{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T04:14:31Z","timestamp":1750220071398,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":67,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,12,5]],"date-time":"2022-12-05T00:00:00Z","timestamp":1670198400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"National Security Agency (NSA)","award":["H98230-17-D-0080"],"award-info":[{"award-number":["H98230-17-D-0080"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,12,5]]},"DOI":"10.1145\/3564625.3564641","type":"proceedings-article","created":{"date-parts":[[2022,12,3]],"date-time":"2022-12-03T01:01:29Z","timestamp":1670029289000},"page":"576-590","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":1,"title":["Analysis of Payment Service Provider SDKs in Android"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-4275-894X","authenticated-orcid":false,"given":"Samin Yaseer","family":"Mahmud","sequence":"first","affiliation":[{"name":"North Carolina State University, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3399-4027","authenticated-orcid":false,"given":"K. Virgil","family":"English","sequence":"additional","affiliation":[{"name":"North Carolina State University, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7907-2327","authenticated-orcid":false,"given":"Seaver","family":"Thorn","sequence":"additional","affiliation":[{"name":"North Carolina State University, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3043-8092","authenticated-orcid":false,"given":"William","family":"Enck","sequence":"additional","affiliation":[{"name":"North Carolina State University, United States of America"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4313-3714","authenticated-orcid":false,"given":"Adam","family":"Oest","sequence":"additional","affiliation":[{"name":"PayPal, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8762-4566","authenticated-orcid":false,"given":"Muhammad","family":"Saad","sequence":"additional","affiliation":[{"name":"PayPal, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2022,12,5]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/168588.168615"},{"key":"e_1_3_2_1_2_1","volume-title":"EMV: Why Payment Systems Fail. In Communications of the ACM.","author":"Anderson Ross","year":"2014","unstructured":"Ross Anderson and Steven Murdoch . 2014 . EMV: Why Payment Systems Fail. In Communications of the ACM. Ross Anderson and Steven Murdoch. 2014. EMV: Why Payment Systems Fail. In Communications of the ACM."},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/3098243.3098247"},{"key":"e_1_3_2_1_4_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Andow Benjamin","year":"2019","unstructured":"Benjamin Andow , Samin\u00a0Yaseer Mahmud , Wenyu Wang , Justin Whitaker , William Enck , Bradley Reaves , Kapil Singh , and Tao Xie . 2019 . PolicyLint: Investigating Internal Privacy Policy Contradictions on Google Play . In Proceedings of the USENIX Security Symposium. Benjamin Andow, Samin\u00a0Yaseer Mahmud, Wenyu Wang, Justin Whitaker, William Enck, Bradley Reaves, Kapil Singh, and Tao Xie. 2019. PolicyLint: Investigating Internal Privacy Policy Contradictions on Google Play. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_1_5_1","unstructured":"Androbugs Framework 2015. Androbugs Framework. https:\/\/github.com\/AndroBugs\/AndroBugs_Framework.  Androbugs Framework 2015. Androbugs Framework. https:\/\/github.com\/AndroBugs\/AndroBugs_Framework."},{"key":"e_1_3_2_1_6_1","unstructured":"Apple. [n.d.]. Apple Pay\u2019s Payment Service Provider List. https:\/\/developer.apple.com\/apple-pay\/payment-platforms\/.  Apple. [n.d.]. Apple Pay\u2019s Payment Service Provider List. https:\/\/developer.apple.com\/apple-pay\/payment-platforms\/."},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/2594291.2594299"},{"key":"e_1_3_2_1_8_1","unstructured":"ASM. [n.d.]. ASM: A Java bytecode manipulation and analysis framework. https:\/\/asm.ow2.io.  ASM. [n.d.]. ASM: A Java bytecode manipulation and analysis framework. https:\/\/asm.ow2.io."},{"key":"e_1_3_2_1_9_1","unstructured":"Bhavani\u00a0A B. 2013. Cross-site Scripting Attacks on Android WebView. In International Journal of Computer Science and Network.  Bhavani\u00a0A B. 2013. Cross-site Scripting Attacks on Android WebView. In International Journal of Computer Science and Network."