<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
    <title>Florian Hofhammer</title>
    <link rel="self" type="application/atom+xml" href="https://fhofhammer.de/atom.xml"/>
    <link rel="alternate" type="text/html" href="https://fhofhammer.de"/>
    <generator uri="https://www.getzola.org/">Zola</generator>
    <updated>2026-08-12T00:00:00+00:00</updated>
    <id>https://fhofhammer.de/atom.xml</id>
    <entry xml:lang="en">
        <title>PrivacyShield: Relaying BLE Beacons to Counter Unsolicited Tracking</title>
        <published>2026-08-12T00:00:00+00:00</published>
        <updated>2026-08-12T00:00:00+00:00</updated>
        
        <author>
          <name>
            Florian Hofhammer
          </name>
        </author>
        
        <author>
          <name>
            Daniele Antonioli
          </name>
        </author>
        
        <author>
          <name>
            Mathias Payer
          </name>
        </author>
        
        <link rel="alternate" type="text/html" href="https://fhofhammer.de/publications/privacyshield/"/>
        <id>https://fhofhammer.de/publications/privacyshield/</id>
        
        <content type="html" xml:base="https://fhofhammer.de/publications/privacyshield/">&lt;h2 id=&quot;abstract&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#abstract&quot; aria-label=&quot;Anchor link for: abstract&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Abstract&lt;&#x2F;h2&gt;
&lt;p&gt;Offline finding networks such as Apple’s Find My, Google’s Find My Device, or
Samsung’s SmartThings Find are frequently abused to stalk unsuspecting victims.
These networks allow users to attach small, cheap tags to items to locate them
if they are lost.
The tags announce their presence via Bluetooth Low Energy (BLE) beacons, and
nearby Internetconnected devices such as smartphones report their location to
the finding network.
However, the low price and easy-tohide footprint of offline finding tags makes
them appealing to malicious actors, who place tags on their unwitting victims.
Nearby devices or even the victim’s own device then unknowingly report the
victim’s location to the stalker.&lt;&#x2F;p&gt;
&lt;p&gt;We analyze the anti-stalking measures put in place by offline finding networks
with a focus on Apple’s Find My and Google’s Find My Device.
We show how malicious actors can bypass those measures and propose
PRIVACYSHIELD, a novel relay network protecting stalking victims.
Our network takes advantage of the fact that offline finding BLE beacons are
unauthenticated and can be relayed to arbitrary locations.
Relayed beacons cause third-party devices to report incorrect locations to the
finding network, obfuscating the victim’s location.
We demonstrate PRIVACYSHIELD’s effectiveness in masking a tag’s location, and
show the robustness of the system against attempts to thwart its usage.
Then, we suggest practical recommendations for offline finding network
providers to improve stalking protection.&lt;&#x2F;p&gt;
&lt;h2 id=&quot;links&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#links&quot; aria-label=&quot;Anchor link for: links&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Links&lt;&#x2F;h2&gt;
&lt;div class=&quot;tags&quot;&gt;
    &lt;a href=&quot;2026-hofhammer-privacyshield.pdf&quot;&gt;PDF&lt;&#x2F;a&gt;
    &lt;a href=&quot;2026-hofhammer-privacyshield.bib&quot;&gt;BibTeX&lt;&#x2F;a&gt;
    &lt;a class=&quot;external&quot; href=&quot;https:&#x2F;&#x2F;github.com&#x2F;HexHive&#x2F;privacyshield&quot;&gt;Code&lt;&#x2F;a&gt;
&lt;&#x2F;div&gt;
&lt;h2 id=&quot;bibtex&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#bibtex&quot; aria-label=&quot;Anchor link for: bibtex&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
BibTeX&lt;&#x2F;h2&gt;
&lt;pre class=&quot;giallo&quot; style=&quot;color: #CAD3F5; background-color: #24273A;&quot;&gt;&lt;code data-lang=&quot;bibtex&quot;&gt;&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #C6A0F6;&quot;&gt;@inproceedings&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{&lt;&#x2F;span&gt;&lt;span style=&quot;color: #EED49F;font-style: italic;&quot;&gt;hofhammer2026privacyshield&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    title&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;PrivacyShield&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt;: &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Relaying BLE Beacons&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; to &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Counter Unsolicited Tracking&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    booktitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Proceedings of the 35th &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;USENIX Security Symposium&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    author&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Hofhammer, Florian and Antonioli, Daniele and Payer, Mathias&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    date&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2026-08&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    publisher&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;USENIX Association&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    location&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Baltimore, MD, USA&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    eventtitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;USENIX Security&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;&lt;&#x2F;code&gt;&lt;&#x2F;pre&gt;</content>
        
