{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,20]],"date-time":"2026-04-20T10:35:23Z","timestamp":1776681323456,"version":"3.51.2"},"publisher-location":"New York, NY, USA","reference-count":67,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,4,14]],"date-time":"2022-04-14T00:00:00Z","timestamp":1649894400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,4,14]]},"DOI":"10.1145\/3508398.3511507","type":"proceedings-article","created":{"date-parts":[[2022,4,16]],"date-time":"2022-04-16T04:13:31Z","timestamp":1650082411000},"page":"226-235","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":12,"title":["A TOCTOU Attack on DICE Attestation"],"prefix":"10.1145","author":[{"given":"Stefan","family":"Hristozov","sequence":"first","affiliation":[{"name":"Fraunhofer AISEC, Garching near Munich, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Moritz","family":"Wettermann","sequence":"additional","affiliation":[{"name":"Fraunhofer AISEC, Garching near Munich, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Manuel","family":"Huber","sequence":"additional","affiliation":[{"name":"Microsoft, Vancouver, BC, Canada"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2022,4,15]]},"reference":[{"key":"e_1_3_2_2_1_1","unstructured":"REFERENCES [1] [n. d.]. Simplify the Development of Secure Connected Nodes Using Cryptography-Enabled Microcontroller with DICE Architecture . https:\/\/www. microchip.com\/pressreleasepage\/secure-connected-nodes-CEC1702-DICE. Accessed: 2020-05-06.  REFERENCES [1] [n. d.]. Simplify the Development of Secure Connected Nodes Using Cryptography-Enabled Microcontroller with DICE Architecture . https:\/\/www. microchip.com\/pressreleasepage\/secure-connected-nodes-CEC1702-DICE. Accessed: 2020-05-06."},{"key":"e_1_3_2_2_2_1","unstructured":"[n. d.]. Building a Secure System using TrustZone Technology. http:\/\/www.arm. com. Accessed: 2021-02--17.  [n. d.]. Building a Secure System using TrustZone Technology. http:\/\/www.arm. com. Accessed: 2021-02--17."},{"key":"e_1_3_2_2_3_1","unstructured":"[n. d.]. Data Execution Prevention. https:\/\/docs.microsoft.com\/en-us\/windows\/ win32\/memory\/data-execution-prevention. Accessed: 2021-02--17.  [n. d.]. Data Execution Prevention. https:\/\/docs.microsoft.com\/en-us\/windows\/ win32\/memory\/data-execution-prevention. Accessed: 2021-02--17."},{"key":"e_1_3_2_2_4_1","unstructured":"[n. d.]. Devil's Ivy Exploit in Axis Security Camera. https:\/\/blog.senr.io\/devilsivy. html. Accessed: 2020-05-06.  [n. d.]. Devil's Ivy Exploit in Axis Security Camera. https:\/\/blog.senr.io\/devilsivy. html. Accessed: 2020-05-06."},{"key":"e_1_3_2_2_5_1","unstructured":"[n. d.]. Low-cost Attacks on STM8 Readout Protection. https:\/\/itooktheredpill. irgendwo.org\/2020\/stm8-readout-protection\/. Accessed: 2020--10-04.  [n. d.]. Low-cost Attacks on STM8 Readout Protection. https:\/\/itooktheredpill. irgendwo.org\/2020\/stm8-readout-protection\/. Accessed: 2020--10-04."},{"key":"e_1_3_2_2_6_1","unstructured":"[n. d.]. nRF52840 product specification. https:\/\/infocenter.nordicsemi.com\/pdf\/ nRF52840_PS_v1.1.pdf. Accessed: 2020-09-04.  [n. d.]. nRF52840 product specification. https:\/\/infocenter.nordicsemi.com\/pdf\/ nRF52840_PS_v1.1.pdf. Accessed: 2020-09-04."},{"key":"e_1_3_2_2_7_1","unstructured":"[n. d.]. NXP LPC5500 Flash Microcontroller Series Secures Industrial and IoT Edge Applications. https:\/\/www.nxp.com\/company\/about-nxp\/nxp-lpc5500- flash-microcontroller-series-secures-industrial-and-iot-edge-applications: NW-LPC5500-FLASH. Accessed: 2020-05-06.  [n. d.]. NXP LPC5500 Flash Microcontroller Series Secures Industrial and IoT Edge Applications. https:\/\/www.nxp.com\/company\/about-nxp\/nxp-lpc5500- flash-microcontroller-series-secures-industrial-and-iot-edge-applications: NW-LPC5500-FLASH. Accessed: 2020-05-06."