{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,4]],"date-time":"2026-06-04T16:03:20Z","timestamp":1780589000562,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":87,"publisher":"ACM","license":[{"start":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T00:00:00Z","timestamp":1780272000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"funder":[{"name":"European Union under the Horizon Europe Programme","award":["101070537"],"award-info":[{"award-number":["101070537"]}]},{"name":"NextGenerationEU PRIN 2022 S2: Safe and Secure Industrial Internet of Things","award":["202297YF75"],"award-info":[{"award-number":["202297YF75"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2026,6]]},"DOI":"10.1145\/3779208.3785279","type":"proceedings-article","created":{"date-parts":[[2026,6,4]],"date-time":"2026-06-04T15:21:58Z","timestamp":1780586518000},"page":"986-999","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["TAGShield: Persistent Tagging for Robust Stack Memory Error Protection"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-8284-6290","authenticated-orcid":false,"given":"Michele","family":"Grisafi","sequence":"first","affiliation":[{"name":"University of Trento, Trento, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0009-0683-4608","authenticated-orcid":false,"given":"Carlo","family":"Ramponi","sequence":"additional","affiliation":[{"name":"University of Trento, Trento, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-4963-5854","authenticated-orcid":false,"given":"Mahmoud","family":"Ammar","sequence":"additional","affiliation":[{"name":"Huawei Research, Germany, Munich, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0002-1848-8780","authenticated-orcid":false,"given":"Silviu","family":"Vlasceanu","sequence":"additional","affiliation":[{"name":"Huawei Research, Germany, Munich, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1252-8465","authenticated-orcid":false,"given":"Bruno","family":"Crispo","sequence":"additional","affiliation":[{"name":"University of Trento, Trento, Italy"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2026,6,4]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"Retrofitting Spatial Safety to Hundreds of Millions of Lines of C++","year":"2024","unstructured":"Google. Retrofitting Spatial Safety to Hundreds of Millions of Lines of C++, 2024. URL https:\/\/security.googleblog.com\/2024\/11\/retrofitting-spatial-safety-to-hundreds.html."},{"key":"e_1_3_2_1_2_1","volume-title":"Return-Oriented Programming: Systems, Languages, and Applications. ACM Transactions on Information and System Security (TISSEC), 15(1):1\u201334","author":"Roemer Ryan","year":"2012","unstructured":"Ryan Roemer, Erik Buchanan, Hovav Shacham, and Stefan Savage. Return-Oriented Programming: Systems, Languages, and Applications. ACM Transactions on Information and System Security (TISSEC), 15(1):1\u201334, 2012."},{"key":"e_1_3_2_1_3_1","first-page":"6650","volume-title":"33rd USENIX Security Symposium (USENIX Security 24)","author":"Ammar Mahmoud","year":"2024","unstructured":"Mahmoud Ammar, Ahmed Abdelraoof, and Silviu Vlasceanu. On Bridging the Gap between Control Flow Integrity and Attestation Schemes. In 33rd USENIX Security Symposium (USENIX Security 24), pages 6633\u20136650, 2024."},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1145\/3129743"},{"key":"e_1_3_2_1_5_1","first-page":"40","volume-title":"Zhenkai Liang. Jump-Oriented Programming: A New Class of Code-Reuse Attack. In Proceedings of the 6th ACM symposium on information, computer and communications security","author":"Bletsch Tyler","year":"2011","unstructured":"Tyler Bletsch, Xuxian Jiang, Vince W Freeh, and Zhenkai Liang. Jump-Oriented Programming: A New Class of Code-Reuse Attack. In Proceedings of the 6th ACM symposium on information, computer and communications security, pages 30\u201340, 2011."