{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,8,22]],"date-time":"2025-08-22T18:10:03Z","timestamp":1755886203555,"version":"3.44.0"},"publisher-location":"New York, NY, USA","reference-count":33,"publisher":"ACM","license":[{"start":{"date-parts":[[2023,12,4]],"date-time":"2023-12-04T00:00:00Z","timestamp":1701648000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2023,12,4]]},"DOI":"10.1145\/3627106.3627139","type":"proceedings-article","created":{"date-parts":[[2023,12,2]],"date-time":"2023-12-02T18:13:22Z","timestamp":1701540802000},"page":"594-608","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":1,"title":["Binary Sight-Seeing: Accelerating Reverse Engineering via Point-of-Interest-Beacons"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0003-9588-7096","authenticated-orcid":false,"given":"Richard August","family":"See","sequence":"first","affiliation":[{"name":"Universit\u00e4t Hamburg, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0004-5599-5807","authenticated-orcid":false,"given":"Maximilian","family":"Gehring","sequence":"additional","affiliation":[{"name":"TU Darmstadt, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6254-8288","authenticated-orcid":false,"given":"Mathias","family":"Fischer","sequence":"additional","affiliation":[{"name":"Universit\u00e4t Hamburg, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-4801-6370","authenticated-orcid":false,"given":"Shankar","family":"Karuppayah","sequence":"additional","affiliation":[{"name":"National Advanced IPv6 Centre, Universiti Sains Malaysia, Malaysia"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2023,12,4]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"Golam\u00a0Sarwar Babil Olivier Mehani Roksana Boreli and Mohamed-Ali Kaafar. 2013. On the effectiveness of dynamic taint analysis for protecting against private information leaks on Android-based devices. In 2013 SECRYPT. 1\u20138."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/2991079.2991114"},{"volume-title":"Research in Attacks, Intrusions, and Defenses","author":"Barabosch Thomas","key":"e_1_3_2_1_3_1","unstructured":"Thomas Barabosch, Adrian Dombeck, Khaled Yakdan, and Elmar Gerhards-Padilla. 2015. BotWatcher. In Research in Attacks, Intrusions, and Defenses. Springer International Publishing, Cham, 565\u2013587."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/1920261.1920284"},{"key":"e_1_3_2_1_5_1","unstructured":"Lorenzo Cavallaro P. Saxena and R.\u00a0C. Sekar. 2007. Anti-Taint-Analysis : Practical Evasion Techniques Against Information Flow Based Malware Defense."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/1273463.1273490"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/2843859.2843867"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1007\/s11416-016-0289-8"},{"key":"e_1_3_2_1_9_1","volume-title":"24th USENIX Security Symposium (USENIX Security 15)","author":"Dyer P","year":"2015","unstructured":"Kevin\u00a0P Dyer, Scott\u00a0E Coull, and Thomas Shrimpton. 2015. Marionette: A programmable network traffic obfuscation system. In 24th USENIX Security Symposium (USENIX Security 15). 367\u2013382."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/2619091"},{"key":"e_1_3_2_1_11_1","volume-title":"Sality: Story of a peer-to-peer viral network. Technical Report","author":"Falliere Nicolas","year":"2011","unstructured":"Nicolas Falliere. 2011. Sality: Story of a peer-to-peer viral network. Technical Report, Symantec Corporation 32 (2011)."},{"key":"e_1_3_2_1_12_1","unstructured":"Claudio Guarnieri. 2010. Cuckoo Cuckoo Sandbox. cuckoosandbox.org. Accessed: 2020-04-11."},{"volume-title":"Advanced Monitoring in P2P Botnets: A Dual Perspective","author":"Karuppayah Shankar","key":"e_1_3_2_1_13_1","unstructured":"Shankar Karuppayah. 2018. Advanced Monitoring in P2P Botnets: A Dual Perspective. Springer."},{"volume-title":"Characterisation of the kelihos. b botnet","author":"Kerkers Max","key":"e_1_3_2_1_14_1","unstructured":"Max Kerkers, Jos\u00e9\u00a0Jair Santanna, and Anna Sperotto. 2014. Characterisation of the kelihos. b botnet. In IFIP AIMS. Springer, 79\u201391."},{"volume-title":"Characterisation of the Kelihos.B Botnet","author":"Kerkers Max","key":"e_1_3_2_1_15_1","unstructured":"Max Kerkers, Jos\u00e9\u00a0Jair Santanna, and Anna Sperotto. 2014. Characterisation of the Kelihos.B Botnet. In Monitoring and Securing Virtualized Networks and Services, Anna Sperotto, Guillaume Doyen, Steven Latr\u00e9, Marinos Charalambides, and Burkhard Stiller (Eds.). Springer Berlin Heidelberg, Berlin, Heidelberg, 79\u201391."