},{"key":"e_1_3_2_2_8_1","unstructured":"[n. d.]. PaX ASLR (Address Space Layout Randomization). https:\/\/pax.grsecurity. net\/docs\/aslr.txt. Accessed: 2021-02--17.  [n. d.]. PaX ASLR (Address Space Layout Randomization). https:\/\/pax.grsecurity. net\/docs\/aslr.txt. Accessed: 2021-02--17."},{"key":"e_1_3_2_2_9_1","unstructured":"[n. d.]. ROPgadget tool. https:\/\/github.com\/JonathanSalwan\/ROPgadget. Accessed: 2020--10-08.  [n. d.]. ROPgadget tool. https:\/\/github.com\/JonathanSalwan\/ROPgadget. Accessed: 2020--10-08."},{"key":"e_1_3_2_2_10_1","unstructured":"[n. d.]. s140 softdevice specification. https:\/\/infocenter.nordicsemi.com\/pdf\/S140_ SDS_v1.1.pdf. Accessed: 2020-09-04.  [n. d.]. s140 softdevice specification. https:\/\/infocenter.nordicsemi.com\/pdf\/S140_ SDS_v1.1.pdf. Accessed: 2020-09-04."},{"key":"e_1_3_2_2_11_1","unstructured":"[n. d.]. Software development kit for the nRF52 Series and nRF51 Series SoCs. https:\/\/www.nordicsemi.com\/Software-and-tools\/Software\/nRF5-SDK. Accessed: 2020-09-04.  [n. d.]. Software development kit for the nRF52 Series and nRF51 Series SoCs. https:\/\/www.nordicsemi.com\/Software-and-tools\/Software\/nRF5-SDK. Accessed: 2020-09-04."},{"key":"e_1_3_2_2_12_1","unstructured":"[n. d.]. Stack Smashing Protector. https:\/\/wiki.osdev.org\/Stack_Smashing_ Protector. Accessed: 2021-02--17.  [n. d.]. Stack Smashing Protector. https:\/\/wiki.osdev.org\/Stack_Smashing_ Protector. Accessed: 2021-02--17."},{"key":"e_1_3_2_2_13_1","unstructured":"[n. d.]. Tutorial A9 Bypassing LPC1114 Read Protect. https:\/\/wiki.newae.com\/ Tutorial_A9_Bypassing_LPC1114_Read_Protect. Accessed: 2020--10-04.  [n. d.]. Tutorial A9 Bypassing LPC1114 Read Protect. https:\/\/wiki.newae.com\/ Tutorial_A9_Bypassing_LPC1114_Read_Protect. Accessed: 2020--10-04."},{"key":"e_1_3_2_2_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/1609956"},{"key":"e_1_3_2_2_15_1","volume-title":"Challenges in Designing Exploit Mitigations for Deeply Embedded Systems. In 2019 IEEE European Symposium on Security and Privacy (EuroSP). 31--46","author":"Abbasi Ali","year":"2019","unstructured":"Ali Abbasi , Jos Wetzels , Thorsten Holz , and Sandro Etalle . 2019 . Challenges in Designing Exploit Mitigations for Deeply Embedded Systems. In 2019 IEEE European Symposium on Security and Privacy (EuroSP). 31--46 . https:\/\/doi.org\/10. 1109\/EuroSP.2019.00013 Ali Abbasi, Jos Wetzels, Thorsten Holz, and Sandro Etalle. 2019. Challenges in Designing Exploit Mitigations for Deeply Embedded Systems. In 2019 IEEE European Symposium on Security and Privacy (EuroSP). 31--46. https:\/\/doi.org\/10. 1109\/EuroSP.2019.00013"},{"key":"e_1_3_2_2_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978358"},{"key":"e_1_3_2_2_17_1","volume-title":"2016 53nd ACM\/EDAC\/IEEE Design Automation Conference (DAC). https:\/\/doi.org\/10","author":"Abera T.","unstructured":"T. Abera , N. Asokan , L. Davi , F. Koushanfar , A. Paverd , A. R. Sadeghi , and G. Tsudik . [n. d.]. Things, trouble, trust: On building trust in IoT systems . In 2016 53nd ACM\/EDAC\/IEEE Design Automation Conference (DAC). https:\/\/doi.org\/10 . 1145\/2897937.2905020 T. Abera, N. Asokan, L. Davi, F. Koushanfar, A. Paverd, A. R. Sadeghi, and G. Tsudik. [n. d.]. Things, trouble, trust: On building trust in IoT systems. In 2016 53nd ACM\/EDAC\/IEEE Design Automation Conference (DAC). https:\/\/doi.org\/10. 1145\/2897937.2905020"},{"key":"e_1_3_2_2_18_1","unstructured":"Ittai Anati Shay Gueron S. Johnson and Vincent Scarlata. 2013. Innovative Technology for CPU Based Attestation and Sealing.  Ittai Anati Shay Gueron S. Johnson and Vincent Scarlata. 2013. Innovative Technology for CPU Based Attestation and Sealing."