},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP61157.2025.00077"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/3722041.3723099"},{"key":"e_1_3_2_1_8_1","first-page":"192","volume-title":"Zhenkai Liang. Automatic Generation of Data-Oriented Exploits. In 24th USENIX Security Symposium (USENIX Security 15)","author":"Hu Hong","year":"2015","unstructured":"Hong Hu, Zheng Leong Chua, Sendroiu Adrian, Prateek Saxena, and Zhenkai Liang. Automatic Generation of Data-Oriented Exploits. In 24th USENIX Security Symposium (USENIX Security 15), pages 177\u2013192, 2015."},{"key":"e_1_3_2_1_9_1","first-page":"1418","volume-title":"Cristiano Giuffrida. Practical Data-Only Attack Generation. In 33rd USENIX Security Symposium (USENIX Security 24)","author":"Johannesmeyer Brian","year":"2024","unstructured":"Brian Johannesmeyer, Asia Slowinska, Herbert Bos, and Cristiano Giuffrida. Practical Data-Only Attack Generation. In 33rd USENIX Security Symposium (USENIX Security 24), pages 1401\u20131418, 2024."},{"key":"e_1_3_2_1_10_1","volume-title":"Exploitation Techniques for Data-oriented Attacks with Existing and Potential Defense Approaches. ACM Transactions on Privacy and Security (TOPS), 24(4):1\u201336","author":"Cheng Long","year":"2021","unstructured":"Long Cheng, Salman Ahmed, Hans Liljestrand, Thomas Nyman, Haipeng Cai, Trent Jaeger, N Asokan, and Danfeng Yao. Exploitation Techniques for Data-oriented Attacks with Existing and Potential Defense Approaches. ACM Transactions on Privacy and Security (TOPS), 24(4):1\u201336, 2021."},{"key":"e_1_3_2_1_11_1","first-page":"986","volume-title":"Zhenkai Liang. Data-Oriented Programming: On the Expressiveness of Non-control Data Attacks. In 2016 IEEE Symposium on Security and Privacy (SP)","author":"Hu Hong","unstructured":"Hong Hu, Shweta Shinde, Sendroiu Adrian, Zheng Leong Chua, Prateek Saxena, and Zhenkai Liang. Data-Oriented Programming: On the Expressiveness of Non-control Data Attacks. In 2016 IEEE Symposium on Security and Privacy (SP), pages 969\u2013986. IEEE, 2016."},{"key":"e_1_3_2_1_12_1","first-page":"187","volume-title":"Jacobs and Stijn Volckaert. Not Quite Write: On the Effectiveness of Store-Only Bounds Checking. In 18th USENIX WOOT Conference on Offensive Technologies (WOOT 24)","author":"Adriaan","year":"2024","unstructured":"Adriaan Jacobs and Stijn Volckaert. Not Quite Write: On the Effectiveness of Store-Only Bounds Checking. In 18th USENIX WOOT Conference on Offensive Technologies (WOOT 24), pages 171\u2013187, 2024."},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2022.23060"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1109\/SecDev56634.2023.00021"},{"key":"e_1_3_2_1_15_1","first-page":"7212","volume-title":"33rd USENIX Security Symposium (USENIX Security 24)","author":"George Rahul","year":"2024","unstructured":"Rahul George, Mingming Chen, Kaiming Huang, Zhiyun Qian, Thomas La Porta, and Trent Jaeger. OPTISAN: Using Multiple Spatial Error Defenses to Optimize Stack Memory Protection within a Budget. In 33rd USENIX Security Symposium (USENIX Security 24), pages 7195\u20137212, 2024."},{"key":"e_1_3_2_1_16_1","volume-title":"Citeseer","author":"James","year":"1972","unstructured":"James P Anderson et al. Computer Security Technology Planning Study. Technical report, Citeseer, 1972."},{"key":"e_1_3_2_1_17_1","first-page":"78","volume-title":"USENIX security symposium","author":"Cowan Crispan","unstructured":"Crispan Cowan, Calton Pu, Dave Maier, Jonathan Walpole, Peat Bakke, Steve Beattie, Aaron Grier, Perry Wagle, Qian Zhang, and Heather Hinton. StackGuard: Automatic Adaptive Detection and Prevention of Buffer-Overflow Attacks. In USENIX security symposium, volume 98, pages 63\u201378. San Antonio, TX, 1998."