{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,5]],"date-time":"2026-06-05T04:51:53Z","timestamp":1780635113101,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":66,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,5,30]],"date-time":"2022-05-30T00:00:00Z","timestamp":1653868800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"DOI":"10.13039\/501100015798","name":"SBA Research","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100015798","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100004919","name":"King Abdulaziz City for Science and Technology","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100004919","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100001821","name":"Vienna Science and Technology Fund","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100001821","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100003246","name":"Nederlandse Organisatie voor Wetenschappelijk Onderzoek","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100003246","id-type":"DOI","asserted-by":"publisher"}]},{"name":"SBA Research (SBA-K1), a COMET Centre within the framework of COMET ? Competence Centers for Excellent Technologies Programme and funded by BMK, BMDW, and the federal state of Vienna"},{"name":"Nederlandse Organisatie voor Wetenschappelijk Onderzoek (Grant No. CS.007)"},{"name":"MITIGATE project among Research and Development for Expansion of Radio Wave Resources(JPJ000254), supported by the Ministry of Internal Affairs and Communications, Japan"},{"name":"Hestia Research Programme? (Grant No. VidW.1154.19.011)"},{"name":"Vienna Science and Technology Fund (WWTF) through project ICT19-056 (IoTIO)"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,5,30]]},"DOI":"10.1145\/3488932.3517408","type":"proceedings-article","created":{"date-parts":[[2022,5,24]],"date-time":"2022-05-24T04:23:26Z","timestamp":1653366206000},"page":"309-321","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":11,"title":["No Spring Chicken"],"prefix":"10.1145","author":[{"given":"Arwa Abdulkarim","family":"Al Alsadi","sequence":"first","affiliation":[{"name":"Delft University of Technology, Delft, Netherlands"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Kaichi","family":"Sameshima","sequence":"additional","affiliation":[{"name":"Yokohama National University, Yokohama, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jakob","family":"Bleier","sequence":"additional","affiliation":[{"name":"TU Wien, Vienna, Austria"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Katsunari","family":"Yoshioka","sequence":"additional","affiliation":[{"name":"Yokohama National University, Yokohama, Japan"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Martina","family":"Lindorfer","sequence":"additional","affiliation":[{"name":"TU Wien, Vienna, Austria"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Michel","family":"van Eeten","sequence":"additional","affiliation":[{"name":"Delft University of Technology, Delft, Netherlands"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Carlos H.","family":"Ga\u00f1\u00e1n","sequence":"additional","affiliation":[{"name":"Delft University of Technology, Delft, Netherlands"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2022,5,30]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3133960"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00013"},{"key":"e_1_3_2_1_3_1","volume-title":"The Circle Of Life: A Large-Scale Study of The IoT Malware Lifecycle. In 30th USENIX Security Symposium (USENIX Security 21)","author":"Alrawi Omar","year":"2021","unstructured":"Omar Alrawi , Charles Lever , Kevin Valakuzhy , Ryan Court , Kevin Snow , Fabian Monrose , and Manos Antonakakis . 