{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,9]],"date-time":"2026-07-09T15:21:00Z","timestamp":1783610460007,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":24,"publisher":"ACM","license":[{"start":{"date-parts":[[2024,12,2]],"date-time":"2024-12-02T00:00:00Z","timestamp":1733097600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2024,12,2]]},"DOI":"10.1145\/3658644.3690307","type":"proceedings-article","created":{"date-parts":[[2024,12,9]],"date-time":"2024-12-09T12:19:20Z","timestamp":1733746760000},"page":"2355-2369","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":11,"title":["OctopusTaint: Advanced Data Flow Analysis for Detecting Taint-Based Vulnerabilities in IoT\/IIoT Firmware"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-8284-4458","authenticated-orcid":false,"given":"Abdullah","family":"Qasem","sequence":"first","affiliation":[{"name":"Security Research Centre, Concordia University, Montreal, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-3015-3043","authenticated-orcid":false,"given":"Mourad","family":"Debbabi","sequence":"additional","affiliation":[{"name":"Security Research Centre, Concordia University, Montreal, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7315-6490","authenticated-orcid":false,"given":"Andrei","family":"Soeanu","sequence":"additional","affiliation":[{"name":"Security Research Centre, Concordia University, Montreal, Canada"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2024,12,9]]},"reference":[{"key":"e_1_3_2_1_1_1","first-page":"65","volume-title":"Accelerating command injection vulnerability discovery in embedded firmware with static backtracking analysis,' in Proceedings of the 12th International Conference on the Internet of Things","author":"Yin X.","year":"2022","unstructured":"X. Yin, R. Cai, Y. Zhang, L. Li, Q. Yang, and S. Liu, 'Accelerating command injection vulnerability discovery in embedded firmware with static backtracking analysis,' in Proceedings of the 12th International Conference on the Internet of Things, 2022, pp. 65--72."},{"key":"e_1_3_2_1_2_1","first-page":"83","volume-title":"Automatic inference of taint sources to discover vulnerabilities in soho router firmware,' in IFIP International Conference on ICT Systems Security and Privacy Protection","author":"Cheng K.","year":"2021","unstructured":"K. Cheng, D. Fang, C. Qin, H. Wang, Y. Zheng, N. Yu, and L. Sun, 'Automatic inference of taint sources to discover vulnerabilities in soho router firmware,' in IFIP International Conference on ICT Systems Security and Privacy Protection. Springer, 2021, pp. 83--99."},{"key":"e_1_3_2_1_3_1","volume-title":"'2021 iot security landscape @ONLINE","year":"2023","unstructured":"SAM-IOT-Security-Report., '2021 iot security landscape @ONLINE, 2023."},{"key":"e_1_3_2_1_4_1","volume-title":"USENIX Security Symposium","author":"Antonakakis M.","year":"2017","unstructured":"M. Antonakakis, T. April, M. Bailey, M. Bernhard, E. Bursztein, J. Cochran, Z. Durumeric, J. A. Halderman, L. Invernizzi, M. Kallitsis et al., Understanding the mirai botnet, in USENIX Security Symposium, 2017."},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00036"},{"key":"e_1_3_2_1_6_1","first-page":"303","volume-title":"30th USENIX Security Symposium (USENIX Security 21)","author":"Chen L.","year":"2021","unstructured":"L. Chen, Y. Wang, Q. Cai, Y. Zhan, H. Hu, J. Linghu, Q. Hou, C. Zhang, H. Duan, and Z. Xue, Sharing more and checking less: Leveraging common input keywords to detect bugs in embedded systems, in 30th USENIX Security Symposium (USENIX Security 21), 2021, pp. 303--319."},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/3597926.3598062"},{"key":"e_1_3_2_1_8_1","volume-title":"Dec.","year":"2021","unstructured":"angr memeber, A reaching definition engine for binary analysis built-in in angr @ONLINE, https:\/\/degrigis.github.io\/posts\/angr_rd\/, Dec. 2021."},{"key":"e_1_3_2_1_9_1","first-page":"1769","volume-title":"28th USENIX Security Symposium (USENIX Security 19)","author":"Lu K.","year":"2019","unstructured":"K. Lu, A. Pakki, and Q. Wu, Detecting {Missing-Check} bugs via semanticand {Context-Aware} criticalness and constraints inferences, in 28th USENIX Security Symposium (USENIX Security 19), 2019, pp. 1769--1786."