},{"key":"e_1_3_2_1_18_1","volume-title":"Control-flow Enforcement Technology (CET) Shadow Stack","author":"Kernel The Linux","year":"2024","unstructured":"The Linux Kernel. Control-flow Enforcement Technology (CET) Shadow Stack, 2024. URL https:\/\/docs.kernel.org\/next\/x86\/shstk.html."},{"issue":"3","key":"e_1_3_2_1_19_1","first-page":"1","volume":"5","author":"Grisafi Michele","year":"2024","unstructured":"Michele Grisafi, Mahmoud Ammar, Marco Roveri, and Bruno Crispo. FLAShadow: A Flash-based Shadow Stack for Low-end Embedded Systems. ACM Transactions on Internet of Things, 5(3):1\u201329, 2024.","journal-title":"Bruno Crispo. FLAShadow: A Flash-based Shadow Stack for Low-end Embedded Systems. ACM Transactions on Internet of Things"},{"key":"e_1_3_2_1_20_1","first-page":"999","volume-title":"Mathias Payer. SoK: Shining Light on Shadow Stacks. In 2019 IEEE Symposium on Security and Privacy (SP)","author":"Burow Nathan","unstructured":"Nathan Burow, Xinping Zhang, and Mathias Payer. SoK: Shining Light on Shadow Stacks. In 2019 IEEE Symposium on Security and Privacy (SP), pages 985\u2013999. IEEE, 2019."},{"key":"e_1_3_2_1_21_1","unstructured":"Kernel Development Community. Guarded Control Stack support for AArch64 Linux. URL https:\/\/docs.kernel.org\/arch\/arm64\/gcs.html."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103568"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/3658644.3690239"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/3320269.3384757"},{"key":"e_1_3_2_1_25_1","volume-title":"Sekar. Code-pointer Integrity. In 10th USENIX Symposium on Operating Systems Design and Implementation (OSDI)","author":"Volodymyr Kuznetsov","year":"2014","unstructured":"Kuznetsov Volodymyr, Szekeres Laszlo, Payer Mathias, Candea George, and R Sekar. Code-pointer Integrity. In 10th USENIX Symposium on Operating Systems Design and Implementation (OSDI), 2014."},{"key":"e_1_3_2_1_26_1","first-page":"162","volume-title":"2022 IEEE International Conference on Cyber Security and Resilience (CSR)","author":"Grisafi Michele","unstructured":"Michele Grisafi, Mahmoud Ammar, and Bruno Crispo. On the (in)securitty of Memory Protection Units : A Cautionary Note. In 2022 IEEE International Conference on Cyber Security and Resilience (CSR), pages 157\u2013162. IEEE, 2022."},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1109\/TDSC.2021.3063843"},{"key":"e_1_3_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2015.23248"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/1542476.1542504"},{"key":"e_1_3_2_1_30_1","first-page":"96","volume-title":"USENIX Security Symposium","volume":"10","author":"Akritidis Periklis","year":"2009","unstructured":"Periklis Akritidis, Manuel Costa, Miguel Castro, and Steven Hand. Baggy Bounds Checking: An Efficient and Backwards-Compatible Defense against Out-of-Bounds Errors. In USENIX Security Symposium, volume 10, page 96, 2009."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2017.23287"},{"key":"e_1_3_2_1_32_1","unstructured":"Myoung Jin Nam. Inline and Sideline Approaches for Low-Cost Memory Safety in C. PhD thesis University of Cambridge 2021."},{"key":"e_1_3_2_1_33_1","volume-title":"Enforcing Bounds Safety for Production C Code. EuroLLVM Developers' Meeting","author":"Yeoul Na.","year":"2023","unstructured":"Yeoul Na. -fbounds-safety. Enforcing Bounds Safety for Production C Code. EuroLLVM Developers' Meeting, May 2023. URL https:\/\/llvm.org\/devmtg\/2023-05\/slides\/TechnicalTalks-May11\/01-Na-fbounds-safety.pdf."},{"key":"e_1_3_2_1_34_1","volume-title":"Retrofitting spatial safety to hundreds of millions of lines of C++. https:\/\/securitty.googleblog.com\/2024\/11\/retrofitting-spatial-safety-to-hundreds.html","year":"2024","unstructured":"Google. Retrofitting spatial safety to hundreds of millions of lines of C++. https:\/\/securitty.googleblog.com\/2024\/11\/retrofitting-spatial-safety-to-hundreds.html, 2024."