2021 . The Circle Of Life: A Large-Scale Study of The IoT Malware Lifecycle. In 30th USENIX Security Symposium (USENIX Security 21) . USENIX Association, 3505--3522. Omar Alrawi, Charles Lever, Kevin Valakuzhy, Ryan Court, Kevin Snow, Fabian Monrose, and Manos Antonakakis. 2021. The Circle Of Life: A Large-Scale Study of The IoT Malware Lifecycle. In 30th USENIX Security Symposium (USENIX Security 21). USENIX Association, 3505--3522."},{"key":"e_1_3_2_1_4_1","volume-title":"Proceedings of the USENIX Security Symposium. 1093--1110","author":"Antonakakis Manos","year":"2017","unstructured":"Manos Antonakakis , Tim April , Michael Bailey , Matt Bernhard , Elie Bursztein , Jaime Cochran , Zakir Durumeric , J Alex Halderman , Luca Invernizzi , Michalis Kallitsis , 2017 . Understanding the Mirai Botnet . In Proceedings of the USENIX Security Symposium. 1093--1110 . Manos Antonakakis, Tim April, Michael Bailey, Matt Bernhard, Elie Bursztein, Jaime Cochran, Zakir Durumeric, J Alex Halderman, Luca Invernizzi, Michalis Kallitsis, et al. 2017. Understanding the Mirai Botnet. In Proceedings of the USENIX Security Symposium. 1093--1110."},{"key":"e_1_3_2_1_5_1","volume-title":"Understanding Internet of Things Malware by Analyzing Endpoints in their Static Artifacts. arXiv preprint arXiv:2103.14217","author":"Anwar Afsah","year":"2021","unstructured":"Afsah Anwar , Jinchun Choi , Abdulrahman Alabduljabbar , Hisham Alasmary , Jeffrey Spaulding , An Wang , Songqing Chen , DaeHun Nyang , Amro Awad , and David Mohaisen . 2021. Understanding Internet of Things Malware by Analyzing Endpoints in their Static Artifacts. arXiv preprint arXiv:2103.14217 ( 2021 ). Afsah Anwar, Jinchun Choi, Abdulrahman Alabduljabbar, Hisham Alasmary, Jeffrey Spaulding, An Wang, Songqing Chen, DaeHun Nyang, Amro Awad, and David Mohaisen. 2021. Understanding Internet of Things Malware by Analyzing Endpoints in their Static Artifacts. arXiv preprint arXiv:2103.14217 (2021)."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-48256-5_9"},{"key":"e_1_3_2_1_7_1","volume-title":"Proceedings of the USENIX Symposium on Usable Privacy and Security (SOUPS). USENIX Association.","author":"Bouwmeester Brennen","year":"2021","unstructured":"Brennen Bouwmeester , Elsa Rodr\u00edguez , Carlos Ga\u00f1\u00e1n , Michel van Eeten , and Simon Parkin . 2021 . \" The Thing Doesn't Have a Name\": Learning from Emergent Real-World Interventions in Smart Home Security . In Proceedings of the USENIX Symposium on Usable Privacy and Security (SOUPS). USENIX Association. Brennen Bouwmeester, Elsa Rodr\u00edguez, Carlos Ga\u00f1\u00e1n, Michel van Eeten, and Simon Parkin. 2021. \"The Thing Doesn't Have a Name\": Learning from Emergent Real-World Interventions in Smart Home Security. In Proceedings of the USENIX Symposium on Usable Privacy and Security (SOUPS). USENIX Association."},{"key":"#cr-split#-e_1_3_2_1_8_1.1","doi-asserted-by":"crossref","unstructured":"Or\u00e7un \u00c7etin Carlos Ga\u00f1\u00e1n Lisette Altena Takahiro Kasama Daisuke Inoue Kazuki Tamiya Ying Tie Katsunari Yoshioka and Michel van Eeten. 2019. Cleaning Up the Internet of Evil Things: Real-World Evidence on ISP and Consumer Efforts to Remove Mirai. (2019). https:\/\/doi.org\/10.14722\/ndss.2019.23438 10.14722\/ndss.2019.23438","DOI":"10.14722\/ndss.2019.23438"},{"key":"#cr-split#-e_1_3_2_1_8_1.2","doi-asserted-by":"crossref","unstructured":"Or\u00e7un \u00c7etin Carlos Ga\u00f1\u00e1n Lisette Altena Takahiro Kasama Daisuke Inoue Kazuki Tamiya Ying Tie Katsunari Yoshioka and Michel van Eeten. 