{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,25]],"date-time":"2026-02-25T17:11:00Z","timestamp":1772039460382,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":58,"publisher":"ACM","license":[{"start":{"date-parts":[[2020,6,27]],"date-time":"2020-06-27T00:00:00Z","timestamp":1593216000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2020,6,27]]},"DOI":"10.1145\/3377811.3380439","type":"proceedings-article","created":{"date-parts":[[2020,10,1]],"date-time":"2020-10-01T18:25:34Z","timestamp":1601576734000},"page":"258-270","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":6,"title":["Burn after reading"],"prefix":"10.1145","author":[{"given":"Changwei","family":"Zou","sequence":"first","affiliation":[{"name":"UNSW Sydney, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jingling","family":"Xue","sequence":"additional","affiliation":[{"name":"UNSW Sydney, Australia"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2020,10]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102165"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23300"},{"key":"e_1_3_2_1_3_1","volume-title":"Proceedings of the 14th Conference on USENIX Security Symposium. USENIX Association","author":"Bhatkar Sandeep","unstructured":"Sandeep Bhatkar, R. Sekar, and Daniel C. DuVarney. 2005. Efficient Techniques for Comprehensive Protection from Memory Error Exploits. In Proceedings of the 14th Conference on USENIX Security Symposium. USENIX Association, Berkeley, CA, USA, 255--270."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813691"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/1966913.1966919"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00076"},{"key":"e_1_3_2_1_7_1","volume-title":"Proceedings of the 24th USENIX Conference on Security Symposium. USENIX Association","author":"Carlini Nicolas","unstructured":"Nicolas Carlini, Antonio Barresi, Mathias Payer, David Wagner, and Thomas R. Gross. 2015. Control-flow Bending: On the Effectiveness of Control-flow Integrity. In Proceedings of the 24th USENIX Conference on Security Symposium. USENIX Association, Berkeley, CA, USA, 161--176."},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/1866307.1866370"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1145\/1255329.1255344"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/1321631.1321673"},{"key":"e_1_3_2_1_11_1","volume-title":"Proceedings of the 7th Conference on USENIX Security Symposium. USENIX Association","author":"Cowan Crispin","year":"1998","unstructured":"Crispin Cowan, Calton Pu, Dave Maier, Heather Hintony, Jonathan Walpole, Peat Bakke, Steve Beattie, Aaron Grier, Perry Wagle, and Qian Zhang. 1998. StackGuard: Automatic Adaptive Detection and Prevention of Buffer-overflow Attacks. In Proceedings of the 7th Conference on USENIX Security Symposium. USENIX Association, Berkeley, CA, USA, 1--16."},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2015.52"},{"key":"e_1_3_2_1_13_1","volume-title":"Accessed","author":"CVE.","year":"2020","unstructured":"CVE. [n. d.]. Common Vulnerabilities and Exposures. https:\/\/cve.mitre.org\/. Accessed Jan 24, 2020."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/1250662.1250722"},{"key":"e_1_3_2_1_15_1","volume-title":"Proceedings of the 23rd USENIX Conference on Security Symposium. USENIX Association","author":"Davi Lucas","year":"2014","unstructured":"Lucas Davi, Ahmad-Reza Sadeghi, Daniel Lehmann, and Fabian Monrose. 2014. Stitching the Gadgets: On the Ineffectiveness of Coarse-grained Control-flow Integrity Protection. In Proceedings of the 23rd USENIX Conference on Security Symposium. USENIX Association, Berkeley, CA, USA, 401--416."},{"key":"e_1_3_2_1_16_1","volume-title":"Proceedings of the 2015 IEEE Symposium on Security and Privacy. IEEE","author":"Evans I.","unstructured":"I. Evans, S. Fingeret, J. Gonzalez, U. Otgonbaatar, T. Tang, H. Shrobe, S. Sidiroglou-Douskos, M. Rinard, and H. Okhravi. 2015. Missing the Point(er): On the Effectiveness of Code Pointer Integrity. In Proceedings of the 2015 IEEE Symposium on Security and Privacy. IEEE, San Jose, CA, USA, 781--796."