},{"key":"e_1_3_2_1_35_1","volume-title":"https:\/\/developer.arm.com\/documentation\/102433\/0100","author":"Providing ARM.","year":"2022","unstructured":"ARM. Learn the Architecture - Providing Protection for Complex Software. https:\/\/developer.arm.com\/documentation\/102433\/0100, 2022."},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1145\/3634737.3637655"},{"key":"e_1_3_2_1_37_1","first-page":"858","volume-title":"Chao Zhang. MTSan: A Feasible and Practical Memory Sanitizer for Fuzzing COTS Binaries. In 32nd USENIX Security Symposium (USENIX Security 23)","author":"Chen Xingman","year":"2023","unstructured":"Xingman Chen, Yinghao Shi, Zheyu Jiang, Yuan Li, Ruoyu Wang, Haixin Duan, Haoyu Wang, and Chao Zhang. MTSan: A Feasible and Practical Memory Sanitizer for Fuzzing COTS Binaries. In 32nd USENIX Security Symposium (USENIX Security 23), pages 841\u2013858, 2023."},{"key":"e_1_3_2_1_38_1","unstructured":"LLVM Project. Memtagsanitizer . URL https:\/\/llvm.org\/docs\/MemTagSanitizer.html."},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP54263.2024.00263"},{"key":"e_1_3_2_1_40_1","volume-title":"Deterministic Detection of Spatial Memory Violations on ARM","author":"Seo Jiwon","year":"2023","unstructured":"Jiwon Seo, Junseung You, Donghyun Kwon, Yeongpil Cho, and Yunheung Paek. ZOMETAG: Zone-Based Memory Tagging for Fast, Deterministic Detection of Spatial Memory Violations on ARM. IEEE Transactions on Information Forensics and Security, 2023."},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/3642974.3652285"},{"key":"e_1_3_2_1_42_1","first-page":"14","volume-title":"Delta Pointers: Buffer Overflow Checks Without the Checks. In Proceedings of the Thirteenth EuroSys Conference","author":"Kroes Taddeus","year":"2018","unstructured":"Taddeus Kroes, Koen Koning, Erik van der Kouwe, Herbert Bos, and Cristiano Giuffrida. Delta Pointers: Buffer Overflow Checks Without the Checks. In Proceedings of the Thirteenth EuroSys Conference, pages 1\u201314, 2018."},{"key":"e_1_3_2_1_43_1","first-page":"1012","volume-title":"Simha Sethumadhavan. ZeRO: Zero-Overhead Resilient Operation Under Pointer Integrity Attacks. In 2021 ACM\/IEEE 48th Annual International Symposium on Computer Architecture (ISCA)","author":"Ibn Ziad Mohamed Tarek","unstructured":"Mohamed Tarek Ibn Ziad, Miguel A Arroyo, Evgeny Manzhosov, and Simha Sethumadhavan. ZeRO: Zero-Overhead Resilient Operation Under Pointer Integrity Attacks. In 2021 ACM\/IEEE 48th Annual International Symposium on Computer Architecture (ISCA), pages 999\u20131012. IEEE, 2021."},{"key":"e_1_3_2_1_44_1","first-page":"387","volume-title":"2005 International Conference on Dependable Systems and Networks (DSN'05)","author":"Chen Shuo","unstructured":"Shuo Chen, Jun Xu, Nithin Nakka, Zbigniew Kalbarczyk, and Ravishankar K Iyer. Defeating Memory Corruption Attacks via Pointer Taintedness Detection. In 2005 International Conference on Dependable Systems and Networks (DSN'05), pages 378\u2013387. IEEE, 2005."},{"key":"e_1_3_2_1_45_1","unstructured":"Authors. TAGShield Source Code. URL https:\/\/github.com\/MicheleGrisafi\/TAGshield."},{"key":"e_1_3_2_1_46_1","first-page":"301","volume-title":"Gurindar S Sohi. Efficient Detection of All Pointer and Array Access Errors. In Proceedings of the ACM SIGPLAN 1994 conference on Programming Language Design and Implementation","author":"Austin Todd M","year":"1994","unstructured":"Todd M Austin, Scott E Breach, and Gurindar S Sohi. Efficient Detection of All Pointer and Array Access Errors. In Proceedings of the ACM SIGPLAN 1994 conference on Programming Language Design and Implementation, pages 290\u2013301, 1994."