{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,20]],"date-time":"2026-04-20T10:29:55Z","timestamp":1776680995317,"version":"3.51.2"},"publisher-location":"New York, NY, USA","reference-count":36,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,4,25]],"date-time":"2022-04-25T00:00:00Z","timestamp":1650844800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"Bundesministerium f\u00fcr Bildung und Forschung","award":["01IS18065D"],"award-info":[{"award-number":["01IS18065D"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,4,25]]},"DOI":"10.1145\/3477314.3507108","type":"proceedings-article","created":{"date-parts":[[2022,5,7]],"date-time":"2022-05-07T00:37:36Z","timestamp":1651883856000},"page":"510-519","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":13,"title":["Detecting return-oriented programming on firmware-only embedded devices using hardware performance counters"],"prefix":"10.1145","author":[{"given":"Adebayo","family":"Omotosho","sequence":"first","affiliation":[{"name":"University of Passau, Passau, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gebrehiwet B.","family":"Welearegai","sequence":"additional","affiliation":[{"name":"University of Passau, Passau, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Christian","family":"Hammer","sequence":"additional","affiliation":[{"name":"University of Passau, Potsdam, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2022,5,6]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"RAPPER: Ransomware prevention via performance counters. arXiv preprint arXiv:2004.01712","author":"Alam Manaar","year":"2020","unstructured":"Manaar Alam, Sayan Sinha, Sarani Bhattacharya, Swastika Dutta, Debdeep Mukhopadhyay, and Anupam Chattopadhyay. 2020. RAPPER: Ransomware prevention via performance counters. arXiv preprint arXiv:2004.01712 (2020)."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.jisa.2017.11.002"},{"key":"e_1_3_2_1_3_1","volume-title":"23rd International Symposium on Research in Attacks, Intrusions and Defenses ({RAID}","author":"Bhattacharyya Atri","year":"2020","unstructured":"Atri Bhattacharyya, Andr\u00e9s S\u00e1nchez, Esmaeil M Koruyeh, Nael Abu-Ghazaleh, Chengyu Song, and Mathias Payer. 2020. SpecROP: Speculative Exploitation of {ROP} Chains. In 23rd International Symposium on Research in Attacks, Intrusions and Defenses ({RAID} 2020). 1--16."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.22"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/1966913.1966919"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.23"},{"key":"e_1_3_2_1_7_1","unstructured":"Cadence. 2018. Xtensa\u00ae C and C++ Compiler User's Guide. https:\/\/ip.cadence.com\/swdev"},{"key":"e_1_3_2_1_8_1","unstructured":"Cadence. 2018. Xtensa\u00ae Microprocessor Programmer's Guide. https:\/\/ip.cadence.com\/swdev"},{"key":"e_1_3_2_1_9_1","unstructured":"Cadence. 2019. Xtensa\u00ae Instruction Set Architecture. https:\/\/ip.cadence.com\/swdev"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/1866307.1866370"},{"key":"e_1_3_2_1_11_1","volume-title":"When Firmware Modifications Attack: A Case Study of Embedded Exploitation. In 20th Annual Network & Distributed System Security Symposium. 1--13","author":"Cui Ang","year":"2013","unstructured":"Ang Cui, Michael Costello, and Salvatore J Stolfo. 2013. When Firmware Modifications Attack: A Case Study of Embedded Exploitation. In 20th Annual Network & Distributed System Security Symposium. 1--13."},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2017.11.011"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/1966913.1966920"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/3373376.3378506"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/3029806.3029812"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3052976"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2019.00036"},{"key":"e_1_3_2_1_18_1","unstructured":"Matheus Eduardo Garbelini. 2019. Easily crashing ESP8266 Wi-Fi devices. https:\/\/matheus-garbelini.github.io\/home\/post\/esp8266-beacon-frame-crash\/"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.procs.2017.03.181"},{"key":"e_1_3_2_1_20_1","volume-title":"HoneyGadget: A Deception Based Approach for Detecting Code Reuse Attacks. Information Systems Frontiers","author":"Huang Xin","year":"2020","unstructured":"Xin Huang, Fei Yan, Liqiang Zhang, and Kai Wang. 2020. HoneyGadget: A Deception Based Approach for Detecting Code Reuse Attacks. Information Systems Frontiers (2020), 1--15."