    </entry>
    <entry xml:lang="en">
        <title>EmbedFuzz: High Speed Fuzzing Through Transplantation</title>
        <published>2024-12-17T00:00:00+00:00</published>
        <updated>2024-12-17T00:00:00+00:00</updated>
        
        <author>
          <name>
            Florian Hofhammer
          </name>
        </author>
        
        <author>
          <name>
            Qinying Wang
          </name>
        </author>
        
        <author>
          <name>
            Atri Bhattacharyya
          </name>
        </author>
        
        <author>
          <name>
            Majid Salehi
          </name>
        </author>
        
        <author>
          <name>
            Bruno Crispo
          </name>
        </author>
        
        <author>
          <name>
            Manuel Egele
          </name>
        </author>
        
        <author>
          <name>
            Mathias Payer
          </name>
        </author>
        
        <author>
          <name>
            Marcel Busch
          </name>
        </author>
        
        <link rel="alternate" type="text/html" href="https://fhofhammer.de/publications/embedfuzz/"/>
        <id>https://fhofhammer.de/publications/embedfuzz/</id>
        
        <content type="html" xml:base="https://fhofhammer.de/publications/embedfuzz/">&lt;h2 id=&quot;abstract&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#abstract&quot; aria-label=&quot;Anchor link for: abstract&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Abstract&lt;&#x2F;h2&gt;
&lt;p&gt;Dynamic analysis and especially fuzzing are challenging tasks for embedded
firmware running on modern low-end Microcontroller Units (MCUs) due to
performance overheads from instruction emulation, the difficulty of emulating
the vast space of available peripherals, and low availability of open-source
embedded firmware.
Consequently, efficient security testing of MCU firmware has proved to be a
resource- and engineering-heavy endeavor.&lt;&#x2F;p&gt;
&lt;p&gt;EmbedFuzz introduces an efficient end-to-end fuzzing framework for MCU
firmware.
Our novel &lt;em&gt;firmware transplantation&lt;&#x2F;em&gt; technique converts binary MCU firmware to a
functionally equivalent and fuzzing-enhanced version of the firmware which
executes on a compatible high-end device at native performance.
Besides the performance gains, our system enables advanced introspection
capabilities based on tooling for typical Linux user space processes, thus
simplifying analysis of crashes and bug triaging.
In our evaluation against state-of-the-art MCU fuzzers, EmbedFuzz exhibits up
to eight-fold fuzzing throughput while consuming at most a fourth of the energy
thanks to its native execution.&lt;&#x2F;p&gt;
&lt;h2 id=&quot;links&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#links&quot; aria-label=&quot;Anchor link for: links&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Links&lt;&#x2F;h2&gt;
&lt;div class=&quot;tags&quot;&gt;
    &lt;a href=&quot;2024-hofhammer-embedfuzz.pdf&quot;&gt;Paper&lt;&#x2F;a&gt;
    &lt;a href=&quot;2024-hofhammer-embedfuzz.bib&quot;&gt;BibTeX&lt;&#x2F;a&gt;
    &lt;a class=&quot;external&quot; href=&quot;https:&#x2F;&#x2F;doi.org&#x2F;10.48550&#x2F;arXiv.2412.12746&quot;&gt;DOI&lt;&#x2F;a&gt;
    &lt;a class=&quot;external&quot; href=&quot;https:&#x2F;&#x2F;github.com&#x2F;HexHive&#x2F;SURGEON&quot;&gt;Code&lt;&#x2F;a&gt;
&lt;&#x2F;div&gt;
&lt;h2 id=&quot;bibtex&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#bibtex&quot; aria-label=&quot;Anchor link for: bibtex&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
BibTeX&lt;&#x2F;h2&gt;
&lt;pre class=&quot;giallo&quot; style=&quot;color: #CAD3F5; background-color: #24273A;&quot;&gt;&lt;code data-lang=&quot;bibtex&quot;&gt;&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #C6A0F6;&quot;&gt;@unpublished&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{&lt;&#x2F;span&gt;&lt;span style=&quot;color: #EED49F;font-style: italic;&quot;&gt;hofhammer2024embedfuzz&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    title&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;EmbedFuzz&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt;: &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;High Speed Fuzzing Through Transplantation&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    shorttitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;EmbedFuzz&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    author&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Hofhammer, Florian and Wang, Qinying and Bhattacharyya, Atri and Salehi, Majid and Crispo, Bruno and Egele, Manuel and Payer, Mathias and Busch, Marcel&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    date&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2024-12-17&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    eprint&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2412.12746&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    eprinttype&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;arXiv&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    eprintclass&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;cs&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    doi&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;10.48550&#x2F;arXiv.2412.12746&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    url&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;http:&#x2F;&#x2F;arxiv.org&#x2F;abs&#x2F;2412.12746&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    urldate&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2024-12-18&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    keywords&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Computer Science - Cryptography and Security&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;&lt;&#x2F;code&gt;&lt;&#x2F;pre&gt;</content>
        