},{"issue":"6","key":"e_1_3_2_1_47_1","first-page":"296","volume":"25","author":"Chase David R","year":"1990","unstructured":"David R Chase, Mark Wegman, and F Kenneth Zadeck. Analysis of Pointers and Structures. ACM SIGPLAN Notices, 25(6):296\u2013310, 1990.","journal-title":"F Kenneth Zadeck. Analysis of Pointers and Structures. ACM SIGPLAN Notices"},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1109\/TR.2018.2834476"},{"key":"e_1_3_2_1_49_1","volume-title":"2024 CWE Top 25 Most Dangerous Software Weaknesses","author":"CWE.","year":"2024","unstructured":"CWE. 2024 CWE Top 25 Most Dangerous Software Weaknesses, 2024. URL https:\/\/cwe.mitre.org\/top25\/archive\/2024\/2024_cwe_top25.html."},{"key":"e_1_3_2_1_50_1","first-page":"318","volume-title":"AddressSanitizer: A Fast Address Sanity Checker. In 2012 USENIX annual technical conference (USENIX ATC 12)","author":"Serebryany Konstantin","year":"2012","unstructured":"Konstantin Serebryany, Derek Bruening, Alexander Potapenko, and Dmitriy Vyukov. AddressSanitizer: A Fast Address Sanity Checker. In 2012 USENIX annual technical conference (USENIX ATC 12), pages 309\u2013318, 2012."},{"key":"e_1_3_2_1_51_1","volume-title":"USENIX Security","author":"Gorter Floris","year":"2025","unstructured":"Floris Gorter and Cristiano Giuffrida. RangeSanitizer: Detecting Memory Errors with Efficient Range Checks. In USENIX Security, 2025."},{"key":"e_1_3_2_1_52_1","volume-title":"CCured: Type-Safe Retrofitting of Legacy Software. ACM Transactions on Programming Languages and Systems (TOPLAS), 27(3):477\u2013526","author":"Necula George C","year":"2005","unstructured":"George C Necula, Jeremy Condit, Matthew Harren, Scott McPeak, and Westley Weimer. CCured: Type-Safe Retrofitting of Legacy Software. ACM Transactions on Programming Languages and Systems (TOPLAS), 27(3):477\u2013526, 2005."},{"key":"e_1_3_2_1_53_1","first-page":"288","volume-title":"Yanling Wang. Cyclone: A Safe Dialect of C. In Proceedings of the General Track of the Annual Conference on USENIX Annual Technical Conference, ATEC '02","author":"Jim Trevor","year":"2002","unstructured":"Trevor Jim, J. Greg Morrisett, Dan Grossman, Michael W. Hicks, James Cheney, and Yanling Wang. Cyclone: A Safe Dialect of C. In Proceedings of the General Track of the Annual Conference on USENIX Annual Technical Conference, ATEC '02, pages 275\u2013288, USA, 2002. USENIX Association. ISBN 1880446006."},{"key":"e_1_3_2_1_54_1","volume-title":"Schloss-Dagstuhl-Leibniz Zentrum f\u00fcr Informatik","author":"Nagarakatte Santosh","year":"2015","unstructured":"Santosh Nagarakatte, Milo MK Martin, and Steve Zdancewic. Everything You Want to Know about Pointer-based Checking. In 1st Summit on Advances in Programming Languages (SNAPL 2015). Schloss-Dagstuhl-Leibniz Zentrum f\u00fcr Informatik, 2015."},{"key":"e_1_3_2_1_55_1","volume-title":"Christof Fetzer. Intel MPX Explained: A Cross-layer Analysis of the Intel MPX System Stack. Proceedings of the ACM on Measurement and Analysis of Computing Systems","author":"Oleksenko Oleksii","year":"2018","unstructured":"Oleksii Oleksenko, Dmitrii Kuvaiskii, Pramod Bhatotia, Pascal Felber, and Christof Fetzer. Intel MPX Explained: A Cross-layer Analysis of the Intel MPX System Stack. Proceedings of the ACM on Measurement and Analysis of Computing Systems, 2018."},{"key":"e_1_3_2_1_56_1","first-page":"156","volume-title":"Wouter Joosen. PAriCheck: An Efficient Pointer Arithmetic Checker for C Programs. In Proceedings of the 5th ACM Symposium on Information, Computer and Communications Security","author":"Younan Yves","year":"2010","unstructured":"Yves Younan, Pieter Philippaerts, Lorenzo Cavallaro, R Sekar, Frank Piessens, and Wouter Joosen. PAriCheck: An Efficient Pointer Arithmetic Checker for C Programs. In Proceedings of the 5th ACM Symposium on Information, Computer and Communications Security, pages 145\u2013156, 2010."