{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,19]],"date-time":"2026-07-19T03:36:31Z","timestamp":1784432191962,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":68,"publisher":"ACM","license":[{"start":{"date-parts":[[2024,12,2]],"date-time":"2024-12-02T00:00:00Z","timestamp":1733097600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2024,12,2]]},"DOI":"10.1145\/3658644.3690299","type":"proceedings-article","created":{"date-parts":[[2024,12,9]],"date-time":"2024-12-09T12:19:20Z","timestamp":1733746760000},"page":"3689-3703","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":16,"title":["BinPRE: Enhancing Field Inference in Binary Analysis Based Protocol Reverse Engineering"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0009-0002-1341-6905","authenticated-orcid":false,"given":"Jiayi","family":"Jiang","sequence":"first","affiliation":[{"name":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0002-3239-6858","authenticated-orcid":false,"given":"Xiyuan","family":"Zhang","sequence":"additional","affiliation":[{"name":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9162-9688","authenticated-orcid":false,"given":"Chengcheng","family":"Wan","sequence":"additional","affiliation":[{"name":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0000-6255-4285","authenticated-orcid":false,"given":"Haoyi","family":"Chen","sequence":"additional","affiliation":[{"name":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-5648-337X","authenticated-orcid":false,"given":"Haiying","family":"Sun","sequence":"additional","affiliation":[{"name":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1628-9796","authenticated-orcid":false,"given":"Ting","family":"Su","sequence":"additional","affiliation":[{"name":"Shanghai Key Laboratory of Trustworthy Computing, East China Normal University, Shanghai, China"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2024,12,9]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"2024. Boofuzz. A fork and successor of the Sulley Fuzzing Framework. https:\/\/github.com\/jtpereyda\/boofuzz.git."},{"key":"e_1_3_2_1_2_1","unstructured":"2024. Boofuzz. The official guide to protocol definition in boofuzz. https:\/\/boofuzz.readthedocs.io\/en\/stable\/user\/protocol-definition.html."},{"key":"e_1_3_2_1_3_1","unstructured":"2024. curl. Command line tool for capturing HTTP messages. https:\/\/curl.se\/."},{"key":"e_1_3_2_1_4_1","unstructured":"2024. dnsmasq. Dnsmasq fork with fast ipset\/server\/address lookup. https:\/\/github.com\/infinet\/dnsmasq."},{"key":"e_1_3_2_1_5_1","unstructured":"2024. freemodbus. BSD licensed MODBUS RTU\/ASCII and TCP slave. https:\/\/github.com\/cwalter-at\/freemodbus.git."},{"key":"e_1_3_2_1_6_1","unstructured":"2024. LightFTP. Small x86--32\/x64 FTP Server. https:\/\/github.com\/hfiref0x\/LightFTP."},{"key":"e_1_3_2_1_7_1","unstructured":"2024. miniweb. Small cross-platform HTTP server with useful directory listing. https:\/\/github.com\/avih\/miniweb\/tree\/master."},{"key":"e_1_3_2_1_8_1","unstructured":"2024. Open real-world traces for DNP3.0. The DNP3 protocol dataset used in the paper 'Deterministic Dendritic Cell Algorithm Application to Smart-Grid Cyber Attack Detection'. https:\/\/github.com\/igbe\/DNP3-Dataset-Plus-SnortRules\/blob\/master\/dnp3dataset_capture.pcap."},{"key":"e_1_3_2_1_9_1","unstructured":"2024. Open real-world traces for FTP. Anonymous FTP traces published by the Lawrence Berkeley National Laboratory. ftp:\/\/ita.ee.lbl.gov\/new\/lbnl.anon-ftp.03-01--10.tcpdump.gz."},{"key":"e_1_3_2_1_10_1","unstructured":"2024. Open real-world traces for Modbus and DNS. A list of public packet capture (PCAP) repositories which are freely available on the Internet. https:\/\/www.netresec.com\/?page=PcapFiles."},{"key":"e_1_3_2_1_11_1","unstructured":"2024. Open real-world traces for S7comm. Wireshark's sample capture library which includes real-world traces for S7comm. https:\/\/wiki.wireshark.org\/SampleCaptures#s7comm-s7-communication."