    </entry>
    <entry xml:lang="en">
        <title>Could ChatGPT get an engineering degree? Evaluating higher education vulnerability to AI assistants</title>
        <published>2024-12-03T00:00:00+00:00</published>
        <updated>2024-12-03T00:00:00+00:00</updated>
        
        <author>
          <name>
            Beatriz Borges
          </name>
        </author>
        
        <author>
          <name>
            Negar Foroutan
          </name>
        </author>
        
        <author>
          <name>
            Deniz Bayazit
          </name>
        </author>
        
        <author>
          <name>
            Anna Sotnikova
          </name>
        </author>
        
        <author>
          <name>
            Syrielle Montariol
          </name>
        </author>
        
        <author>
          <name>
            Tanya Nazaretzky
          </name>
        </author>
        
        <author>
          <name>
            Mohammadreza Banaei
          </name>
        </author>
        
        <author>
          <name>
            Alireza Sakhaeirad
          </name>
        </author>
        
        <author>
          <name>
            Philippe Servant
          </name>
        </author>
        
        <author>
          <name>
            Seyed Parsa Neshaei
          </name>
        </author>
        
        <author>
          <name>
            Jibril Frej
          </name>
        </author>
        
        <author>
          <name>
            Angelika Romanou
          </name>
        </author>
        
        <author>
          <name>
            Gail Weiss
          </name>
        </author>
        
        <author>
          <name>
            Sepideh Mamooler
          </name>
        </author>
        
        <author>
          <name>
            Zeming Chen
          </name>
        </author>
        
        <author>
          <name>
            Simin Fan
          </name>
        </author>
        
        <author>
          <name>
            Silin Gao
          </name>
        </author>
        
        <author>
          <name>
            Mete Ismayilzada
          </name>
        </author>
        
        <author>
          <name>
            Debjit Paul
          </name>
        </author>
        
        <author>
          <name>
            Philippe Schwaller
          </name>
        </author>
        
        <author>
          <name>
            Sacha Friedli
          </name>
        </author>
        
        <author>
          <name>
            Patrick Jermann
          </name>
        </author>
        
        <author>
          <name>
            Tanja Käser
          </name>
        </author>
        