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.11"},{"key":"e_1_3_2_1_11_1","unstructured":"Brian Krebs. 2014. The Target Breach By the Numbers. https:\/\/krebsonsecurity.com\/2014\/05\/the-target-breach-by-the-numbers\/.  Brian Krebs. 2014. The Target Breach By the Numbers. https:\/\/krebsonsecurity.com\/2014\/05\/the-target-breach-by-the-numbers\/."},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1145\/3377811.3380417"},{"key":"e_1_3_2_1_13_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Chen Yi","year":"2019","unstructured":"Yi Chen , Luyi Xing , Yue Qin , Xiaojing Liao , XiaoFeng Wang , Kai Chen , and Wei Zou . 2019 . Devils in the Guidance: Predicting Logic Vulnerabilities in Payment Syndication Services through Automated Document Analysis . In Proceedings of the USENIX Security Symposium. Yi Chen, Luyi Xing, Yue Qin, Xiaojing Liao, XiaoFeng Wang, Kai Chen, and Wei Zou. 2019. Devils in the Guidance: Predicting Logic Vulnerabilities in Payment Syndication Services through Automated Document Analysis. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_1_14_1","volume-title":"Proceedings of the International Workshop on Information Security Applications.","author":"Chin Erika","year":"2013","unstructured":"Erika Chin and David Wagner . 2013 . Bifocals: Analyzing WebView Vulnerabilities in Android Applications . In Proceedings of the International Workshop on Information Security Applications. Erika Chin and David Wagner. 2013. Bifocals: Analyzing WebView Vulnerabilities in Android Applications. In Proceedings of the International Workshop on Information Security Applications."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"crossref","unstructured":"Tomi Dahlberga Niina Mallata and Jan Ondrusb. 2007. Past present and future of mobile payments research: A literature review. In Electronic Commerce Research and Applications.  Tomi Dahlberga Niina Mallata and Jan Ondrusb. 2007. Past present and future of mobile payments research: A literature review. In Electronic Commerce Research and Applications.","DOI":"10.1016\/j.elerap.2007.02.001"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516693"},{"key":"e_1_3_2_1_17_1","volume-title":"Proceedings of the USENIX Symposium on Operating Systems Design and Implementation (OSDI).","author":"Enck William","year":"2010","unstructured":"William Enck , Peter Gilbert , Byung-Gon Chun , Landon\u00a0 P. Cox , Jaeyeon Jung , Patrick McDaniel , and Anmol\u00a0 N. Sheth . 2010 . TaintDroid: An Information-Flow Tracking System for Realtime Privacy Monitoring on Smartphones . In Proceedings of the USENIX Symposium on Operating Systems Design and Implementation (OSDI). William Enck, Peter Gilbert, Byung-Gon Chun, Landon\u00a0P. Cox, Jaeyeon Jung, Patrick McDaniel, and Anmol\u00a0N. Sheth. 2010. TaintDroid: An Information-Flow Tracking System for Realtime Privacy Monitoring on Smartphones. In Proceedings of the USENIX Symposium on Operating Systems Design and Implementation (OSDI)."},{"key":"e_1_3_2_1_18_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Enck William","year":"2011","unstructured":"William Enck , Damien Octeau , Patrick McDaniel , and Swarat Chaudhuri . 2011 . A Study of Android Application Security . In Proceedings of the USENIX Security Symposium. William Enck, Damien Octeau, Patrick McDaniel, and Swarat Chaudhuri. 2011. A Study of Android Application Security. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382205"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516655"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/2046707.2046779"},{"key":"e_1_3_2_1_22_1","volume-title":"Proceedings of the ACM Conference on Computer and Communications Security (CCS).","author":"Fengguo\u00a0Wei Xinming\u00a0Ou","year":"2014","unstructured":"Xinming\u00a0Ou Fengguo\u00a0Wei , Sankardas\u00a0Roy and Robby . 2014 . Amandroid: A Precise and General Inter-component Data Flow Analysis Framework for Security Vetting of Android Apps . In Proceedings of the ACM Conference on Computer and Communications Security (CCS). Xinming\u00a0Ou Fengguo\u00a0Wei, Sankardas\u00a0Roy and Robby. 2014. Amandroid: A Precise and General Inter-component Data Flow Analysis Framework for Security Vetting of Android Apps. In Proceedings of the ACM Conference on Computer and Communications Security (CCS)."