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/3092703.3092729"},{"key":"e_1_3_2_1_18_1","volume-title":"Proceedings of the 21st USENIX Conference on Security Symposium. USENIX Association","author":"Giuffrida Cristiano","unstructured":"Cristiano Giuffrida, Anton Kuijsten, and Andrew S. Tanenbaum. 2012. Enhanced Operating System Security Through Efficient and Fine-grained Address Space Randomization. In Proceedings of the 21st USENIX Conference on Security Symposium. USENIX Association, Berkeley, CA, USA, 40--55."},{"key":"e_1_3_2_1_19_1","unstructured":"Enes Goktas Angelos Oikonomopoulos Robert Gawlik Benjamin Kollenda Elias Athanasopoulos Georgios Portokalidis Cristiano Giuffrida and Herbert Bos. 2016. Bypassing Clang's SafeStack for Fun and Profit. In Black Hat Europe."},{"key":"e_1_3_2_1_20_1","volume-title":"USENIX Security Symposium","volume":"10","author":"Guarnieri Salvatore","year":"2009","unstructured":"Salvatore Guarnieri and V Benjamin Livshits. 2009. GATEKEEPER: Mostly Static Enforcement of Security and Reliability Policies for JavaScript Code.. In USENIX Security Symposium, Vol. 10. 78--85."},{"key":"e_1_3_2_1_21_1","volume-title":"Proceedings of the 2012 IEEE Symposium on Security and Privacy. IEEE","author":"Hiser J.","unstructured":"J. Hiser, A. Nguyen-Tuong, M. Co, M. Hall, and J. W. Davidson. 2012. ILR: Where'd My Gadgets Go?. In Proceedings of the 2012 IEEE Symposium on Security and Privacy. IEEE, San Jose, CA, USA, 571--585."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243797"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978321"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134062"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/948109.948146"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACSAC.2006.9"},{"key":"e_1_3_2_1_27_1","volume-title":"Code-pointer Integrity. In Proceedings of the 11th USENIX Conference on Operating Systems Design and Implementation. USENIX Association","author":"Kuznetsov Volodymyr","year":"2014","unstructured":"Volodymyr Kuznetsov, L\u00e1szl\u00f3 Szekeres, Mathias Payer, George Candea, R. Sekar, and Dawn Song. 2014. Code-pointer Integrity. In Proceedings of the 11th USENIX Conference on Operating Systems Design and Implementation. USENIX Association, Berkeley, CA, USA, 147--163."},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2016.23173"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813694"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1145\/1065010.1065034"},{"key":"e_1_3_2_1_31_1","volume-title":"Accessed","year":"2020","unstructured":"Microsoft. [n. d.]. Data Execution Prevention. https:\/\/docs.microsoft.com\/en-us\/windows\/win32\/memory\/data-execution-prevention. Accessed Jan 24, 2020."},{"key":"e_1_3_2_1_32_1","volume-title":"Probabilistic Disassembly. In Proceedings of the 41st International Conference on Software Engineering. IEEE Press","author":"Miller Kenneth","year":"2019","unstructured":"Kenneth Miller, Yonghwi Kwon, Yi Sun, Zhuo Zhang, Xiangyu Zhang, and Zhiqiang Lin. 2019. Probabilistic Disassembly. In Proceedings of the 41st International Conference on Software Engineering. IEEE Press, Piscataway, NJ, USA, 1187--1198."},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1145\/1542476.1542504"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1145\/1806651.1806657"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1145\/1250734.1250746"},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1145\/2660267.2660281"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813644"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.5555\/3241094.3241105"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1145\/1920261.1920269"},{"key":"e_1_3_2_1_40_1","volume-title":"Accessed","author":"One Aleph","year":"2020","unstructured":"Aleph One. [n. d.]. Smashing The Stack For Fun And Profit. http:\/\/phrack.org\/issues\/49\/14.html. Accessed Jan 24, 2020."},{"key":"e_1_3_2_1_41_1","volume-title":"Accessed","author":"Ravitch Tristan","year":"2020","unstructured":"Tristan Ravitch. [n. d.]. Whole Program LLVM. https:\/\/github.com\/travitch\/whole-program-llvm. Accessed Jan 24, 2020."