},{"key":"e_1_3_2_1_12_1","unstructured":"2024. Open real-world traces for TFTP. A TFTP pcap file on the CloudShark website. https:\/\/www.cloudshark.org\/captures\/07ebe14c792b."},{"key":"e_1_3_2_1_13_1","volume-title":"opendnp3. DNP3","year":"1815","unstructured":"2024. opendnp3. DNP3 (IEEE-1815) protocol stack. https:\/\/github.com\/dnp3\/opendnp3."},{"key":"e_1_3_2_1_14_1","unstructured":"2024. OpENer. An EtherNet\/IP stack for I\/O adapter devices. https:\/\/github.com\/EIPStackGroup\/OpENer.git."},{"key":"e_1_3_2_1_15_1","unstructured":"2024. Peach. A fuzzing framework which uses a DSL for building fuzzers and an observer based architecture to execute and monitor them. https:\/\/github.com\/MozillaSecurity\/peach.git."},{"key":"e_1_3_2_1_16_1","unstructured":"2024. Peach. The official guide to protocol definition in peach. https:\/\/peachtech.gitlab.io\/peach-fuzzer-community\/."},{"key":"e_1_3_2_1_17_1","unstructured":"2024. Pin. A dynamic binary instrumentation framework for the IA-32 and x86--64 instruction-set architectures that enables the creation of dynamic program analysis tools. https:\/\/www.intel.com\/content\/www\/us\/en\/developer\/articles\/tool\/pin-a-dynamic-binary-instrumentation-tool.html."},{"key":"e_1_3_2_1_18_1","unstructured":"2024. SanitizerCoverage. A simple code coverage instrumentation built in LLVM. https:\/\/clang.llvm.org\/docs\/SanitizerCoverage.html."},{"key":"e_1_3_2_1_19_1","unstructured":"2024. Scapy. A powerful interactive packet manipulation library. https:\/\/scapy.net\/."},{"key":"e_1_3_2_1_20_1","unstructured":"2024. snap7. 32\/64 bit multi-platform Ethernet S7 PLC communication suite. https:\/\/sourceforge.net\/projects\/snap7."},{"key":"e_1_3_2_1_21_1","unstructured":"2024. tftpd-hpa. A conglomerate of a number of versions of the BSD TFTP code. https:\/\/git.kernel.org\/pub\/scm\/network\/tftp\/tftp-hpa.git."},{"key":"e_1_3_2_1_22_1","unstructured":"2024. Wireshark. The world's most popular network protocol analyzer. https:\/\/www.wireshark.org."},{"key":"e_1_3_2_1_23_1","unstructured":"Marshall A Beddoe. 2004. Network protocol analysis using bioinformatics algorithms."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","unstructured":"Ignacio Bermudez Alok Tongaonkar Marios Iliofotou Marco Mellia and Maurizio M Munafo. 2015. Automatic protocol field inference for deeper protocol understanding. In IFIP Networking. 1--9. https:\/\/doi.org\/10.1109\/IFIPNetworking.2015.7145307","DOI":"10.1109\/IFIPNetworking.2015.7145307"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.comcom.2016.02.015"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","unstructured":"Georges Bossert Fr\u00e9d\u00e9ric Guih\u00e9ry and Guillaume Hiet. 2014. Towards automated protocol reverse engineering using semantic information. In ASIA CCS. 51--62. https:\/\/doi.org\/10.1145\/2590296.2590346","DOI":"10.1145\/2590296.2590346"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","unstructured":"Juan Caballero Pongsin Poosankam Christian Kreibich and Dawn Xiaodong Song. 2009. Dispatcher: enabling active botnet infiltration using automatic protocol reverse-engineering. In CCS. 621--634. https:\/\/doi.org\/10.1145\/1653662.1653737","DOI":"10.1145\/1653662.1653737"},{"key":"e_1_3_2_1_28_1","volume-title":"Rosetta: Extracting protocol semantics using binary analysis with applications to protocol replay and NAT rewriting. Cylab","author":"Caballero Juan","year":"2007","unstructured":"Juan Caballero and Dawn Song. 2007. Rosetta: Extracting protocol semantics using binary analysis with applications to protocol replay and NAT rewriting. Cylab (2007)."},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1016\/J.COMNET.2012.08.003"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","unstructured":"Juan Caballero Heng Yin Zhenkai Liang and Dawn Xiaodong Song. 2007. Polyglot: automatic extraction of protocol message format using dynamic binary analysis. In CCS. 317--329. https:\/\/doi.org\/10.1145\/1315245.1315286","DOI":"10.1145\/1315245.1315286"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","unstructured":"Jared Chandler Adam Wick and Kathleen Fisher. 