},{"key":"e_1_3_2_1_23_1","unstructured":"FernFlower 2021. Fernflower. https:\/\/github.com\/JetBrains\/intellij-community\/blob\/master\/plugins\/java-decompiler\/engine\/README.md.  FernFlower 2021. Fernflower. https:\/\/github.com\/JetBrains\/intellij-community\/blob\/master\/plugins\/java-decompiler\/engine\/README.md."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23083"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2014.10.005"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382204"},{"key":"e_1_3_2_1_27_1","unstructured":"Google. [n.d.]. Google Pay\u2019s Payment Service Provider List. https:\/\/developers.google.com\/pay\/api.  Google. [n.d.]. Google Pay\u2019s Payment Service Provider List. https:\/\/developers.google.com\/pay\/api."},{"key":"e_1_3_2_1_28_1","unstructured":"JD Project 2019. JD Project. https:\/\/java-decompiler.github.io\/.  JD Project 2019. JD Project. https:\/\/java-decompiler.github.io\/."},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1109\/COMPSAC.2018.10282"},{"key":"e_1_3_2_1_30_1","volume-title":"Tunnels in Hash Functions: MD5 Collisions Within a Minute.IACR Cryptol. ePrint Arch. 2006","author":"Klima Vlastimil","year":"2006","unstructured":"Vlastimil Klima . 2006. Tunnels in Hash Functions: MD5 Collisions Within a Minute.IACR Cryptol. ePrint Arch. 2006 ( 2006 ), 105. Vlastimil Klima. 2006. Tunnels in Hash Functions: MD5 Collisions Within a Minute.IACR Cryptol. ePrint Arch. 2006 (2006), 105."},{"key":"e_1_3_2_1_31_1","volume-title":"Crysl: Validating correct usage of cryptographic apis. CoRR","author":"Kruger S","year":"2017","unstructured":"S Kruger , J Spath , Karim Ali , Eric Bodden , and Mira Mezini . 2017 . Crysl: Validating correct usage of cryptographic apis. CoRR (2017). S Kruger, J Spath, Karim Ali, Eric Bodden, and Mira Mezini. 2017. Crysl: Validating correct usage of cryptographic apis. CoRR (2017)."},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2015.48"},{"key":"e_1_3_2_1_33_1","volume-title":"Screenmilker: How to Milk Your Android Screen for Secrets.. In NDSS.","author":"Lin Chia-Chi","year":"2014","unstructured":"Chia-Chi Lin , Hongyang Li , Xiao-yong Zhou, and XiaoFeng Wang . 2014 . Screenmilker: How to Milk Your Android Screen for Secrets.. In NDSS. Chia-Chi Lin, Hongyang Li, Xiao-yong Zhou, and XiaoFeng Wang. 2014. Screenmilker: How to Milk Your Android Screen for Secrets.. In NDSS."},{"key":"e_1_3_2_1_34_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Liu Fang","year":"2017","unstructured":"Fang Liu , Chun Wang , Andres Pico , Danfeng Yao , and Gang Wang . 2017 . Measuring the Insecurity of Mobile Deep Links of Android . In Proceedings of the USENIX Security Symposium. Fang Liu, Chun Wang, Andres Pico, Danfeng Yao, and Gang Wang. 2017. Measuring the Insecurity of Mobile Deep Links of Android. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_1_35_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Lou Jiadong","year":"2021","unstructured":"Jiadong Lou , Xu Yuan , and Ning Zhang . 2021 . Messy States of Wiring: Vulnerabilities in Emerging Personal Payment Systems . In Proceedings of the USENIX Security Symposium. Jiadong Lou, Xu Yuan, and Ning Zhang. 2021. Messy States of Wiring: Vulnerabilities in Emerging Personal Payment Systems. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1145\/2076732.2076781"},{"key":"e_1_3_2_1_37_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Mahmud Samin\u00a0Yaseer","year":"2020","unstructured":"Samin\u00a0Yaseer Mahmud , Akhil Acharya , Benjamin Andow , William Enck , and Bradley Reaves . 2020 . Cardpliance: PCI DSS Compliance of Android Applications . In Proceedings of the USENIX Security Symposium. Samin\u00a0Yaseer Mahmud, Akhil Acharya, Benjamin Andow, William Enck, and Bradley Reaves. 2020. Cardpliance: PCI DSS Compliance of Android Applications. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_1_38_1","unstructured":"MobSF 2015. Mobile Security Framework: MobSF. https:\/\/github.com\/MobSF\/Mobile-Security-Framework-MobSF.  MobSF 2015. Mobile Security Framework: MobSF. https:\/\/github.com\/MobSF\/Mobile-Security-Framework-MobSF."},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1145\/3196494.3196538"},{"key":"e_1_3_2_1_40_1","volume-title":"Proceedings of the IEEE Symposium on Security and Privacy.","author":"Mutchler Patrick","year":"2017","unstructured":"Patrick Mutchler and Adam Doupe\u2020 . 