},{"key":"e_1_3_2_1_57_1","first-page":"131","volume-title":"Roland HC Yap. Hardening Binaries Against More Memory Errors. In Proceedings of the Seventeenth European Conference on Computer Systems","author":"Duck Gregory J","year":"2022","unstructured":"Gregory J Duck, Yuntong Zhang, and Roland HC Yap. Hardening Binaries Against More Memory Errors. In Proceedings of the Seventeenth European Conference on Computer Systems, pages 117\u2013131, 2022."},{"key":"e_1_3_2_1_58_1","first-page":"169","volume-title":"NDSS","volume":"2004","author":"Ruwase Olatunji","year":"2004","unstructured":"Olatunji Ruwase and Monica S Lam. A Practical Dynamic Buffer Overflow Detector. In NDSS, volume 2004, pages 159\u2013169, 2004."},{"issue":"6","key":"e_1_3_2_1_59_1","first-page":"1","volume":"51","author":"Memarian Kayvan","year":"2016","unstructured":"Kayvan Memarian, Justus Matthiesen, James Lingard, Kyndylan Nienhuis, David Chisnall, Robert NM Watson, and Peter Sewell. Into the Depths of C: Elaborating The De-Facto Standards. ACM SIGPLAN Notices, 51(6):1\u201315, 2016.","journal-title":"Peter Sewell. Into the Depths of C: Elaborating The De-Facto Standards. ACM SIGPLAN Notices"},{"key":"e_1_3_2_1_60_1","first-page":"142","volume-title":"Duck and Roland HC Yap. Heap Bounds Protection with Low Fat Pointers. In Proceedings of the 25th International Conference on Compiler Construction","author":"Gregory","year":"2016","unstructured":"Gregory J Duck and Roland HC Yap. Heap Bounds Protection with Low Fat Pointers. In Proceedings of the 25th International Conference on Compiler Construction, pages 132\u2013142, 2016."},{"key":"e_1_3_2_1_61_1","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560598"},{"key":"e_1_3_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.1145\/3555776.3577635"},{"key":"e_1_3_2_1_63_1","doi-asserted-by":"publisher","DOI":"10.1145\/3664476.3664492"},{"key":"e_1_3_2_1_64_1","first-page":"1054","volume-title":"30th USENIX Security Symposium (USENIX Security 21)","author":"Farkhani Reza Mirzazade","year":"2021","unstructured":"Reza Mirzazade Farkhani, Mansour Ahmadi, and Long Lu. PTAuth: Temporal Memory Safety via Robust Points-to Authentication. In 30th USENIX Security Symposium (USENIX Security 21), pages 1037\u20131054, 2021."},{"key":"e_1_3_2_1_65_1","first-page":"1344","volume-title":"Trent Jaeger. Top of the Heap: Efficient Memory Error Protection of Safe Heap Objects. In Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security","author":"Huang Kaiming","year":"2024","unstructured":"Kaiming Huang, Mathias Payer, Zhiyun Qian, Jack Sampson, Gang Tan, and Trent Jaeger. Top of the Heap: Efficient Memory Error Protection of Safe Heap Objects. In Proceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security, pages 1330\u20131344, 2024."},{"key":"e_1_3_2_1_66_1","volume-title":"Memory Tagging and how it improves C\/C++ memory safety. arXiv preprint arXiv:1802.09517","author":"Serebryany Kostya","year":"2018","unstructured":"Kostya Serebryany, Evgenii Stepanov, Aleksey Shlyapnikov, Vlad Tsyrklevich, and Dmitry Vyukov. Memory Tagging and how it improves C\/C++ memory safety. arXiv preprint arXiv:1802.09517, 2018."},{"key":"e_1_3_2_1_67_1","unstructured":"LLVM. Stack Safety Analysis. https:\/\/llvm.org\/docs\/StackSafetyAnalysis.html."},{"key":"e_1_3_2_1_68_1","unstructured":"Richard Earnshaw. GLIBC MTE Support. URL https:\/\/sourceware.org\/git\/?p=glibc.git;a=commit;h=d27f0e5d889f4bf4a796fe2a883b2f264bf40c12."},{"key":"e_1_3_2_1_69_1","unstructured":"The Linux Kernel. KASAN. URL https:\/\/www.kernel.org\/doc\/html\/latest\/dev-tools\/kasan.html."},{"key":"e_1_3_2_1_70_1","unstructured":"LLVM Project. Llvm 18.1.8 release notes . URL https:\/\/releases.llvm.org\/18.L8\/docs\/ReleaseNotes.html."