2019. Cleaning Up the Internet of Evil Things: Real-World Evidence on ISP and Consumer Efforts to Remove Mirai. (2019). https:\/\/doi.org\/10.14722\/ndss.2019.23438","DOI":"10.14722\/ndss.2019.23438"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2019.00032"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/3318216.3363379"},{"key":"e_1_3_2_1_11_1","volume-title":"IoT Malware: Comprehensive Survey, Analysis Framework and Case Studies. BlackHat USA","author":"Costin Andrei","year":"2018","unstructured":"Andrei Costin and Jonas Zaddach . 2018. IoT Malware: Comprehensive Survey, Analysis Framework and Case Studies. BlackHat USA ( 2018 ). Andrei Costin and Jonas Zaddach. 2018. IoT Malware: Comprehensive Survey, Analysis Framework and Case Studies. BlackHat USA (2018)."},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"crossref","unstructured":"Emanuele Cozzi. 2021. The Tangled Genealogy of IoT Malware Dataset. https: \/\/github.com\/eurecom-s3\/tangled_iot\/tree\/master\/dataset  Emanuele Cozzi. 2021. The Tangled Genealogy of IoT Malware Dataset. https: \/\/github.com\/eurecom-s3\/tangled_iot\/tree\/master\/dataset","DOI":"10.1145\/3427228.3427256"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/3427228.3427256"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00054"},{"key":"e_1_3_2_1_15_1","unstructured":"CyberIOCs. 2020. CyberIOCs Daily malware pack. https:\/\/freeiocs.cyberiocs.pro  CyberIOCs. 2020. CyberIOCs Daily malware pack. https:\/\/freeiocs.cyberiocs.pro"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/3307334.3326083"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/3494322.3494340"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSCloud.2015.56"},{"key":"e_1_3_2_1_19_1","volume-title":"Retrieved","year":"2009","unstructured":"Exploit-db. 2009 . Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers . Retrieved June 15, 2021 from https:\/\/www.exploit-db.com\/ Exploit-db. 2009. Exploit Database - Exploits for Penetration Testers, Researchers, and Ethical Hackers. Retrieved June 15, 2021 from https:\/\/www.exploit-db.com\/"},{"key":"e_1_3_2_1_20_1","volume-title":"Retrieved","author":"Fanjul Alejandro","year":"2018","unstructured":"Alejandro Fanjul . 2018 . LG SuperSign EZ CMS 2.5 . Retrieved May 01, 2021 from https:\/\/www.exploit-db.com\/exploits\/45448 Alejandro Fanjul. 2018. LG SuperSign EZ CMS 2.5. Retrieved May 01, 2021 from https:\/\/www.exploit-db.com\/exploits\/45448"},{"key":"e_1_3_2_1_21_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Feng Xuan","year":"2019","unstructured":"Xuan Feng , Xiao Liao , X Wang , Qiang Li , Kai Yang , Hong Zhu , and Limin Sun . 2019 . Understanding and Securing Device Vulnerabilities through Automated Bug Report Analysis . In Proceedings of the USENIX Security Symposium. Xuan Feng, Xiao Liao, X Wang, Qiang Li, Kai Yang, Hong Zhu, and Limin Sun. 2019. Understanding and Securing Device Vulnerabilities through Automated Bug Report Analysis. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_1_22_1","unstructured":"Jerry Gamblin. 2016. Mirai Source Code. https:\/\/github.com\/jgamblin\/Mirai- Source-Code  Jerry Gamblin. 2016. Mirai Source Code. https:\/\/github.com\/jgamblin\/Mirai- Source-Code"},{"key":"e_1_3_2_1_23_1","volume-title":"Proceedings of the International Symposium on Foundations and Practice of Security (FPS)","volume":"12637","author":"Hamou-Lhadj Abdelwahab","year":"2021","unstructured":"Abdelwahab Hamou-Lhadj and Asma Razgallah . 2021 . An Analysis of the Use of CVEs by IoT Malware . In Proceedings of the International Symposium on Foundations and Practice of Security (FPS) , Vol. 12637 . 47. Abdelwahab Hamou-Lhadj and Asma Razgallah. 2021. An Analysis of the Use of CVEs by IoT Malware. In Proceedings of the International Symposium on Foundations and Practice of Security (FPS), Vol. 12637. 