},{"key":"e_1_3_2_2_19_1","volume-title":"State-of-the-Art Software-Based Remote Attestation: Opportunities and Open Issues for Internet of Things. Sensors 21, 5","author":"Joel J\u00f8rgensen Ankerg\u00e5rd Sigurd Frej","year":"2021","unstructured":"Sigurd Frej Joel J\u00f8rgensen Ankerg\u00e5rd , Edlira Dushku , and Nicola Dragoni . 2021. State-of-the-Art Software-Based Remote Attestation: Opportunities and Open Issues for Internet of Things. Sensors 21, 5 ( 2021 ). https:\/\/doi.org\/10.3390\/ s21051598 Sigurd Frej Joel J\u00f8rgensen Ankerg\u00e5rd, Edlira Dushku, and Nicola Dragoni. 2021. State-of-the-Art Software-Based Remote Attestation: Opportunities and Open Issues for Internet of Things. Sensors 21, 5 (2021). https:\/\/doi.org\/10.3390\/ s21051598"},{"key":"e_1_3_2_2_20_1","volume-title":"TyTAN: Tiny Trust Anchor for Tiny Devices. In 2015 52nd ACM\/EDAC\/IEEE Design Automation Conference. https:\/\/doi.org\/10","author":"Brasser F.","unstructured":"F. Brasser , B. El Mahjoub , A. R. Sadeghi , C. Wachsmann , and P. Koeberl . [n. d.] . TyTAN: Tiny Trust Anchor for Tiny Devices. In 2015 52nd ACM\/EDAC\/IEEE Design Automation Conference. https:\/\/doi.org\/10 .1145\/2744769.2744922 10.1145\/2744769.2744922 F. Brasser, B. El Mahjoub, A. R. Sadeghi, C. Wachsmann, and P. Koeberl. [n. d.]. TyTAN: Tiny Trust Anchor for Tiny Devices. In 2015 52nd ACM\/EDAC\/IEEE Design Automation Conference. https:\/\/doi.org\/10.1145\/2744769.2744922"},{"key":"e_1_3_2_2_21_1","volume-title":"Smith","author":"Bratus Sergey","year":"2008","unstructured":"Sergey Bratus , Nihal D'Cunha , Evan Sparks , and Sean W . Smith . 2008 . TOCTOU, Traps , and Trusted Computing. In Trusted Computing - Challenges and Applications, Peter Lipp, Ahmad-Reza Sadeghi, and Klaus-Michael Koch (Eds.). Springer Berlin Heidelberg , Berlin, Heidelberg, 14--32. Sergey Bratus, Nihal D'Cunha, Evan Sparks, and Sean W. Smith. 2008. TOCTOU, Traps, and Trusted Computing. In Trusted Computing - Challenges and Applications, Peter Lipp, Ahmad-Reza Sadeghi, and Klaus-Michael Koch (Eds.). Springer Berlin Heidelberg, Berlin, Heidelberg, 14--32."},{"key":"e_1_3_2_2_22_1","volume-title":"Automation Test in Europe Conference Exhibition (DATE). 1606--1609","author":"Bresch Cyril","year":"2020","unstructured":"Cyril Bresch , Roman Lysecky , and David H\u00e9ly . 2020 . BackFlow: Backward Edge Control Flow Enforcement for Low End ARM Microcontrollers. In 2020 Design , Automation Test in Europe Conference Exhibition (DATE). 1606--1609 . https: \/\/doi.org\/10.23919\/DATE48585.2020.9116396 10.23919\/DATE48585.2020.9116396 Cyril Bresch, Roman Lysecky, and David H\u00e9ly. 2020. BackFlow: Backward Edge Control Flow Enforcement for Low End ARM Microcontrollers. In 2020 Design, Automation Test in Europe Conference Exhibition (DATE). 1606--1609. https: \/\/doi.org\/10.23919\/DATE48585.2020.9116396"},{"key":"e_1_3_2_2_23_1","volume-title":"SoK: Shining Light on Shadow Stacks. In 2019 IEEE Symposium on Security and Privacy (SP). 985--999. https:\/\/doi.org\/10.1109\/SP.2019.00076 CODASPY '22, April 24--27","author":"Burow Nathan","year":"2019","unstructured":"Nathan Burow , Xinping Zhang , and Mathias Payer . 2019 . SoK: Shining Light on Shadow Stacks. In 2019 IEEE Symposium on Security and Privacy (SP). 985--999. https:\/\/doi.org\/10.1109\/SP.2019.00076 CODASPY '22, April 24--27 , 2022, Baltimore, MD, USA Stefan Hristozov, Moritz Wettermann, and Manuel Huber 10.1109\/SP.2019.00076 Nathan Burow, Xinping Zhang, and Mathias Payer. 2019. SoK: Shining Light on Shadow Stacks. In 2019 IEEE Symposium on Security and Privacy (SP). 