{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,25]],"date-time":"2026-04-25T08:32:34Z","timestamp":1777105954006,"version":"3.51.4"},"publisher-location":"New York, NY, USA","reference-count":26,"publisher":"ACM","license":[{"start":{"date-parts":[[2024,6,23]],"date-time":"2024-06-23T00:00:00Z","timestamp":1719100800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["U2336210"],"award-info":[{"award-number":["U2336210"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Startup Fund for Young Faculty at SJTU (SFYF at SJTU)","award":["24X010500123"],"award-info":[{"award-number":["24X010500123"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2024,6,23]]},"DOI":"10.1145\/3649329.3655687","type":"proceedings-article","created":{"date-parts":[[2024,11,7]],"date-time":"2024-11-07T19:27:22Z","timestamp":1731007642000},"page":"1-6","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["Trapped by Your WORDs: (Ab)using Processor Exception for Generic Binary Instrumentation on Bare-metal Embedded Devices"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0005-3324-0021","authenticated-orcid":false,"given":"Shipei","family":"Qu","sequence":"first","affiliation":[{"name":"School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, Shanghai, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3833-1134","authenticated-orcid":false,"given":"Xiaolin","family":"Zhang","sequence":"additional","affiliation":[{"name":"School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, Shanghai, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3887-2878","authenticated-orcid":false,"given":"Chi","family":"Zhang","sequence":"additional","affiliation":[{"name":"School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, Shanghai, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0504-9538","authenticated-orcid":false,"given":"Dawu","family":"Gu","sequence":"additional","affiliation":[{"name":"School of Electronic Information and Electrical Engineering, Shanghai Jiao Tong University, Shanghai, Shanghai, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2024,11,7]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00013"},{"key":"e_1_3_2_1_2_1","volume-title":"Superset Disassembly: Statically Rewriting x86 Binaries Without Heuristics.. In NDSS.","author":"Bauman Erick","year":"2018","unstructured":"Erick Bauman, Zhiqiang Lin, Kevin W Hamlen, et al. 2018. Superset Disassembly: Statically Rewriting x86 Binaries Without Heuristics.. In NDSS."},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/3460120.3484779"},{"key":"e_1_3_2_1_4_1","volume-title":"Bistro: Binary component extraction and embedding for software security applications. In Computer Security-ESORICS 2013: 18th European Symposium on Research in Computer Security","author":"Deng Zhui","year":"2013","unstructured":"Zhui Deng, Xiangyu Zhang, and Dongyan Xu. 2013. Bistro: Binary component extraction and embedding for software security applications. In Computer Security-ESORICS 2013: 18th European Symposium on Research in Computer Security, Egham, UK, September 9-13, 2013. Proceedings 18. Springer, 200--218."},{"key":"e_1_3_2_1_5_1","volume-title":"Proceedings of the 32nd USENIX Security Symposium.","author":"Bartolomeo Luca Di","year":"2023","unstructured":"Luca Di Bartolomeo, Hossein Moghaddas, and Mathias Payer. 2023. ARMore: Pushing Love Back Into Binaries. In Proceedings of the 32nd USENIX Security Symposium."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00009"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2022.102889"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/3385412.3385972"},{"key":"e_1_3_2_1_9_1","unstructured":"EEMBC. 2009. MCU Benchmark CoreMark."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1186\/s42400-022-00123-y"},{"key":"e_1_3_2_1_11_1","unstructured":"Linux Foundation. 2016. Zephyr: a new generation scalable optimized secure RTOS for multiple hardware architectures."},{"key":"e_1_3_2_1_12_1","unstructured":"Hex-Rays. 2023. IDA Pro: A powerful disassembler and a versatile debugger."