},{"key":"e_1_3_2_1_10_1","unstructured":"W. Gibbs A. S. Raj J. M. Vadayath H. J. Tay J. Miller A. Ajayan Z. L. Basque A. Dutcher F. Dong X. Maso et al. Operation mango: Scalable discovery of taint-style vulnerabilities in binary firmware services."},{"key":"e_1_3_2_1_11_1","volume-title":"Sep.","author":"Heffner C.","year":"2023","unstructured":"C. Heffner, binwalk - firmware analysis tool designed to assist in the analysis, extraction, and reverse engineering of firmware images, https:\/\/github.com\/ReFirmLabs\/binwalk, Sep. 2023."},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.17"},{"key":"e_1_3_2_1_13_1","volume-title":"Feb.","author":"Maso Xavier","year":"2023","unstructured":"Xavier Maso, Handle function calls during static analysis in angr @ONLINE, https:\/\/blog.xaviermaso.com\/2021\/02\/25\/Handle-function-calls-duringstatic-analysis-with-angr.html, Feb. 2023."},{"key":"e_1_3_2_1_14_1","volume-title":"Introduction to algorithms","author":"Cormen T. H.","year":"2022","unstructured":"T. H. Cormen, C. E. Leiserson, R. L. Rivest, and C. Stein, Introduction to algorithms. MIT press, 2022."},{"key":"e_1_3_2_1_15_1","volume-title":"USENIX Security Symposium","author":"Wu Y.","year":"2024","unstructured":"Y. Wu, J. Wang, Y. Wang, S. Zhai, Z. Li, Y. He, K. Sun, Q. Li, and N. Zhang, Your firmware has arrived: A study of firmware update vulnerabilities, in USENIX Security Symposium, 2024."},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1109\/RTSS55097.2022.00050"},{"key":"e_1_3_2_1_17_1","volume-title":"windriver, https:\/\/www.windriver.com\/","year":"2024","unstructured":"WindRiver, Windriver. windriver, https:\/\/www.windriver.com\/, 2024."},{"key":"e_1_3_2_1_18_1","volume-title":"ICML 2019","author":"Zhu W.","year":"2019","unstructured":"W. Zhu, R. Liu, J. Wang, and Y. Zhou, Vxhunter: A tool set for vxworks based embedded device analyses, in Smart Grid\/Industrial Security, ICML 2019, BAY SANDS, Singapore, March 26--29, 2019. Blackhat-asia, 2019. [Online]. Available: https:\/\/i.blackhat.com\/asia-19\/Fri-March-29\/bh-asia-Zhu-Dive-intoVxWorks-Based-IoT-Device-Debug-the-Undebugable-Device.pdf"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.14722\/bar.2021.23006"},{"key":"e_1_3_2_1_20_1","volume-title":"Feb.","year":"2023","unstructured":"HexRays, Hexrays IDA Pro, https:\/\/www.hexrays.com\/products\/ida\/index.shtml @ONLINE, Feb. 2023."},{"key":"e_1_3_2_1_21_1","first-page":"1099","volume-title":"28th USENIX Security Symposium (USENIX Security 19)","author":"Zheng Y.","year":"2019","unstructured":"Y. Zheng, A. Davanian, H. Yin, C. Song, H. Zhu, and L. Sun, FIRM-AFL:HighThroughput greybox fuzzing of IoT firmware via augmented process emulation, in 28th USENIX Security Symposium (USENIX Security 19), 2019, pp. 1099--1114."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3363247"},{"key":"e_1_3_2_1_23_1","volume-title":"ACM Computing Surveys (CSUR)","author":"Qasem A.","unstructured":"A. Qasem, P. Shirani, M. Debbabi, L. Wang, B. Lebel, and B. L. Agba, Automatic vulnerability detection in embedded devices and firmware: Survey and layered taxonomies, ACM Computing Surveys (CSUR), vol. 54, no. 2, pp. 1--42, 2021."},{"key":"e_1_3_2_1_24_1","unstructured":"Z. Gao C. Zhang H. Liu W. Sun Z. Tang L. Jiang J. Chen and Y. Xie Faster and better: Detecting vulnerabilities in Linux-based Io\" firmware with optimized reaching definition analysis."}],"event":{"name":"CCS '24: ACM SIGSAC Conference on Computer and Communications Security","location":"Salt Lake City UT USA","acronym":"CCS '24","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3658644.3690307","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3658644.3690307","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,8,22]],"date-time":"2025-08-22T06:13:06Z","timestamp":1755843186000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3658644.3690307"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,12,2]]},"references-count":24,"alternative-id":["10.1145\/3658644.3690307","10.1145\/3658644"],"URL":"https:\/\/doi.org\/10.1145\/3658644.3690307","relation":{},"subject":[],"published":{"date-parts":[[2024,12,2]]},"assertion":[{"value":"2024-12-09","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}