2023. BinaryInferno: A Semantic-Driven Approach to Field Inference for Binary Message Formats. In NDSS. https:\/\/doi.org\/10.14722\/ndss.2023.23131","DOI":"10.14722\/ndss.2023.23131"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1007\/978--3-030--92635--9_21"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1145\/1866307.1866355"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2009.14"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.5555\/1362903.1362917"},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","unstructured":"Weidong Cui Marcus Peinado Karl Chen Helen J. Wang and Luis Ir\u00fan-Briz. 2008. Tupni: automatic reverse engineering of input formats. In CCS. 391--402. https:\/\/doi.org\/10.1145\/1455770.1455820","DOI":"10.1145\/1455770.1455820"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1007\/978--3--319--32125--7_4"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/IMCEC51613.2021.9482063"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1016\/J.COMCOM.2021.11.009"},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSCLOUD.2017.12"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"crossref","unstructured":"Jiayi Jiang Xiyuan Zhang Chengcheng Wan Haoyi Chen Haiying Sun and Ting Su. 2024. BinPRE: Enhancing Field Inference in Binary Analysis Based Protocol Reverse Engineering (full version). http:\/\/arxiv.org\/abs\/2409.01994. In ARXIV.","DOI":"10.1145\/3658644.3690299"},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","unstructured":"Junhyoung Kim TaeGuen Kim and Eul Gyu Im. 2014. Survey of dynamic taint analysis. In ICNIDC. 269--272. https:\/\/doi.org\/10.1109\/ICNIDC.2014.7000307","DOI":"10.1109\/ICNIDC.2014.7000307"},{"key":"e_1_3_2_1_43_1","volume-title":"NEMESYS: Network Message Syntax Reverse Engineering by Analysis of the Intrinsic Structure of Individual Messages. In WOOT.","author":"Kleber Stephan","year":"2018","unstructured":"Stephan Kleber, Henning Kopp, and Frank Kargl. 2018. NEMESYS: Network Message Syntax Reverse Engineering by Analysis of the Intrinsic Structure of Individual Messages. In WOOT."},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1007\/978--3--642--19896-0_5"},{"key":"e_1_3_2_1_45_1","doi-asserted-by":"publisher","unstructured":"Gergo L\u00e1di Levente Butty\u00e1n and Tam\u00e1s Holczer. 2018. Message Format and Field Semantics Inference for Binary Protocols Using Recorded Network Traffic. In SoftCOM. 1--6. https:\/\/doi.org\/10.23919\/SOFTCOM.2018.8555813","DOI":"10.23919\/SOFTCOM.2018.8555813"},{"key":"e_1_3_2_1_46_1","volume-title":"Bi021 Molecular Science and Biotechnology Institute","author":"Likic Vladimir","unstructured":"Vladimir Likic. 2008. The Needleman-Wunsch algorithm for sequence alignment. Lecture given at the 7th Melbourne Bioinformatics Course, Bi021 Molecular Science and Biotechnology Institute, University of Melbourne (2008), 1--46."},{"key":"e_1_3_2_1_47_1","first-page":"1","article-title":"Automatic Protocol Format Reverse Engineering through Context-Aware Monitored Execution","volume":"8","author":"Lin Zhiqiang","year":"2008","unstructured":"Zhiqiang Lin, Xuxian Jiang, Dongyan Xu, and Xiangyu Zhang. 2008. Automatic Protocol Format Reverse Engineering through Context-Aware Monitored Execution. In NDSS, Vol. 8. 1--15.","journal-title":"NDSS"},{"key":"e_1_3_2_1_48_1","unstructured":"Zhiqiang Lin Xiangyu Zhang and Dongyan Xu. 2010. Automatic Reverse Engineering of Data Structures from Binary Execution. In NDSS. Article 5 1 pages."},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","unstructured":"Min Liu Chunfu Jia Lu Liu and Zhi Wang. 2013. Extracting Sent Message Formats from Executables Using Backward Slicing. In EIDWT. 