985--999. https:\/\/doi.org\/10.1109\/SP.2019.00076 CODASPY '22, April 24--27, 2022, Baltimore, MD, USA Stefan Hristozov, Moritz Wettermann, and Manuel Huber"},{"key":"e_1_3_2_2_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/3196494.3196526"},{"key":"e_1_3_2_2_25_1","volume-title":"ERASMUS: Efficient Remote Attestation via Self- Measurement for Unattended Settings. CoRR abs\/1707.09043","author":"Carpent Xavier","year":"2017","unstructured":"Xavier Carpent , Norrathep Rattanavipanon , and Gene Tsudik . 2017 . ERASMUS: Efficient Remote Attestation via Self- Measurement for Unattended Settings. CoRR abs\/1707.09043 (2017). arXiv:1707.09043 http:\/\/arxiv.org\/abs\/1707.09043 Xavier Carpent, Norrathep Rattanavipanon, and Gene Tsudik. 2017. ERASMUS: Efficient Remote Attestation via Self- Measurement for Unattended Settings. CoRR abs\/1707.09043 (2017). arXiv:1707.09043 http:\/\/arxiv.org\/abs\/1707.09043"},{"key":"e_1_3_2_2_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/HST.2018.8383885"},{"key":"e_1_3_2_2_27_1","volume-title":"NDSS","author":"Eldefrawy Karim","year":"2012","unstructured":"Karim Eldefrawy , Aur\u00e9lien Francillon , Daniele Perito , and Gene Tsudik . [n. d.]. SMART : Secure and Minimal Architecture for (Establishing a Dynamic) Root of Trust . In NDSS 2012 . Karim Eldefrawy, Aur\u00e9lien Francillon, Daniele Perito, and Gene Tsudik. [n. d.]. SMART: Secure and Minimal Architecture for (Establishing a Dynamic) Root of Trust. In NDSS 2012."},{"key":"e_1_3_2_2_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/1455770.1455775"},{"key":"e_1_3_2_2_30_1","unstructured":"Aur\u00e9lien Francillon Quan Nguyen Kasper B. Rasmussen and Gene Tsudik. [n. d.]. A Minimalist Approach to Remote Attestation (DATE '14).  Aur\u00e9lien Francillon Quan Nguyen Kasper B. Rasmussen and Gene Tsudik. [n. d.]. A Minimalist Approach to Remote Attestation (DATE '14)."},{"key":"e_1_3_2_2_31_1","unstructured":"Garrett Gu and Hovav Shacham. 2020. Return-Oriented Programming in RISC-V. arXiv:2007.14995 [cs.CR]  Garrett Gu and Hovav Shacham. 2020. Return-Oriented Programming in RISC-V. arXiv:2007.14995 [cs.CR]"},{"key":"e_1_3_2_2_32_1","volume-title":"Practical Runtime Attestation for Tiny IoT Devices. In NDSS Workshop on Decentralized IoT Security and Standards (DISS).","author":"Hristozov Stefan","year":"2018","unstructured":"Stefan Hristozov , Johann Heyszl , Steffen Wagner , and Georg Sigl . 2018 . Practical Runtime Attestation for Tiny IoT Devices. In NDSS Workshop on Decentralized IoT Security and Standards (DISS). Stefan Hristozov, Johann Heyszl, Steffen Wagner, and Georg Sigl. 2018. Practical Runtime Attestation for Tiny IoT Devices. In NDSS Workshop on Decentralized IoT Security and Standards (DISS)."},{"key":"e_1_3_2_2_33_1","volume-title":"The Lazarus Effect: Healing Compromised Devices in the Internet of Small Things (ASIA CCS '20)","author":"Huber Manuel","year":"2020","unstructured":"Manuel Huber , Stefan Hristozov , Simon Ott , Vasil Sarafov , and Marcus Peinado . 2020 . The Lazarus Effect: Healing Compromised Devices in the Internet of Small Things (ASIA CCS '20) . 6--19. https:\/\/doi.org\/10.1145\/3320269.3384723 10.1145\/3320269.3384723 Manuel Huber, Stefan Hristozov, Simon Ott, Vasil Sarafov, and Marcus Peinado. 2020. The Lazarus Effect: Healing Compromised Devices in the Internet of Small Things (ASIA CCS '20). 6--19. https:\/\/doi.org\/10.1145\/3320269.3384723"},{"key":"e_1_3_2_2_34_1","doi-asserted-by":"publisher","DOI":"10.1145\/3098243.3098260"},{"key":"e_1_3_2_2_35_1","doi-asserted-by":"publisher","DOI":"10.1145\/3407023.3407028"},{"key":"e_1_3_2_2_36_1","doi-asserted-by":"publisher","DOI":"10.1145\/3098954.3103165"},{"key":"e_1_3_2_2_37_1","doi-asserted-by":"publisher","DOI":"10.1145\/3320269.3384738"},{"key":"e_1_3_2_2_38_1","unstructured":"S. Johnson Vinnie Scarlata C. Rozas E. Brickell and Frank McKeen. 2016. Intel\u00ae Software Guard Extensions: EPID Provisioning and Attestation Services.  