},{"key":"e_1_3_2_1_13_1","volume-title":"Detours: Binaryinterception ofwin 3 2 functions. In 3rd usenix windows nt symposium.","author":"Hunt Galen","year":"1999","unstructured":"Galen Hunt and Doug Brubacher. 1999. Detours: Binaryinterception ofwin 3 2 functions. In 3rd usenix windows nt symposium."},{"key":"e_1_3_2_1_14_1","unstructured":"Apple Inc. 2021. AirTag."},{"key":"e_1_3_2_1_15_1","unstructured":"JSOF. 2020. 19 Zero-Day Vulnerabilities Amplified by the Supply Chain."},{"key":"e_1_3_2_1_16_1","volume-title":"Proceedings of the 32nd USENIX Security Symposium.","author":"Kim Hyungseok","year":"2023","unstructured":"Hyungseok Kim, Soomin Kim, Junoh Lee, Kangkook Jee, and Sang Kil Cha. 2023. Reassembly is Hard: A Reflection on Challenges and Strategies. In Proceedings of the 32nd USENIX Security Symposium."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/3134600.3134627"},{"key":"e_1_3_2_1_18_1","volume-title":"Binwalk: Firmware Analysis Tool.","author":"Labs ReFirm","year":"2010","unstructured":"ReFirm Labs. 2010. Binwalk: Firmware Analysis Tool."},{"issue":"6","key":"e_1_3_2_1_19_1","first-page":"5","article-title":"Literal pools, Arm Compiler armasm User Guide","volume":"6","author":"Ltd Arm","year":"2016","unstructured":"Arm Ltd. 2016. Literal pools, Arm Compiler armasm User Guide, Version 6.6.5.","journal-title":"Version"},{"key":"e_1_3_2_1_20_1","volume-title":"Blackhat USA 2021: A Titan M Odyssey.","author":"Maxime Rossi Bellom Damiano Melotti","year":"2021","unstructured":"Damiano Melotti Maxime Rossi Bellom and Philippe Teuwen. 2021. Blackhat USA 2021: A Titan M Odyssey."},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-66332-6_12"},{"key":"e_1_3_2_1_22_1","unstructured":"Thomas Roth. 2021. Airtag glitcher."},{"key":"e_1_3_2_1_23_1","volume-title":"Proceedings of the 23rd International Symposium on Research in Attacks, Intrusions and Defenses (RAID","author":"Salehi Majid","year":"2020","unstructured":"Majid Salehi, Danny Hughes, and Bruno Crispo. 2020. \u03bcSBS: Static binary sanitization of bare-metal embedded devices for fault observability. In Proceedings of the 23rd International Symposium on Research in Attacks, Intrusions and Defenses (RAID 2020). USENIX Association, 381--395."},{"key":"e_1_3_2_1_24_1","first-page":"121","article-title":"Guide to bluetooth security","volume":"800","author":"Scarfone Karen","year":"2008","unstructured":"Karen Scarfone, John Padgette, et al. 2008. Guide to bluetooth security. NIST Special Publication 800, 2008 (2008), 121.","journal-title":"NIST Special Publication"},{"key":"e_1_3_2_1_25_1","unstructured":"NXP Semiconductors. 2020. Running coremark benchmark with dual CM33 cores and PowerQuad on LPC5500."},{"key":"e_1_3_2_1_26_1","volume-title":"My other car is your car: compromising the Tesla Model X keyless entry system. IACR Transactions on Cryptographic Hardware and Embedded Systems","author":"Wouters Lennert","year":"2021","unstructured":"Lennert Wouters, Benedikt Gierlichs, and Bart Preneel. 2021. My other car is your car: compromising the Tesla Model X keyless entry system. IACR Transactions on Cryptographic Hardware and Embedded Systems (2021), 149--172."}],"event":{"name":"DAC '24: 61st ACM\/IEEE Design Automation Conference","location":"San Francisco CA USA","acronym":"DAC '24","sponsor":["SIGDA ACM Special Interest Group on Design Automation","IEEE-CEDA","SIGBED ACM Special Interest Group on Embedded Systems"]},"container-title":["Proceedings of the 61st ACM\/IEEE Design Automation Conference"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3649329.3655687","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3649329.3655687","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T01:17:48Z","timestamp":1750295868000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3649329.3655687"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,6,23]]},"references-count":26,"alternative-id":["10.1145\/3649329.3655687","10.1145\/3649329"],"URL":"https:\/\/doi.org\/10.1145\/3649329.3655687","relation":{},"subject":[],"published":{"date-parts":[[2024,6,23]]},"assertion":[{"value":"2024-11-07","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}