},{"volume-title":"Inspector gadget: Automated extraction of proprietary gadgets from malware binaries. In 2010 IEEE Security and Privacy","author":"Kolbitsch Clemens","key":"e_1_3_2_1_16_1","unstructured":"Clemens Kolbitsch, Thorsten Holz, Christopher Kruegel, and Engin Kirda. 2010. Inspector gadget: Automated extraction of proprietary gadgets from malware binaries. In 2010 IEEE Security and Privacy. IEEE, 29\u201344."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2018.01.008"},{"key":"e_1_3_2_1_18_1","unstructured":"Malwarebytes Labs. [n. d.]. Locky: Ransom.Locky | Malwarebytes Labs | Detections. https:\/\/blog.malwarebytes.com\/detections\/ransom-locky\/. Accessed: 2022-01-31."},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.5555\/2788959.2788964"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/1065010.1065034"},{"key":"e_1_3_2_1_21_1","first-page":"1938","article-title":"A brief study of wannacry threat: Ransomware attack 2017","volume":"8","author":"Mohurle Savita","year":"2017","unstructured":"Savita Mohurle and Manisha Patil. 2017. A brief study of wannacry threat: Ransomware attack 2017. International Journal of Advanced Research in Computer Science 8, 5 (2017), 1938\u20131940.","journal-title":"International Journal of Advanced Research in Computer Science"},{"key":"e_1_3_2_1_22_1","volume-title":"Symantec Security Response","author":"Neville Alan","year":"2013","unstructured":"Alan Neville and Ross Gibb. 2013. ZeroAccess Indepth. Symantec Security Response (2013)."},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/1180405.1180444"},{"key":"e_1_3_2_1_24_1","unstructured":"Markus\u00a0F.X.J. Oberhumer L\u00e1szl\u00f3 Moln\u00e1r and John\u00a0F. Reiser. [n. d.]. UPX: The Ultimate Packer for eXecutables - Homepage. https:\/\/upx.github.io\/"},{"key":"e_1_3_2_1_25_1","volume-title":"The Cybersecurity 202: Global losses from cybercrime skyrocketed to nearly $1 trillion","author":"Riley Tonya","year":"2020","unstructured":"Tonya Riley. 2020. The Cybersecurity 202: Global losses from cybercrime skyrocketed to nearly $1 trillion in 2020, new report finds. washingtonpost.com\/politics\/2020\/12\/07\/cybersecurity-202-global-losses-cybercrime-skyrocketed-nearly-1-trillion-2020\/. Accessed: 2022-01-31."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.26"},{"key":"e_1_3_2_1_27_1","volume-title":"European Symposium on Research in Computer Security. Springer, 106\u2013124","author":"Fritz Leon","year":"2022","unstructured":"August See, Leon Fritz, and Mathias Fischer. 2022. Polymorphic Protocols at the Example of Mitigating Web Bots. In European Symposium on Research in Computer Security. Springer, 106\u2013124."},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"crossref","unstructured":"S. Stover D. Dittrich John Hernandez and S. Dietrich. 2007. Analysis of the Storm and Nugache Trojans: P2P Is Here. login Usenix Mag. 32 (2007).","DOI":"10.1016\/S0262-4079(07)61440-7"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978343"},{"key":"e_1_3_2_1_30_1","volume-title":"29th USENIX Security Symposium (USENIX Security 20)","author":"Votipka Daniel","year":"2020","unstructured":"Daniel Votipka, Seth Rabin, Kristopher Micinski, Jeffrey\u00a0S Foster, and Michelle\u00a0L Mazurek. 2020. An observational investigation of reverse { Engineers\u2019} processes. In 29th USENIX Security Symposium (USENIX Security 20). 1875\u20131892."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-04444-1_13"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1109\/BWCCA.2010.85"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1145\/2731186.2731201"}],"event":{"name":"ACSAC '23: Annual Computer Security Applications Conference","acronym":"ACSAC '23","location":"Austin TX USA"},"container-title":["Annual Computer Security Applications Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3627106.3627139","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3627106.3627139","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,22]],"date-time":"2025-08-22T17:39:55Z","timestamp":1755884395000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3627106.3627139"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,12,4]]},"references-count":33,"alternative-id":["10.1145\/3627106.3627139","10.1145\/3627106"],"URL":"https:\/\/doi.org\/10.1145\/3627106.3627139","relation":{},"subject":[],"published":{"date-parts":[[2023,12,4]]},"assertion":[{"value":"2023-12-04","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}