S. Johnson Vinnie Scarlata C. Rozas E. Brickell and Frank McKeen. 2016. Intel\u00ae Software Guard Extensions: EPID Provisioning and Attestation Services."},{"key":"e_1_3_2_2_39_1","doi-asserted-by":"publisher","DOI":"10.1007\/s10766-020-00673-z"},{"key":"e_1_3_2_2_40_1","volume-title":"Whitepaper: Microcontroller Readback Protection: Bypasses and Defenses. Technical Report","author":"Khan Sultan Qasim","year":"2020","unstructured":"Sultan Qasim Khan . 2020 . Whitepaper: Microcontroller Readback Protection: Bypasses and Defenses. Technical Report . NCC Group . Sultan Qasim Khan. 2020. Whitepaper: Microcontroller Readback Protection: Bypasses and Defenses. Technical Report. NCC Group."},{"key":"e_1_3_2_2_41_1","volume-title":"TrustLite: A Security Architecture for Tiny Embedded Devices (EuroSys '14)","author":"Koeberl Patrick","unstructured":"Patrick Koeberl , Steffen Schulz , Ahmad-Reza Sadeghi , and Vijay Varadharajan . [n. d.]. TrustLite: A Security Architecture for Tiny Embedded Devices (EuroSys '14) . Article 10. https:\/\/doi.org\/10.1145\/2592798.2592824 10.1145\/2592798.2592824 Patrick Koeberl, Steffen Schulz, Ahmad-Reza Sadeghi, and Vijay Varadharajan. [n. d.]. TrustLite: A Security Architecture for Tiny Embedded Devices (EuroSys '14). Article 10. https:\/\/doi.org\/10.1145\/2592798.2592824"},{"key":"e_1_3_2_2_42_1","volume-title":"Whitepaper: Ripple20. Technical Report. JSOF.","author":"Kol Moshe","year":"2020","unstructured":"Moshe Kol and Shlomi Oberman . 2020 . Whitepaper: Ripple20. Technical Report. JSOF. Moshe Kol and Shlomi Oberman. 2020. Whitepaper: Ripple20. Technical Report. JSOF."},{"key":"e_1_3_2_2_43_1","unstructured":"KrebsOnSecurity. [n. d.]. Source Code for IoT Botnet ?Mirai' Released. https: \/\/krebsonsecurity.com\/2016\/10\/source-code-for-iot-botnet-mirai-released\/. Accessed: 2021-02--17.  KrebsOnSecurity. [n. d.]. Source Code for IoT Botnet ?Mirai' Released. https: \/\/krebsonsecurity.com\/2016\/10\/source-code-for-iot-botnet-mirai-released\/. Accessed: 2021-02--17."},{"key":"e_1_3_2_2_44_1","volume-title":"Proceedings of the 2nd International Workshop on Hardware and Architectural Support for Security and Privacy (TelAviv, Israel) (HASP '13)","author":"McKeen Frank","unstructured":"Frank McKeen , Ilya Alexandrovich , Alex Berenzon , Carlos V. Rozas , Hisham Shafi , Vedvyas Shanbhogue , and Uday R. Savagaonkar . 2013. Innovative Instructions and Software Model for Isolated Execution . In Proceedings of the 2nd International Workshop on Hardware and Architectural Support for Security and Privacy (TelAviv, Israel) (HASP '13) . Association for Computing Machinery, New York, NY, USA, Article 10, 1 pages. https:\/\/doi.org\/10.1145\/2487726.2488368 10.1145\/2487726.2488368 Frank McKeen, Ilya Alexandrovich, Alex Berenzon, Carlos V. Rozas, Hisham Shafi, Vedvyas Shanbhogue, and Uday R. Savagaonkar. 2013. Innovative Instructions and Software Model for Isolated Execution. In Proceedings of the 2nd International Workshop on Hardware and Architectural Support for Security and Privacy (TelAviv, Israel) (HASP '13). Association for Computing Machinery, New York, NY, USA, Article 10, 1 pages. https:\/\/doi.org\/10.1145\/2487726.2488368"},{"key":"#cr-split#-e_1_3_2_2_45_1.1","doi-asserted-by":"crossref","unstructured":"Johanna Nieminen Teemu Savolainen Markus Isomaki Basavaraj Patil Zach Shelby and Carles Gomez. 2015. IPv6 over BLUETOOTH(R) Low Energy. RFC 7668. https:\/\/doi.org\/10.17487\/RFC7668 10.17487\/RFC7668","DOI":"10.17487\/RFC7668"},{"key":"#cr-split#-e_1_3_2_2_45_1.2","doi-asserted-by":"crossref","unstructured":"Johanna Nieminen Teemu Savolainen Markus Isomaki Basavaraj Patil Zach Shelby and Carles Gomez. 