47."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"crossref","unstructured":"Stephen Herwig Katura Harvey George Hughey Richard Roberts and Dave Levin. 2019. Measurement and Analysis of Hajime a Peer-to-peer IoT Botnet.  Stephen Herwig Katura Harvey George Hughey Richard Roberts and Dave Levin. 2019. Measurement and Analysis of Hajime a Peer-to-peer IoT Botnet.","DOI":"10.14722\/ndss.2019.23488"},{"key":"e_1_3_2_1_25_1","unstructured":"Hors. 2021. Detect-It-Easy: Program for determining types of files for Windows Linux and MacOS. https:\/\/github.com\/horsicq\/Detect-It-Easy  Hors. 2021. Detect-It-Easy: Program for determining types of files for Windows Linux and MacOS. https:\/\/github.com\/horsicq\/Detect-It-Easy"},{"key":"e_1_3_2_1_26_1","volume-title":"Proceedings of the USENIX Workshop on Cyber Security Experimentation and Test.","author":"Householder Allen D","year":"2020","unstructured":"Allen D Householder , Jeff Chrabaszcz , Trent Novelly , David Warren , and Jonathan M Spring . 2020 . Historical Analysis of Exploit Availability Timelines . In Proceedings of the USENIX Workshop on Cyber Security Experimentation and Test. Allen D Householder, Jeff Chrabaszcz, Trent Novelly, David Warren, and Jonathan M Spring. 2020. Historical Analysis of Exploit Availability Timelines. In Proceedings of the USENIX Workshop on Cyber Security Experimentation and Test."},{"key":"e_1_3_2_1_27_1","volume-title":"HxD - Freeware Hex Editor","author":"H\u00f6rz Ma\u00ebl","unstructured":"Ma\u00ebl H\u00f6rz . 2020. HxD - Freeware Hex Editor and Disk Editor | mh-nexus. https:\/\/mh-nexus.de\/en\/hxd\/ Ma\u00ebl H\u00f6rz. 2020. HxD - Freeware Hex Editor and Disk Editor | mh-nexus. https:\/\/mh-nexus.de\/en\/hxd\/"},{"key":"e_1_3_2_1_28_1","unstructured":"Brian Krebs. 2021. KrebsOnSecurity Hit By Huge New IoT Botnet ?Meris?. https:\/\/krebsonsecurity.com\/2021\/09\/krebsonsecurity-hit-by-hugenew- iot-botnet-meris\/  Brian Krebs. 2021. KrebsOnSecurity Hit By Huge New IoT Botnet ?Meris?. https:\/\/krebsonsecurity.com\/2021\/09\/krebsonsecurity-hit-by-hugenew- iot-botnet-meris\/"},{"key":"e_1_3_2_1_29_1","volume-title":"Proceedings of the International Conference on Testbeds and Research Infrastructures (TridentCom). 124--137","author":"Kumar Ayush","year":"2018","unstructured":"Ayush Kumar and Teng Joon Lim . 2018 . A Secure Contained Testbed For Analyzing IoT Botnets . In Proceedings of the International Conference on Testbeds and Research Infrastructures (TridentCom). 124--137 . Ayush Kumar and Teng Joon Lim. 2018. A Secure Contained Testbed For Analyzing IoT Botnets. In Proceedings of the International Conference on Testbeds and Research Infrastructures (TridentCom). 124--137."},{"key":"e_1_3_2_1_30_1","volume-title":"Proceedings of the USENIX Security Symposium. USENIX Association","author":"Kumar Deepak","year":"2019","unstructured":"Deepak Kumar , Kelly Shen , Benton Case , Deepali Garg , Galina Alperovich , Dmitry Kuznetsov , Rajarshi Gupta , and Zakir Durumeric . 2019 . All Things Considered: An Analysis of IoT Devices on Home Networks . In Proceedings of the USENIX Security Symposium. USENIX Association , Santa Clara, CA, 1169--1185. Deepak Kumar, Kelly Shen, Benton Case, Deepali Garg, Galina Alperovich, Dmitry Kuznetsov, Rajarshi Gupta, and Zakir Durumeric. 2019. All Things Considered: An Analysis of IoT Devices on Home Networks. In Proceedings of the USENIX Security Symposium. USENIX Association, Santa Clara, CA, 1169--1185."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3453086"},{"key":"e_1_3_2_1_32_1","unstructured":"Malwaremustdie. 2018. Unpacking the non-unpackable. https: \/\/github.com\/radareorg\/r2con2018\/blob\/master\/talks\/unpacking\/Unpacking-a- Non-Unpackables.pdf  Malwaremustdie. 