},{"key":"e_1_3_2_1_21_1","volume-title":"Challenges of Return-Oriented-Programming on the Xtensa Hardware Architecture. In EUROMICRO Conference on Digital System Design. 1--6.","author":"Lehniger Kai","year":"2020","unstructured":"Kai Lehniger, Marcin Aftowicz, Peter Langend\u00f6rfer, and Zoya Dyka. 2020. Challenges of Return-Oriented-Programming on the Xtensa Hardware Architecture. In EUROMICRO Conference on Digital System Design. 1--6."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/2046582.2046596"},{"key":"e_1_3_2_1_23_1","volume-title":"James MacDonald, Justin King, and Jason Kobes.","author":"Mani Ganapathy","year":"2020","unstructured":"Ganapathy Mani, Vikram Pasumarti, Bharat Bhargava, Faisal Tariq Vora, James MacDonald, Justin King, and Jason Kobes. 2020. DeCrypto Pro: Deep Learning Based Cryptomining Malware Detection Using Performance Counters. In 2020 IEEE International Conference on Autonomic Computing and Self-Organizing Systems (ACSOS). IEEE, 109--118."},{"key":"e_1_3_2_1_24_1","volume-title":"A FPGA-based Control-Flow Integrity Solution for Securing Bare-Metal Embedded Systems. In 2020 15th Design & Technology of Integrated Systems in Nanoscale Era (DTIS)","author":"Maunero Nicol\u00f2","unstructured":"Nicol\u00f2 Maunero, Paolo Prinetto, Gianluca Roascio, and Antonio Varriale. 2020. A FPGA-based Control-Flow Integrity Solution for Securing Bare-Metal Embedded Systems. In 2020 15th Design & Technology of Integrated Systems in Nanoscale Era (DTIS). IEEE, 1--10."},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/2430553.2430555"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-15618-7_6"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2012.152"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315313"},{"key":"e_1_3_2_1_29_1","unstructured":"Thotcon. 2016. The complete esp8266 psionics handbook. https:\/\/speakerdeck.com\/jsandin\/the-complete-esp8266-psionics-handbook"},{"key":"e_1_3_2_1_30_1","unstructured":"Gordon Mah Ung. 2013. Everything You Wanted to Know About AMD's New TrueAudio Technology. https:\/\/web.archive.org\/web\/20140711104556\/http:\/\/www.maximumpc.com\/everything_you_wanted_know_about_amd%E2%80%99s_new_trueaudio_technology_2013"},{"key":"e_1_3_2_1_31_1","volume-title":"SIGDROP: Signature-based ROP detection using hardware performance counters. arXiv preprint arXiv:1609.02667","author":"Wang Xueyang","year":"2016","unstructured":"Xueyang Wang and Jerry Backer. 2016. SIGDROP: Signature-based ROP detection using hardware performance counters. arXiv preprint arXiv:1609.02667 (2016)."},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.jnca.2020.102534"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1109\/IISWC.2008.4636099"},{"key":"e_1_3_2_1_34_1","unstructured":"Chris Williams. 2016. Microsoft's HoloLens secret sauce: A 28nm customized 24-core DSP engine built by TSMC. https:\/\/www.theregister.com\/2016\/08\/22\/microsoft_hololens_hpu\/"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1145\/3196494.3196515"},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-06320-1_14"}],"event":{"name":"SAC '22: The 37th ACM\/SIGAPP Symposium on Applied Computing","location":"Virtual Event","acronym":"SAC '22","sponsor":["SIGAPP ACM Special Interest Group on Applied Computing"]},"container-title":["Proceedings of the 37th ACM\/SIGAPP Symposium on Applied Computing"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3477314.3507108","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3477314.3507108","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T19:31:28Z","timestamp":1750188688000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3477314.3507108"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,4,25]]},"references-count":36,"alternative-id":["10.1145\/3477314.3507108","10.1145\/3477314"],"URL":"https:\/\/doi.org\/10.1145\/3477314.3507108","relation":{},"subject":[],"published":{"date-parts":[[2022,4,25]]},"assertion":[{"value":"2022-05-06","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}