        <author>
          <name>
            Antoine Bosselut
          </name>
        </author>
        
        <author>
          <name>
            EPFL Grader Consortium
          </name>
        </author>
        
        <author>
          <name>
            EPFL Data Consortium
          </name>
        </author>
        
        <link rel="alternate" type="text/html" href="https://fhofhammer.de/publications/chatgpt/"/>
        <id>https://fhofhammer.de/publications/chatgpt/</id>
        
        <content type="html" xml:base="https://fhofhammer.de/publications/chatgpt/">&lt;h2 id=&quot;abstract&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#abstract&quot; aria-label=&quot;Anchor link for: abstract&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Abstract&lt;&#x2F;h2&gt;
&lt;p&gt;AI assistants, such as ChatGPT, are being increasingly used by students in
higher education institutions.
While these tools provide opportunities for improved teaching and education,
they also pose significant challenges for assessment and learning outcomes.
We conceptualize these challenges through the lens of vulnerability, the
potential for university assessments and learning outcomes to be impacted by
student use of generative AI.
We investigate the potential scale of this vulnerability by measuring the
degree to which AI assistants can complete assessment questions in standard
university-level Science, Technology, Engineering, and Mathematics (STEM)
courses.
Specifically, we compile a dataset of textual assessment questions from 50
courses at the École polytechnique fédérale de Lausanne (EPFL) and evaluate
whether two AI assistants, GPT-3.5 and GPT-4 can adequately answer these
questions.
We use eight prompting strategies to produce responses and find that GPT-4
answers an average of 65.8% of questions correctly, and can even produce the
correct answer across at least one prompting strategy for 85.1% of questions.
When grouping courses in our dataset by degree program, these systems already
pass the nonproject assessments of large numbers of core courses in various
degree programs, posing risks to higher education accreditation that will be
amplified as these models improve.
Our results call for revising program-level assessment design in higher
education in light of advances in generative AI.&lt;&#x2F;p&gt;
&lt;h2 id=&quot;links&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#links&quot; aria-label=&quot;Anchor link for: links&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Links&lt;&#x2F;h2&gt;
&lt;div class=&quot;tags&quot;&gt;
    &lt;a href=&quot;2024-borges-could-chatgpt.pdf&quot;&gt;Paper&lt;&#x2F;a&gt;
    &lt;a href=&quot;2024-borges-could-chatgpt.bib&quot;&gt;BibTeX&lt;&#x2F;a&gt;
    &lt;a class=&quot;external&quot; href=&quot;https:&#x2F;&#x2F;doi.org&#x2F;10.1073&#x2F;pnas.2414955121&quot;&gt;DOI&lt;&#x2F;a&gt;
&lt;&#x2F;div&gt;
&lt;h2 id=&quot;bibtex&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#bibtex&quot; aria-label=&quot;Anchor link for: bibtex&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
BibTeX&lt;&#x2F;h2&gt;
&lt;pre class=&quot;giallo&quot; style=&quot;color: #CAD3F5; background-color: #24273A;&quot;&gt;&lt;code data-lang=&quot;bibtex&quot;&gt;&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #C6A0F6;&quot;&gt;@article&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{&lt;&#x2F;span&gt;&lt;span style=&quot;color: #EED49F;font-style: italic;&quot;&gt;borges2024could&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    title&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Could &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;ChatGPT&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; Get an Engineering Degree? &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Evaluating&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; Higher Education Vulnerability to &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;AI&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; Assistants&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    shorttitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Could &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;ChatGPT&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; Get an Engineering Degree?&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    author&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Borges, Beatriz and Foroutan, Negar and Bayazit, Deniz and Sotnikova, Anna and Montariol, Syrielle and Nazaretzky, Tanya and Banaei, Mohammadreza and Sakhaeirad, Alireza and Servant, Philippe and Neshaei, Seyed Parsa and Frej, Jibril and Romanou, Angelika and Weiss, Gail and Mamooler, Sepideh and Chen, Zeming and Fan, Simin and Gao, Silin and Ismayilzada, Mete and Paul, Debjit and Schwaller, Philippe and Friedli, Sacha and Jermann, Patrick and K\&amp;quot;aser, Tanja and Bosselut, Antoine and &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{&lt;&#x2F;span&gt;&lt;span&gt;EPFL Grader Consortium&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt; and &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{&lt;&#x2F;span&gt;&lt;span&gt;EPFL Data Consortium&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    date&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2024-12-03&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    journaltitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Proceedings of the National Academy of Sciences&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    shortjournal&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Proc. Natl. Acad. Sci. U.S.A.&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    volume&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;121&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    number&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;49&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    issn&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;0027-8424, 1091-6490&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    doi&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;10.1073&#x2F;pnas.2414955121&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    url&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;https:&#x2F;&#x2F;pnas.org&#x2F;doi&#x2F;10.1073&#x2F;pnas.2414955121&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    urldate&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2024-11-29&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    langid&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;english&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;&lt;&#x2F;code&gt;&lt;&#x2F;pre&gt;</content>
        