},{"key":"e_1_3_2_1_42_1","volume-title":"Accessed","author":"Riq Gera","year":"2020","unstructured":"Gera Riq. [n. d.]. Advances in format string exploitation. http:\/\/phrack.org\/issues\/59\/7.html. Accessed Jan 24, 2020."},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.5555\/1247360.1247362"},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315313"},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2013.45"},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1145\/2892208.2892235"},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1109\/TR.2016.2570538"},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2013.13"},{"key":"e_1_3_2_1_49_1","volume-title":"Accessed","author":"Team The","year":"2020","unstructured":"The PaX Team. [n. d.]. Address Space Layout Randomization. https:\/\/pax.grsecurity.net\/docs\/aslr.txt. Accessed Jan 24, 2020."},{"key":"e_1_3_2_1_50_1","volume-title":"Proceedings of the 23rd USENIX Conference on Security Symposium. USENIX Association","author":"Tice Caroline","year":"2014","unstructured":"Caroline Tice, Tom Roeder, Peter Collingbourne, Stephen Checkoway, \u00dalfar Erlingsson, Luis Lozano, and Geoff Pike. 2014. Enforcing Forward-edge Control-flow Integrity in GCC & LLVM. In Proceedings of the 23rd USENIX Conference on Security Symposium. USENIX Association, Berkeley, CA, USA, 941--955."},{"key":"e_1_3_2_1_51_1","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382216"},{"key":"e_1_3_2_1_52_1","volume-title":"Proceedings of the 28th Conference on USENIX Security Symposium). 1805--1821","author":"Xu Xiaoyang","year":"2019","unstructured":"Xiaoyang Xu, Masoud Ghaffarinia, Wenhao Wang, Kevin W Hamlen, and Zhiqiang Lin. 2019. CONFIRM: Evaluating Compatibility and Relevance of Control-flow Integrity Protections for Modern Software. In Proceedings of the 28th Conference on USENIX Security Symposium). 1805--1821."},{"key":"e_1_3_2_1_53_1","doi-asserted-by":"publisher","DOI":"10.1109\/ISSRE.2014.20"},{"key":"e_1_3_2_1_54_1","volume-title":"VTint: Protecting Virtual Function Tables' Integrity. In Network and Distributed System Security Symposium.","author":"Zhang Chao","year":"2015","unstructured":"Chao Zhang, Chengyu Song, Kevin Zhijie Chen, Zhaofeng Chen, and Dawn Song. 2015. VTint: Protecting Virtual Function Tables' Integrity. In Network and Distributed System Security Symposium."},{"key":"e_1_3_2_1_55_1","volume-title":"VTrust: Regaining Trust on Virtual Calls. In Network and Distributed System Security Symposium.","author":"Zhang Chao","year":"2016","unstructured":"Chao Zhang, Dawn Song, Scott A Carr, Mathias Payer, Tongxin Li, Yu Ding, and Chengyu Song. 2016. VTrust: Regaining Trust on Virtual Calls. In Network and Distributed System Security Symposium."},{"key":"e_1_3_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2013.44"},{"key":"e_1_3_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1145\/2736277.2741134"},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.1109\/ISSRE.2019.00037"}],"event":{"name":"ICSE '20: 42nd International Conference on Software Engineering","location":"Seoul South Korea","acronym":"ICSE '20","sponsor":["SIGSOFT ACM Special Interest Group on Software Engineering","KIISE Korean Institute of Information Scientists and Engineers","IEEE CS"]},"container-title":["Proceedings of the ACM\/IEEE 42nd International Conference on Software Engineering"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3377811.3380439","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3377811.3380439","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T22:41:40Z","timestamp":1750200100000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3377811.3380439"}},"subtitle":["a shadow stack with microsecond-level runtime rerandomization for protecting return addresses"],"short-title":[],"issued":{"date-parts":[[2020,6,27]]},"references-count":58,"alternative-id":["10.1145\/3377811.3380439","10.1145\/3377811"],"URL":"https:\/\/doi.org\/10.1145\/3377811.3380439","relation":{},"subject":[],"published":{"date-parts":[[2020,6,27]]},"assertion":[{"value":"2020-10-01","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}