_1","first-page":"58","article-title":"The advanced return-into-lib(c) exploits: PaX case study","volume":"11","year":"2001","journal-title":"Phrack"},{"key":"e_1_3_2_1_52_1","unstructured":"Tim Newsham. Non-exec stack. (2000). http:\/\/seclists.org\/bugtraq\/2000\/May\/90.  Tim Newsham. Non-exec stack. (2000). http:\/\/seclists.org\/bugtraq\/2000\/May\/90."},{"key":"e_1_3_2_1_53_1","doi-asserted-by":"publisher","DOI":"10.1145\/1920261.1920269"},{"key":"e_1_3_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.41"},{"key":"e_1_3_2_1_55_1","volume-title":"Proceedings of the 22nd USENIX Security Symposium. 447--462","author":"Pappas Vasilis"},{"key":"e_1_3_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1145\/1952682.1952703"},{"key":"e_1_3_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1145\/3064176.3064216"},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.5555\/3277203.3277269"},{"key":"e_1_3_2_1_59_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2017.23477"},{"key":"e_1_3_2_1_60_1","unstructured":"Mark Russinovich. Inside Native Applications. (Nov. 2006). http:\/\/technet.microsoft.com\/en-us\/sysinternals\/bb897447.aspx.  Mark Russinovich. Inside Native Applications. (Nov. 2006). http:\/\/technet.microsoft.com\/en-us\/sysinternals\/bb897447.aspx."},{"key":"e_1_3_2_1_61_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.51"},{"key":"e_1_3_2_1_62_1","volume-title":"Proceedings of the IEEE Symposium on Security & Privacy. 144--155","author":"Sekar R."},{"key":"e_1_3_2_1_63_1","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315313"},{"key":"e_1_3_2_1_64_1","unstructured":"Skape. Understanding Windows Shellcode. (2003). http:\/\/www.hick.org\/code\/skape\/papers\/win32-shellcode.pdf.  Skape. Understanding Windows Shellcode. (2003). http:\/\/www.hick.org\/code\/skape\/papers\/win32-shellcode.pdf."},{"key":"e_1_3_2_1_65_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2013.45"},{"key":"e_1_3_2_1_66_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.61"},{"key":"e_1_3_2_1_67_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813685"},{"key":"e_1_3_2_1_68_1","volume-title":"Proceedings of the 8th USENIX Conference on Hot Topics in System Dependability (HotDep).","author":"Tartler Reinhard","year":"2012"},{"key":"e_1_3_2_1_69_1","unstructured":"PaX Team. Address Space Layout Randomization. (2003). http:\/\/pax.grsecurity.net\/docs\/aslr.txt.  PaX Team. Address Space Layout Randomization. (2003). http:\/\/pax.grsecurity.net\/docs\/aslr.txt."},{"key":"e_1_3_2_1_70_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134026"},{"key":"e_1_3_2_1_71_1","volume-title":"Proceedings of the IEEE Symposium on Security & Privacy. 156--168","author":"Wagner D."},{"key":"e_1_3_2_1_72_1","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382216"},{"key":"e_1_3_2_1_73_1","doi-asserted-by":"publisher","DOI":"10.1145\/2897845.2897891"},{"key":"e_1_3_2_1_74_1","doi-asserted-by":"publisher","DOI":"10.5555\/645838.670723"},{"key":"e_1_3_2_1_75_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2013.44"},{"key":"e_1_3_2_1_76_1","volume-title":"22nd USENIX Security Symposium.","author":"Zhang Mingwei","year":"2013"}],"event":{"name":"ACSAC '18: 2018 Annual Computer Security Applications Conference","location":"San Juan PR USA","acronym":"ACSAC '18","sponsor":["ACSA Applied Computing Security Assoc"]},"container-title":["Proceedings of the 34th Annual Computer Security Applications Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3274694.3274703","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3274694.3274703","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3274694.3274703","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T00:57:56Z","timestamp":1750208276000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3274694.3274703"}},"subtitle":["Breaking Exploits through API Specialization"],"short-title":[],"issued":{"date-parts":[[2018,12,3]]},"references-count":76,"alternative-id":["10.1145\/3274694.3274703","10.1145\/3274694"],"URL":"https:\/\/doi.org\/10.1145\/3274694.3274703","relation":{},"subject":[],"published":{"date-parts":[[2018,12,3]]},"assertion":[{"value":"2018-12-03","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}