377--384. https:\/\/doi.org\/10.1109\/EIDWT.2013.71","DOI":"10.1109\/EIDWT.2013.71"},{"key":"e_1_3_2_1_50_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2024.24083"},{"key":"e_1_3_2_1_51_1","doi-asserted-by":"publisher","DOI":"10.1631\/FITEE.2000709"},{"key":"e_1_3_2_1_52_1","doi-asserted-by":"publisher","DOI":"10.1016\/J.VEHCOM.2017.02.005"},{"key":"e_1_3_2_1_53_1","doi-asserted-by":"publisher","unstructured":"Ruijie Meng Martin Mirchev Marcel B\u00f6hme and Abhik Roychoudhury. 2024. Large language model guided protocol fuzzing. In NDSS. https:\/\/doi.org\/10.14722\/ndss.2024.24556","DOI":"10.14722\/ndss.2024.24556"},{"key":"e_1_3_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.1145\/2840724"},{"key":"e_1_3_2_1_55_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICDEW.2006.141"},{"key":"e_1_3_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICST46399.2020.00062"},{"key":"e_1_3_2_1_57_1","unstructured":"Johannes Pohl and Andreas Noack. 2019. Automatic wireless protocol reverse engineering. In WOOT."},{"key":"e_1_3_2_1_58_1","doi-asserted-by":"publisher","DOI":"10.1145\/3580598"},{"key":"e_1_3_2_1_59_1","volume-title":"A mathematical theory of communication. The Bell system technical journal 27, 3","author":"Shannon Claude Elwood","year":"1948","unstructured":"Claude Elwood Shannon. 1948. A mathematical theory of communication. The Bell system technical journal 27, 3 (1948), 379--423."},{"key":"e_1_3_2_1_60_1","doi-asserted-by":"publisher","DOI":"10.1002\/NEM.2126"},{"key":"e_1_3_2_1_61_1","doi-asserted-by":"publisher","unstructured":"Rui Wang XiaoFeng Wang Kehuan Zhang and Zhuowei Li. 2008. Towards automatic reverse engineering of software security configurations. In CCS. 245--256. https:\/\/doi.org\/10.1145\/1455770.1455802","DOI":"10.1145\/1455770.1455802"},{"key":"e_1_3_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.1080\/17445760.2019.1655740"},{"key":"e_1_3_2_1_63_1","doi-asserted-by":"publisher","unstructured":"Yipeng Wang Xiaochun Yun M Zubair Shafiq Liyan Wang Alex X Liu Zhibin Zhang Danfeng Yao Yongzheng Zhang and Li Guo. 2012. A semantics aware approach to automated reverse engineering unknown protocols. In ICNP. 1--10. https:\/\/doi.org\/10.1109\/ICNP.2012.6459963","DOI":"10.1109\/ICNP.2012.6459963"},{"key":"e_1_3_2_1_64_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-04444-1_13"},{"key":"e_1_3_2_1_65_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-981-15-9129-7_42"},{"key":"e_1_3_2_1_66_1","doi-asserted-by":"publisher","unstructured":"Yapeng Ye Zhuo Zhang Fei Wang Xiangyu Zhang and Dongyan Xu. 2021. NetPlier: Probabilistic Network Protocol Reverse Engineering from Message Traces. In NDSS. https:\/\/doi.org\/10.14722\/NDSS.2021.24531","DOI":"10.14722\/NDSS.2021.24531"},{"key":"e_1_3_2_1_67_1","doi-asserted-by":"publisher","DOI":"10.48550\/ARXIV.2401.01568"},{"key":"e_1_3_2_1_68_1","doi-asserted-by":"publisher","unstructured":"Sen Zhao Jinfa Wang Shouguo Yang Yicheng Zeng Zhihui Zhao Hongsong Zhu and Limin Sun. 2022. ProsegDL: Binary Protocol Format Extraction by Deep Learning-based Field Boundary Identification. In ICNP. 1--12. https:\/\/doi.org\/10.1109\/ICNP55882.2022.9940264","DOI":"10.1109\/ICNP55882.2022.9940264"}],"event":{"name":"CCS '24: ACM SIGSAC Conference on Computer and Communications Security","location":"Salt Lake City UT USA","acronym":"CCS '24","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3658644.3690299","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3658644.3690299","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,22]],"date-time":"2025-08-22T05:59:21Z","timestamp":1755842361000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3658644.3690299"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,12,2]]},"references-count":68,"alternative-id":["10.1145\/3658644.3690299","10.1145\/3658644"],"URL":"https:\/\/doi.org\/10.1145\/3658644.3690299","relation":{},"subject":[],"published":{"date-parts":[[2024,12,2]]},"assertion":[{"value":"2024-12-09","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}