- Home
- Search Results
- Page 1 of 1
Search for: All records
-
Total Resources5
- Resource Type
-
0005000000000000
- More
- Availability
-
41
- Author / Contributor
- Filter by Author / Creator
-
-
Hauser, Christophe (5)
-
Mirkovic, Jelena (2)
-
Wang, Haoda (2)
-
Wu, Wei-Cheng (2)
-
Arasteh, Sima (1)
-
Chan, Steven (1)
-
Egilsson, Hallgrimur (1)
-
Garcia, Luis (1)
-
Kann, Tyler (1)
-
Kruegel, Christopher (1)
-
Menon, Jayakrishna (1)
-
Park, David (1)
-
Raghothaman, Mukund (1)
-
Shoshitaishvili, Yan (1)
-
Tandon, Rajat (1)
-
Vigna, Giovanni (1)
-
Wang, Ruoyu (1)
-
Wang, Weihang (1)
-
Weideman, Nicolaas (1)
-
Yan, Yutian (1)
-
- Filter by Editor
-
-
& Spizer, S. M. (0)
-
& . Spizer, S. (0)
-
& Ahn, J. (0)
-
& Bateiha, S. (0)
-
& Bosch, N. (0)
-
& Brennan K. (0)
-
& Brennan, K. (0)
-
& Chen, B. (0)
-
& Chen, Bodong (0)
-
& Drown, S. (0)
-
& Ferretti, F. (0)
-
& Higgins, A. (0)
-
& J. Peters (0)
-
& Kali, Y. (0)
-
& Ruiz-Arias, P.M. (0)
-
& S. Spitzer (0)
-
& Sahin. I. (0)
-
& Spitzer, S. (0)
-
& Spitzer, S.M. (0)
-
(submitted - in Review for IEEE ICASSP-2024) (0)
-
-
Have feedback or suggestions for a way to improve these results?
!
Note: When clicking on a Digital Object Identifier (DOI) number, you will be taken to an external site maintained by the publisher.
Some full text articles may not yet be available without a charge during the embargo (administrative interval).
What is a DOI Number?
Some links on this page may take you to non-federal websites. Their policies may differ from this site.
-
Free, publicly-accessible full text available December 9, 2025
-
Wu, Wei-Cheng; Yan, Yutian; Egilsson, Hallgrimur; Park, David; Chan, Steven; Hauser, Christophe; Wang, Weihang (, EAI SecureComm 2024 – 20th EAI International Conference on Security and Privacy in Communication Networks)
-
Wang, Haoda; Hauser, Christophe; Garcia, Luis (, 2022 IEEE Security and Privacy Workshops (SPW))
-
Weideman, Nicolaas; Wang, Haoda; Kann, Tyler; Zahabizadeh, Spencer; Wu, Wei-Cheng; Tandon, Rajat; Mirkovic, Jelena; Hauser, Christophe (, RAID '22: Proceedings of the 25th International Symposium on Research in Attacks, Intrusions and Defenses)
-
Hauser, Christophe; Menon, Jayakrishna; Shoshitaishvili, Yan; Wang, Ruoyu; Vigna, Giovanni; Kruegel, Christopher (, Proceedings of the 35th Annual Computer Security Applications Conference)We present a novel approach to automatically recover information about the address space layout of remote processes in the presence of Address Space Layout Randomization (ASLR). Our system, dubbed Sleak, performs static analysis and symbolic execution of binary executable programs, and identifies program paths and input parameters leading to partial (i.e., only a few bits) or complete (i.e., the whole address) information disclosure vulnerabilities, revealing addresses of known objects of the target service or application. Sleak takes, as input, the binary executable program, and generates a symbolic expression for each program output that leaks information about the addresses of objects, such as stack variables, heap structures, or function pointers. By comparing these expressions with the concrete output of a remote process executing the same binary program image, our system is able to recover from a few bits to whole addresses of objects of the target application or service. Discovering the address of a single object in the target application is often enough to guess the layout of entire sections of the address space, which can be leveraged by attackers to bypass ASLR.more » « less
An official website of the United States government

Full Text Available