2015. IPv6 over BLUETOOTH(R) Low Energy. RFC 7668. https:\/\/doi.org\/10.17487\/RFC7668","DOI":"10.17487\/RFC7668"},{"key":"e_1_3_2_2_46_1","volume-title":"On the TOCTOU Problem in Remote Attestation. CoRR abs\/2005.03873","author":"Oliveira Nunes Ivan De","year":"2020","unstructured":"Ivan De Oliveira Nunes , Sashidhar Jakkamsetti , Norrathep Rattanavipanon , and Gene Tsudik . 2020. On the TOCTOU Problem in Remote Attestation. CoRR abs\/2005.03873 ( 2020 ). arXiv:2005.03873 https:\/\/arxiv.org\/abs\/2005.03873 Ivan De Oliveira Nunes, Sashidhar Jakkamsetti, Norrathep Rattanavipanon, and Gene Tsudik. 2020. On the TOCTOU Problem in Remote Attestation. CoRR abs\/2005.03873 (2020). arXiv:2005.03873 https:\/\/arxiv.org\/abs\/2005.03873"},{"key":"e_1_3_2_2_47_1","doi-asserted-by":"crossref","unstructured":"Thomas Nyman Jan-Erik Ekberg Lucas Davi and N. Asokan. 2017. CFI CaRE: Hardware-Supported Call and Return Enforcement for Commercial Microcontrollers. In Research in Attacks Intrusions and Defenses Marc Dacier Michael Bailey Michalis Polychronakis and Manos Antonakakis (Eds.). Springer International Publishing Cham 259--284.  Thomas Nyman Jan-Erik Ekberg Lucas Davi and N. Asokan. 2017. CFI CaRE: Hardware-Supported Call and Return Enforcement for Commercial Microcontrollers. In Research in Attacks Intrusions and Defenses Marc Dacier Michael Bailey Michalis Polychronakis and Manos Antonakakis (Eds.). Springer International Publishing Cham 259--284.","DOI":"10.1007\/978-3-319-66332-6_12"},{"key":"e_1_3_2_2_48_1","volume-title":"11th USENIX Workshop on Offensive Technologies (WOOT 17)","author":"Obermaier Johannes","year":"2017","unstructured":"Johannes Obermaier and Stefan Tatschner . 2017 . Shedding too much Light on a Microcontroller's Firmware Protection . In 11th USENIX Workshop on Offensive Technologies (WOOT 17) . USENIX Association, Vancouver, BC. https:\/\/www. usenix.org\/conference\/woot17\/workshop-program\/presentation\/obermaier Johannes Obermaier and Stefan Tatschner. 2017. Shedding too much Light on a Microcontroller's Firmware Protection. In 11th USENIX Workshop on Offensive Technologies (WOOT 17). USENIX Association, Vancouver, BC. https:\/\/www. usenix.org\/conference\/woot17\/workshop-program\/presentation\/obermaier"},{"key":"e_1_3_2_2_49_1","volume-title":"Jorge Rodr\u00edguez Canseco, and Alejandro Calleja","author":"Pastrana Sergio","year":"2016","unstructured":"Sergio Pastrana , Jorge Rodr\u00edguez Canseco, and Alejandro Calleja . 2016 . ArduWorm : A functional malware targeting arduino devices. Sergio Pastrana, Jorge Rodr\u00edguez Canseco, and Alejandro Calleja. 2016. ArduWorm: A functional malware targeting arduino devices."},{"key":"e_1_3_2_2_51_1","volume-title":"Finding Buffer Overflow Inducing Loops in Binary Executables. In 2012 IEEE Sixth International Conference on Software Security and Reliability. 177--186","author":"Rawat S.","year":"2012","unstructured":"S. Rawat and L. Mounier . 2012 . Finding Buffer Overflow Inducing Loops in Binary Executables. In 2012 IEEE Sixth International Conference on Software Security and Reliability. 177--186 . https:\/\/doi.org\/10.1109\/SERE. 2012 .30 10.1109\/SERE.2012.30 S. Rawat and L. Mounier. 2012. Finding Buffer Overflow Inducing Loops in Binary Executables. In 2012 IEEE Sixth International Conference on Software Security and Reliability. 177--186. https:\/\/doi.org\/10.1109\/SERE.2012.30"},{"key":"e_1_3_2_2_52_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.14"},{"key":"e_1_3_2_2_53_1","volume-title":"Boot Attestation: Secure Remote Reporting with Off-The-Shelf IoT Sensors. Cryptology ePrint Archive, Report 2017\/577.","author":"Schulz Steffen","year":"2017","unstructured":"Steffen Schulz , Andr\u00e9 Schaller , Florian Kohnh\u00e4user , and Stefan Katzenbeisser . 