},{"key":"e_1_3_2_1_71_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2022.24026"},{"key":"e_1_3_2_1_72_1","doi-asserted-by":"publisher","DOI":"10.1145\/3579856.3590331"},{"key":"e_1_3_2_1_73_1","volume-title":"Memory tagging: A memory efficient design. arXiv preprint arXiv:2209.00307","author":"Partap Aditi","year":"2022","unstructured":"Aditi Partap and Dan Boneh. Memory tagging: A memory efficient design. arXiv preprint arXiv:2209.00307, 2022."},{"key":"e_1_3_2_1_74_1","volume-title":"Color My World: Deterministic Tagging for Memory Safety","author":"Liljestrand Hans","year":"2022","unstructured":"Hans Liljestrand, Carlos Chinea, R\u00e9mi Denis-Courmont, Jan-Erik Ekberg, and N. Asokan. Color My World: Deterministic Tagging for Memory Safety, 2022."},{"key":"e_1_3_2_1_75_1","unstructured":"Inc. Gentoo Foundation and F\u00f6rderverein Gentoo e.V. Gentoo linux. URL https:\/\/www.gentoo.org\/."},{"key":"e_1_3_2_1_76_1","unstructured":"Uwe F. Mayer. Linux\/unix nbench. URL https:\/\/www.math.utah.edu\/~mayer\/linux\/bmark.html."},{"key":"e_1_3_2_1_77_1","unstructured":"System Performance Evaluation Cooperative (SPEC). SPEC CPU\u00ae 2006. URL https:\/\/www.spec.org\/cpu2006\/."},{"key":"e_1_3_2_1_78_1","unstructured":"Q-Success W3Techs. Usage statistics of Nginx. URL https:\/\/w3techs.com\/technologies\/details\/ws-nginx."},{"key":"e_1_3_2_1_79_1","unstructured":"Timothy Vaccarelli. SHA256-512 2017. URL https:\/\/github.com\/LeFroid\/sha256-512."},{"key":"e_1_3_2_1_80_1","unstructured":"TrustedFirmware.org. About OP-TEE. URL https:\/\/optee.readthedocs.io\/en\/latest\/general\/about.html."},{"key":"e_1_3_2_1_81_1","doi-asserted-by":"publisher","DOI":"10.1145\/3342559.3365338"},{"key":"e_1_3_2_1_82_1","doi-asserted-by":"publisher","DOI":"10.1109\/MC.2012.345"},{"key":"e_1_3_2_1_83_1","first-page":"146","volume-title":"Prachi Gauriar, and Ravishankar K Iyer. Non-Control-Data Attacks Are Realistic Threats. In USENIX security symposium","author":"Chen Shuo","year":"2005","unstructured":"Shuo Chen, Jun Xu, Emre Can Sezer, Prachi Gauriar, and Ravishankar K Iyer. Non-Control-Data Attacks Are Realistic Threats. In USENIX security symposium, volume 5, page 146, 2005."},{"key":"e_1_3_2_1_84_1","first-page":"1882","volume-title":"Mathias Payer. Block Oriented Programming: Automating Data-Only Attacks. In Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security","author":"Ispoglou Kyriakos K","year":"2018","unstructured":"Kyriakos K Ispoglou, Bader AlBassam, Trent Jaeger, and Mathias Payer. Block Oriented Programming: Automating Data-Only Attacks. In Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security, pages 1868\u20131882, 2018."},{"key":"e_1_3_2_1_85_1","unstructured":"Android Open Source Project. Hardware-assisted AddressSanitizer . URL https:\/\/source.android.com\/docs\/security\/test\/hwasan."},{"key":"e_1_3_2_1_86_1","volume-title":"AddressSanitizer Performance Numbers","year":"2015","unstructured":"Google. AddressSanitizer Performance Numbers, 2015. URL https:\/\/github.com\/google\/sanitizers\/wiki\/AddressSanitizerPerformanceNumbers."},{"key":"e_1_3_2_1_87_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.00016"}],"event":{"name":"ASIA CCS '26: ACM Asia Conference on Computer and Communications Security","location":"Bangalore India","acronym":"ASIA CCS '26","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the ACM Asia Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3779208.3785279","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,6,4]],"date-time":"2026-06-04T15:35:09Z","timestamp":1780587309000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3779208.3785279"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,6]]},"references-count":87,"alternative-id":["10.1145\/3779208.3785279","10.1145\/3779208"],"URL":"https:\/\/doi.org\/10.1145\/3779208.3785279","relation":{},"subject":[],"published":{"date-parts":[[2026,6]]},"assertion":[{"value":"2026-06-04","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}