2018. Unpacking the non-unpackable. https: \/\/github.com\/radareorg\/r2con2018\/blob\/master\/talks\/unpacking\/Unpacking-a- Non-Unpackables.pdf"},{"key":"e_1_3_2_1_33_1","volume-title":"Telfhash: An Algorithm That Finds Similar Malicious ELF Files Used in Linux IoT Malware. Technical Report.","author":"Merc\u00eas Fernando","year":"2020","unstructured":"Fernando Merc\u00eas and Joey Costoya . 2020 . Telfhash: An Algorithm That Finds Similar Malicious ELF Files Used in Linux IoT Malware. Technical Report. Fernando Merc\u00eas and Joey Costoya. 2020. Telfhash: An Algorithm That Finds Similar Malicious ELF Files Used in Linux IoT Malware. Technical Report."},{"key":"e_1_3_2_1_34_1","volume-title":"Malware Analysis Using Artificial Intelligence and Deep Learning","author":"Nadeem Azqa","unstructured":"Azqa Nadeem , Christian Hammerschmidt , Carlos H Ga\u00f1\u00e1n , and Sicco Verwer . 2021. Beyond labeling: Using clustering to build network behavioral profiles of malware families . In Malware Analysis Using Artificial Intelligence and Deep Learning . Springer , Cham , 381--409. Azqa Nadeem, Christian Hammerschmidt, Carlos H Ga\u00f1\u00e1n, and Sicco Verwer. 2021. Beyond labeling: Using clustering to build network behavioral profiles of malware families. In Malware Analysis Using Artificial Intelligence and Deep Learning. Springer, Cham, 381--409."},{"key":"e_1_3_2_1_35_1","unstructured":"National Institute of Standards and Technology (NIST). 2021. National Vulnerability Database. https:\/\/nvd.nist.gov\/ (Accessed on 2021-06--16).  National Institute of Standards and Technology (NIST). 2021. National Vulnerability Database. https:\/\/nvd.nist.gov\/ (Accessed on 2021-06--16)."},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-11379-1_21"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1109\/MWC.2019.1800505"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP51992.2021.00031"},{"key":"e_1_3_2_1_39_1","unstructured":"NSA. 2020. Ghidra. https:\/\/ghidra-sre.org\/  NSA. 2020. Ghidra. https:\/\/ghidra-sre.org\/"},{"key":"e_1_3_2_1_40_1","unstructured":"NVD. 2018. CVE-2018-17173. https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2018-17173  NVD. 2018. CVE-2018-17173. https:\/\/nvd.nist.gov\/vuln\/detail\/CVE-2018-17173"},{"key":"e_1_3_2_1_41_1","unstructured":"NVD. 2021. CVSS Severity Distribution Over Time. https: \/\/nvd.nist.gov\/general\/visualizations\/vulnerability-visualizations\/cvssseverity- distribution-over-time  NVD. 2021. CVSS Severity Distribution Over Time. https: \/\/nvd.nist.gov\/general\/visualizations\/vulnerability-visualizations\/cvssseverity- distribution-over-time"},{"key":"e_1_3_2_1_42_1","volume-title":"Reiser","author":"Oberhumer Markus F.X.J.","year":"2020","unstructured":"Markus F.X.J. Oberhumer , L\u00e1szl\u00f3 Moln\u00e1r , and John F . Reiser . 2020 . UPX - the Ultimate Packer for eXecutables. https:\/\/github.com\/upx\/upx Markus F.X.J. Oberhumer, L\u00e1szl\u00f3 Moln\u00e1r, and John F. Reiser. 2020. UPX - the Ultimate Packer for eXecutables. https:\/\/github.com\/upx\/upx"},{"key":"e_1_3_2_1_43_1","volume-title":"Proceedings of the USENIX Workshop on Offensive Technologies (WOOT).","author":"Pa Pa Yin Minn","year":"2015","unstructured":"Yin Minn Pa Pa , Shogo Suzuki , Katsunari Yoshioka , Tsutomu Matsumoto , Takahiro Kasama , and Christian Rossow . 2015 . IoTPOT: Analysing the Rise of IoT Compromises . In Proceedings of the USENIX Workshop on Offensive Technologies (WOOT). Yin Minn Pa Pa, Shogo Suzuki, Katsunari Yoshioka, Tsutomu Matsumoto, Takahiro Kasama, and Christian Rossow. 