2017 . Boot Attestation: Secure Remote Reporting with Off-The-Shelf IoT Sensors. Cryptology ePrint Archive, Report 2017\/577. Steffen Schulz, Andr\u00e9 Schaller, Florian Kohnh\u00e4user, and Stefan Katzenbeisser. 2017. Boot Attestation: Secure Remote Reporting with Off-The-Shelf IoT Sensors. Cryptology ePrint Archive, Report 2017\/577."},{"key":"e_1_3_2_2_54_1","doi-asserted-by":"publisher","DOI":"10.1145\/1095809.1095812"},{"key":"e_1_3_2_2_55_1","volume-title":"IEEE Symposium on Security and Privacy.","author":"Seshadri A.","unstructured":"A. Seshadri , A. Perrig , L. van Doorn , and P. Khosla . 2004. SWATT: softWare-based attestation for embedded devices . In IEEE Symposium on Security and Privacy. A. Seshadri, A. Perrig, L. van Doorn, and P. Khosla. 2004. SWATT: softWare-based attestation for embedded devices. In IEEE Symposium on Security and Privacy."},{"key":"e_1_3_2_2_56_1","doi-asserted-by":"crossref","unstructured":"Carlton Shepherd Konstantinos Markantonakis and Georges-Axel Jaloyan. 2021. LIRA-V: Lightweight Remote Attestation for Constrained RISC-V Devices. arXiv:2102.08804 [cs.CR]  Carlton Shepherd Konstantinos Markantonakis and Georges-Axel Jaloyan. 2021. LIRA-V: Lightweight Remote Attestation for Constrained RISC-V Devices. arXiv:2102.08804 [cs.CR]","DOI":"10.1109\/SPW53761.2021.00036"},{"key":"e_1_3_2_2_57_1","volume-title":"Article 51 (Sept.","author":"Steiner Rodrigo Vieira","year":"2016","unstructured":"Rodrigo Vieira Steiner and Emil Lupu . 2016. Attestation in Wireless Sensor Networks: A Survey. ACM Comput. Surv. 49, 3 , Article 51 (Sept. 2016 ), 31 pages. https:\/\/doi.org\/10.1145\/2988546 10.1145\/2988546 Rodrigo Vieira Steiner and Emil Lupu. 2016. Attestation in Wireless Sensor Networks: A Survey. ACM Comput. Surv. 49, 3, Article 51 (Sept. 2016), 31 pages. https:\/\/doi.org\/10.1145\/2988546"},{"key":"e_1_3_2_2_58_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2013.13"},{"key":"e_1_3_2_2_59_1","volume-title":"30th Usenix Security Symposium. https:\/\/www.microsoft.com\/en-us\/research\/ publication\/dice-a-formally-verified-implementation-of-dice-measured-boot\/","author":"Tao Zhe","unstructured":"Zhe Tao , Aseem Rastogi , Naman Gupta , Kapil Vaswani , and Aditya V. Thakur . 2021. DICE*: A Formally Verified Implementation of DICE Measured Boot . In 30th Usenix Security Symposium. https:\/\/www.microsoft.com\/en-us\/research\/ publication\/dice-a-formally-verified-implementation-of-dice-measured-boot\/ Zhe Tao, Aseem Rastogi, Naman Gupta, Kapil Vaswani, and Aditya V. Thakur. 2021. DICE*: A Formally Verified Implementation of DICE Measured Boot. In 30th Usenix Security Symposium. https:\/\/www.microsoft.com\/en-us\/research\/ publication\/dice-a-formally-verified-implementation-of-dice-measured-boot\/"},{"key":"e_1_3_2_2_60_1","unstructured":"Trusted Computing Group. 2018. Hardware Requirements for a Device Identifier Composition Engine.  Trusted Computing Group. 2018. Hardware Requirements for a Device Identifier Composition Engine."},{"key":"e_1_3_2_2_61_1","unstructured":"Trusted Computing Group. 2018. Implicit Identity Based Device Attestation.  Trusted Computing Group. 2018. Implicit Identity Based Device Attestation."},{"key":"e_1_3_2_2_62_1","unstructured":"Trusted Computing Group. 2019. Trusted Platform Module (TPM) 2.0: A Brief Introduction. https:\/\/trustedcomputinggroup.org\/wp-content\/uploads\/2019_ TCG_TPM2_BriefOverview_DR02web.pdf. Accessed: 2020-09-04.  Trusted Computing Group. 2019. Trusted Platform Module (TPM) 2.0: A Brief Introduction. https:\/\/trustedcomputinggroup.org\/wp-content\/uploads\/2019_ TCG_TPM2_BriefOverview_DR02web.pdf. Accessed: 2020-09-04."},{"key":"e_1_3_2_2_63_1","unstructured":"Trusted Computing Group. 2020. DICE Layering Architecture.  Trusted Computing Group. 2020. DICE Layering Architecture."},{"key":"e_1_3_2_2_64_1","unstructured":"Trusted Computing Group. 