2017 . A Large-Scale Study of Mobile Web App Security . In Proceedings of the IEEE Symposium on Security and Privacy. Patrick Mutchler and Adam Doupe\u2020. 2017. A Large-Scale Study of Mobile Web App Security. In Proceedings of the IEEE Symposium on Security and Privacy."},{"key":"e_1_3_2_1_41_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Oltrogge Marten","year":"2021","unstructured":"Marten Oltrogge , Nicolas Huaman , Sabrina Amft , Yasemin Acar , Michael Backes , and Sascha Fahl . 2021 . Why Eve and Mallory Still Love Android: Revisiting TLS (In) Security in Android Applications . In Proceedings of the USENIX Security Symposium. Marten Oltrogge, Nicolas Huaman, Sabrina Amft, Yasemin Acar, Michael Backes, and Sascha Fahl. 2021. Why Eve and Mallory Still Love Android: Revisiting TLS (In) Security in Android Applications. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1145\/2766498.2766522"},{"key":"e_1_3_2_1_43_1","unstructured":"OWASP. [n.d.]. OWASP\u2019s Mobile Application Security Verification Standard. https:\/\/github.com\/OWASP\/owasp-masvs.  OWASP. [n.d.]. OWASP\u2019s Mobile Application Security Verification Standard. https:\/\/github.com\/OWASP\/owasp-masvs."},{"key":"e_1_3_2_1_44_1","unstructured":"OWASP. [n.d.]. OWASP\u2019s Mobile Security Testing Guide. https:\/\/github.com\/OWASP\/owasp-mstg.  OWASP. [n.d.]. OWASP\u2019s Mobile Security Testing Guide. https:\/\/github.com\/OWASP\/owasp-mstg."},{"key":"e_1_3_2_1_45_1","unstructured":"OWASP. 2013. Handling E-Commerce Payments. https:\/\/wiki.owasp.org\/index.php\/Handling_E-Commerce_Payments.  OWASP. 2013. Handling E-Commerce Payments. https:\/\/wiki.owasp.org\/index.php\/Handling_E-Commerce_Payments."},{"volume-title":"Automatic Verification of Security in Payment Protocols for Electronic Commerce","author":"Panti Maurizio","key":"e_1_3_2_1_46_1","unstructured":"Maurizio Panti , Luca Spalazzi , Simone Tacconi , and Salvatore Valenti . 2003. Automatic Verification of Security in Payment Protocols for Electronic Commerce . Kluwer Academic Publishers , USA , 276\u2013282. Maurizio Panti, Luca Spalazzi, Simone Tacconi, and Salvatore Valenti. 2003. Automatic Verification of Security in Payment Protocols for Electronic Commerce. Kluwer Academic Publishers, USA, 276\u2013282."},{"key":"e_1_3_2_1_47_1","unstructured":"PCI SSC. 2018. Payment Card Industry\u2019s Data Security Standard (PCI-DSS). https:\/\/www.pcisecuritystandards.org\/documents\/PCI_DSS-QRG-v3_2_1.pdf.  PCI SSC. 2018. Payment Card Industry\u2019s Data Security Standard (PCI-DSS). https:\/\/www.pcisecuritystandards.org\/documents\/PCI_DSS-QRG-v3_2_1.pdf."},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2014.23021"},{"key":"e_1_3_2_1_49_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Possemato Andrea","year":"2020","unstructured":"Andrea Possemato and Yanick Fratantonio . 2020 . Towards HTTPS Everywhere on Android: We Are Not There Yet . In Proceedings of the USENIX Security Symposium. Andrea Possemato and Yanick Fratantonio. 2020. Towards HTTPS Everywhere on Android: We Are Not There Yet. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_1_50_1","unstructured":"QARK 2015. QARK: Quick Android Review Kit. https:\/\/github.com\/linkedin\/qark.  QARK 2015. QARK: Quick Android Review Kit. https:\/\/github.com\/linkedin\/qark."},{"key":"e_1_3_2_1_51_1","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363195"},{"key":"e_1_3_2_1_52_1","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3345659"},{"key":"e_1_3_2_1_53_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Reaves Bradley","year":"2015","unstructured":"Bradley Reaves , Nolen Scaife , Adam Bates , Patrick Traynor , , and Kevin\u00a0 R.B. Butler . 2015 . Mo(bile) Money, Mo(bile) Problems: Analysis of Branchless Banking Applications in the Developing World . In Proceedings of the USENIX Security Symposium. Bradley Reaves, Nolen Scaife, Adam Bates, Patrick Traynor, , and Kevin\u00a0R.B. Butler. 2015. Mo(bile) Money, Mo(bile) Problems: Analysis of Branchless Banking Applications in the Developing World. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.1145\/2295136.2295141"},{"key":"e_1_3_2_1_55_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Scaife Nolen","year":"2018","unstructured":"Nolen Scaife , Christian Peeters , and Patrick Traynor . 2018 . Fear the Reaper: Characterization and Fast Detection of Card Skimmers . In Proceedings of the USENIX Security Symposium. Nolen Scaife, Christian Peeters, and Patrick Traynor. 2018. Fear the Reaper: Characterization and Fast Detection of Card Skimmers. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00042"},{"key":"e_1_3_2_1_57_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-78375-4_1"},{"key":"e_1_3_2_1_58_1","volume-title":"An Empirical Study on Mobile Payment Credential Leaks and Their Exploits. In International Conference on Security and Privacy in Communication Systems. Springer, 79\u201398","author":"Shi Shangcheng","year":"2021","unstructured":"Shangcheng Shi , Xianbo Wang , Kyle Zeng , Ronghai Yang , and Wing\u00a0Cheong Lau . 2021 . An Empirical Study on Mobile Payment Credential Leaks and Their Exploits. In International Conference on Security and Privacy in Communication Systems. Springer, 79\u201398 . Shangcheng Shi, Xianbo Wang, Kyle Zeng, Ronghai Yang, and Wing\u00a0Cheong Lau. 2021. An Empirical Study on Mobile Payment Credential Leaks and Their Exploits. In International Conference on Security and Privacy in Communication Systems. Springer, 79\u201398."},{"volume-title":"Understanding JavaScript Vulnerabilities in Large Real-World Android Applications","author":"Song Wei","key":"e_1_3_2_1_59_1","unstructured":"Wei Song . 2018. Understanding JavaScript Vulnerabilities in Large Real-World Android Applications . In IEEE Transactions on Dependable and Secure Computing . Wei Song. 2018. Understanding JavaScript Vulnerabilities in Large Real-World Android Applications. In IEEE Transactions on Dependable and Secure Computing."},{"key":"e_1_3_2_1_60_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2014.23205"},{"key":"e_1_3_2_1_61_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2014.23351"},{"key":"e_1_3_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICACCI.2017.8126084"},{"key":"e_1_3_2_1_63_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2011.26"},{"key":"e_1_3_2_1_64_1","volume-title":"MD5, HAVAL-128 and RIPEMD.IACR Cryptol. ePrint Arch. 2004","author":"Wang Xiaoyun","year":"2004","unstructured":"Xiaoyun Wang , Dengguo Feng , Xuejia Lai , and Hongbo Yu. 2004. Collisions for Hash Functions MD4 , MD5, HAVAL-128 and RIPEMD.IACR Cryptol. ePrint Arch. 2004 ( 2004 ), 199. Xiaoyun Wang, Dengguo Feng, Xuejia Lai, and Hongbo Yu. 2004. Collisions for Hash Functions MD4, MD5, HAVAL-128 and RIPEMD.IACR Cryptol. ePrint Arch. 2004 (2004), 199."},{"key":"e_1_3_2_1_65_1","volume-title":"Proceedings of the ISOC Network and Distributed Systems Security Symposium (NDSS).","author":"Xing Luyi","year":"2017","unstructured":"Luyi Xing , Yangyi Chen , XiaoFeng Wang , and Shuo Chen . 2017 . InteGuard: Toward Automatic Protection of Third-Party Web Service Integrations . In Proceedings of the ISOC Network and Distributed Systems Security Symposium (NDSS). Luyi Xing, Yangyi Chen, XiaoFeng Wang, and Shuo Chen. 2017. InteGuard: Toward Automatic Protection of Third-Party Web Service Integrations. In Proceedings of the ISOC Network and Distributed Systems Security Symposium (NDSS)."},{"key":"e_1_3_2_1_66_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.jisa.2019.102358"},{"key":"e_1_3_2_1_67_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2017.23091"}],"event":{"name":"ACSAC: Annual Computer Security Applications Conference","acronym":"ACSAC","location":"Austin TX USA"},"container-title":["Proceedings of the 38th Annual Computer Security Applications Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3564625.3564641","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3564625.3564641","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T18:09:12Z","timestamp":1750183752000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3564625.3564641"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,12,5]]},"references-count":67,"alternative-id":["10.1145\/3564625.3564641","10.1145\/3564625"],"URL":"https:\/\/doi.org\/10.1145\/3564625.3564641","relation":{},"subject":[],"published":{"date-parts":[[2022,12,5]]},"assertion":[{"value":"2022-12-05","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}