2015. IoTPOT: Analysing the Rise of IoT Compromises. In Proceedings of the USENIX Workshop on Offensive Technologies (WOOT)."},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1145\/3176258.3176306"},{"key":"e_1_3_2_1_45_1","unstructured":"Qrator. 2021. M\u00aferis botnet climbing to the record. https:\/\/blog.qrator.net\/en\/ meris-botnet-climbing-to-the-record_142\/  Qrator. 2021. M\u00aferis botnet climbing to the record. https:\/\/blog.qrator.net\/en\/ meris-botnet-climbing-to-the-record_142\/"},{"key":"e_1_3_2_1_46_1","volume-title":"Superspreaders: Quantifying the Role of IoT Manufacturers in Device Infections. Workshop on the Economics of Information Security (WEIS)","author":"Rodr\u00edguez Elsa","year":"2021","unstructured":"Elsa Rodr\u00edguez , Arman Noroozian , Michel van Eeten , and Carlos Ga\u00f1\u00e1n . 2021 . Superspreaders: Quantifying the Role of IoT Manufacturers in Device Infections. Workshop on the Economics of Information Security (WEIS) (2021). Elsa Rodr\u00edguez, Arman Noroozian, Michel van Eeten, and Carlos Ga\u00f1\u00e1n. 2021. Superspreaders: Quantifying the Role of IoT Manufacturers in Device Infections. Workshop on the Economics of Information Security (WEIS) (2021)."},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1093\/cybsec\/tyab015"},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-45719-2_11"},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1145\/3427228.3427261"},{"key":"e_1_3_2_1_50_1","unstructured":"Gaurav Sood. 2021. VirusTotal. https:\/\/www.virustotal.com\/gui\/home\/search  Gaurav Sood. 2021. VirusTotal. https:\/\/www.virustotal.com\/gui\/home\/search"},{"key":"e_1_3_2_1_51_1","volume-title":"Proceedings of the USENIX Security Symposium. USENIX Association","author":"Soska Kyle","year":"2014","unstructured":"Kyle Soska and Nicolas Christin . 2014 . Automatically Detecting Vulnerable Websites Before They Turn Malicious . In Proceedings of the USENIX Security Symposium. USENIX Association , San Diego, CA, 625--640. Kyle Soska and Nicolas Christin. 2014. Automatically Detecting Vulnerable Websites Before They Turn Malicious. In Proceedings of the USENIX Security Symposium. USENIX Association, San Diego, CA, 625--640."},{"key":"e_1_3_2_1_52_1","volume-title":"A Multi-target Approach to Estimate Software Vulnerability Characteristics and Severity Scores. Journal of Systems and Software","author":"Spanos Georgios","year":"2018","unstructured":"Georgios Spanos and Lefteris Angelis . 2018. A Multi-target Approach to Estimate Software Vulnerability Characteristics and Severity Scores. Journal of Systems and Software ( 2018 ). Georgios Spanos and Lefteris Angelis. 2018. A Multi-target Approach to Estimate Software Vulnerability Characteristics and Severity Scores. Journal of Systems and Software (2018)."},{"key":"e_1_3_2_1_53_1","unstructured":"Strings. 2009. Strings(1) - Linux man page. Retrieved November 1 2020 from https:\/\/linux.die.net\/man\/1\/strings  Strings. 2009. Strings(1) - Linux man page. Retrieved November 1 2020 from https:\/\/linux.die.net\/man\/1\/strings"},{"key":"e_1_3_2_1_54_1","unstructured":"The MITRE Corporation. 2021. CVE - Common Vulnerabilities and Exposures (CVE). https:\/\/cve.mitre.org\/index.html  The MITRE Corporation. 2021. CVE - Common Vulnerabilities and Exposures (CVE). https:\/\/cve.mitre.org\/index.html"},{"key":"e_1_3_2_1_55_1","volume-title":"Report from the Internet of Things Software Update (IoTSU) Workshop","author":"Tschofenig Hannes","year":"2016","unstructured":"Hannes Tschofenig and Stephen Farrell . 2017. Report from the Internet of Things Software Update (IoTSU) Workshop 2016 . RFC 8240. Hannes Tschofenig and Stephen Farrell. 2017. Report from the Internet of Things Software Update (IoTSU) Workshop 2016. RFC 8240."