2020. Symmetric Identity Based Device Attestation.  Trusted Computing Group. 2020. Symmetric Identity Based Device Attestation."},{"key":"e_1_3_2_2_65_1","volume-title":"Control-Flow Integrity for Real-Time Embedded Systems. In 31st Euromicro Conference on Real-Time Systems (ECRTS 2019) (Leibniz International Proceedings in Informatics (LIPIcs)","volume":"24","author":"Walls Robert J.","year":"2019","unstructured":"Robert J. Walls , Nicholas F. Brown , Thomas Le Baron , Craig A. Shue , Hamed Okhravi , and Bryan C. Ward . 2019 . Control-Flow Integrity for Real-Time Embedded Systems. In 31st Euromicro Conference on Real-Time Systems (ECRTS 2019) (Leibniz International Proceedings in Informatics (LIPIcs) , Vol. 133), Sophie Quinton (Ed.). Schloss Dagstuhl--Leibniz-Zentrum fuer Informatik, Dagstuhl, Germany, 2:1--2: 24 . https:\/\/doi.org\/10.4230\/LIPIcs.ECRTS. 2019 .2 10.4230\/LIPIcs.ECRTS.2019.2 Robert J. Walls, Nicholas F. Brown, Thomas Le Baron, Craig A. Shue, Hamed Okhravi, and Bryan C. Ward. 2019. Control-Flow Integrity for Real-Time Embedded Systems. In 31st Euromicro Conference on Real-Time Systems (ECRTS 2019) (Leibniz International Proceedings in Informatics (LIPIcs), Vol. 133), Sophie Quinton (Ed.). Schloss Dagstuhl--Leibniz-Zentrum fuer Informatik, Dagstuhl, Germany, 2:1--2:24. https:\/\/doi.org\/10.4230\/LIPIcs.ECRTS.2019.2"},{"key":"e_1_3_2_2_66_1","doi-asserted-by":"crossref","unstructured":"N. R. Weidler D. Brown S. A. Mitchel J. Anderson J. R. Williams A. Costley C. Kunz C. Wilkinson R. Wehbe and R. Gerdes. [n. d.]. Return-Oriented Programming on a Cortex-M Processor. In 2017 IEEE Trustcom\/BigDataSE\/ICESS.  N. R. Weidler D. Brown S. A. Mitchel J. Anderson J. R. Williams A. Costley C. Kunz C. Wilkinson R. Wehbe and R. Gerdes. [n. d.]. Return-Oriented Programming on a Cortex-M Processor. In 2017 IEEE Trustcom\/BigDataSE\/ICESS.","DOI":"10.1109\/Trustcom\/BigDataSE\/ICESS.2017.318"},{"key":"e_1_3_2_2_67_1","volume-title":"2019 IEEE Symposium on Security and Privacy (SP). 1415--1430","author":"Xu M.","unstructured":"M. Xu , M. Huber , Z. Sun , P. England , M. Peinado , S. Lee , A. Marochko , D. Mattoon , R. Spiger , and S. Thom . 2019. Dominance as a New Trusted Computing Primitive for the Internet of Things . In 2019 IEEE Symposium on Security and Privacy (SP). 1415--1430 . M. Xu, M. Huber, Z. Sun, P. England, M. Peinado, S. Lee, A. Marochko, D. Mattoon, R. Spiger, and S. Thom. 2019. Dominance as a New Trusted Computing Primitive for the Internet of Things. In 2019 IEEE Symposium on Security and Privacy (SP). 1415--1430."},{"key":"e_1_3_2_2_68_1","unstructured":"Joseph Yiu. 2013. The Definitive Guide to ARM\u00ae Cortex\u00ae-M3 and Cortex\u00ae-M4 Processors. Newnes  Joseph Yiu. 2013. The Definitive Guide to ARM\u00ae Cortex\u00ae-M3 and Cortex\u00ae-M4 Processors. Newnes"}],"event":{"name":"CODASPY '22: Twelveth ACM Conference on Data and Application Security and Privacy","location":"Baltimore MD USA","acronym":"CODASPY '22","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the Twelfth ACM Conference on Data and Application Security and Privacy"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3508398.3511507","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3508398.3511507","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T19:30:39Z","timestamp":1750188639000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3508398.3511507"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,4,14]]},"references-count":67,"alternative-id":["10.1145\/3508398.3511507","10.1145\/3508398"],"URL":"https:\/\/doi.org\/10.1145\/3508398.3511507","relation":{},"subject":[],"published":{"date-parts":[[2022,4,14]]},"assertion":[{"value":"2022-04-15","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}