},{"key":"e_1_3_2_1_56_1","unstructured":"URLhaus. [n. d.]. URLhaus | Malware URL exchange. https:\/\/urlhaus.abuse.ch\/  URLhaus. [n. d.]. URLhaus | Malware URL exchange. https:\/\/urlhaus.abuse.ch\/"},{"key":"e_1_3_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1145\/2556288.2557275"},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-45472-5_22"},{"key":"e_1_3_2_1_59_1","unstructured":"VirusTotal. 2020. VirusTotal Reference API | Files. https:\/\/developers.virustotal. com\/v3.0\/reference#files  VirusTotal. 2020. VirusTotal Reference API | Files. https:\/\/developers.virustotal. com\/v3.0\/reference#files"},{"key":"e_1_3_2_1_60_1","unstructured":"Vulndb. 2020. Comprehensive Vulnerability Intelligence. https:\/\/vulndb. cyberriskanalytics.com\/#statistic (Accessed on 2021-05-01).  Vulndb. 2020. Comprehensive Vulnerability Intelligence. https:\/\/vulndb. cyberriskanalytics.com\/#statistic (Accessed on 2021-05-01)."},{"key":"e_1_3_2_1_61_1","volume-title":"Yang Liu, Jiawei Jiang, Yan Li, Xing Zhang, Wenmao Liu, Runzi Zhang, and Xing Lan.","author":"Wang Huanran","year":"2021","unstructured":"Huanran Wang , Weizhe Zhang , Hui He , Peng Liu , Daniel Xiapu Luo , Yang Liu, Jiawei Jiang, Yan Li, Xing Zhang, Wenmao Liu, Runzi Zhang, and Xing Lan. 2021 . An Evolutionary Study of IoT Malware. IEEE Internet of Things Journal ( 2021). Huanran Wang, Weizhe Zhang, Hui He, Peng Liu, Daniel Xiapu Luo, Yang Liu, Jiawei Jiang, Yan Li, Xing Zhang, Wenmao Liu, Runzi Zhang, and Xing Lan. 2021. An Evolutionary Study of IoT Malware. IEEE Internet of Things Journal (2021)."},{"key":"e_1_3_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.1109\/HSI.2012.22"},{"key":"e_1_3_2_1_63_1","volume-title":"Proceedings of the USENIX Security Symposium. USENIX Association","author":"Xiao Chaowei","year":"2018","unstructured":"Chaowei Xiao , Armin Sarabi , Yang Liu , Bo Li , Mingyan Liu , and Tudor Dumitras . 2018 . From Patching Delays to Infection Symptoms: Using Risk Profiles for an Early Discovery of Vulnerabilities Exploited in the Wild . In Proceedings of the USENIX Security Symposium. USENIX Association , Baltimore, MD, 903--918. Chaowei Xiao, Armin Sarabi, Yang Liu, Bo Li, Mingyan Liu, and Tudor Dumitras. 2018. From Patching Delays to Infection Symptoms: Using Risk Profiles for an Early Discovery of Vulnerabilities Exploited in the Wild. In Proceedings of the USENIX Security Symposium. USENIX Association, Baltimore, MD, 903--918."},{"key":"e_1_3_2_1_64_1","doi-asserted-by":"publisher","DOI":"10.1145\/3433210.3453685"},{"key":"e_1_3_2_1_65_1","unstructured":"Zynamics. 2021. BinDiff. https:\/\/www.zynamics.com\/bindiff.html  Zynamics. 2021. BinDiff. https:\/\/www.zynamics.com\/bindiff.html"}],"event":{"name":"ASIA CCS '22: ACM Asia Conference on Computer and Communications Security","location":"Nagasaki Japan","acronym":"ASIA CCS '22","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 2022 ACM on Asia Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3488932.3517408","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3488932.3517408","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T20:48:29Z","timestamp":1750193309000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3488932.3517408"}},"subtitle":["Quantifying the Lifespan of Exploits in IoT Malware Using Static and Dynamic Analysis"],"short-title":[],"issued":{"date-parts":[[2022,5,30]]},"references-count":66,"alternative-id":["10.1145\/3488932.3517408","10.1145\/3488932"],"URL":"https:\/\/doi.org\/10.1145\/3488932.3517408","relation":{},"subject":[],"published":{"date-parts":[[2022,5,30]]},"assertion":[{"value":"2022-05-30","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}