    </entry>
    <entry xml:lang="en">
        <title>SURGEON: Performant, Flexible, and Accurate Re-Hosting via Transplantation</title>
        <published>2024-03-01T00:00:00+00:00</published>
        <updated>2024-03-01T00:00:00+00:00</updated>
        
        <author>
          <name>
            Florian Hofhammer
          </name>
        </author>
        
        <author>
          <name>
            Marcel Busch
          </name>
        </author>
        
        <author>
          <name>
            Qinying Wang
          </name>
        </author>
        
        <author>
          <name>
            Manuel Egele
          </name>
        </author>
        
        <author>
          <name>
            Mathias Payer
          </name>
        </author>
        
        <link rel="alternate" type="text/html" href="https://fhofhammer.de/publications/surgeon/"/>
        <id>https://fhofhammer.de/publications/surgeon/</id>
        
        <content type="html" xml:base="https://fhofhammer.de/publications/surgeon/">&lt;h2 id=&quot;abstract&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#abstract&quot; aria-label=&quot;Anchor link for: abstract&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Abstract&lt;&#x2F;h2&gt;
&lt;p&gt;Dynamic analysis of microcontroller-based embedded firmware remains
challenging.
The general lack of source code availability for Commercial-off-the-shelf
(COTS) firmware prevents powerful source-based instrumentation and prohibits
compiling the firmware into an executable directly runnable by an analyst.
Analyzing firmware binaries requires either acquisition and configuration of
custom hardware, or configuration of extensive software stacks built around
emulators.
In both cases, dynamic analysis is limited in functionality by complex
debugging and instrumentation interfaces and in performance by low execution
speeds on Microcontroller Units (MCUs) and Instruction Set Architecture (ISA)
translation overheads in emulators.&lt;&#x2F;p&gt;
&lt;p&gt;SURGEON provides a performant, flexible, and accurate rehosting approach for
dynamic analysis of embedded firmware.
We introduce &lt;em&gt;transplantation&lt;&#x2F;em&gt; to transform binary, embedded firmware into a
Linux user space process executing natively on compatible high-performance
systems through static binary rewriting.
In addition to the achieved performance improvements, SURGEON scales
horizontally through process instantiation and provides the flexibility to
apply existing dynamic analysis tooling for user space processes without
requiring adaptations to firmware-specific use cases.
SURGEON’s key use cases include debugging binary firmware with off-the-shelf
tooling for user space processes and fuzz testing.&lt;&#x2F;p&gt;
&lt;h2 id=&quot;links&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#links&quot; aria-label=&quot;Anchor link for: links&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Links&lt;&#x2F;h2&gt;
&lt;div class=&quot;tags&quot;&gt;
    &lt;a href=&quot;2024-hofhammer-surgeon.pdf&quot;&gt;Paper&lt;&#x2F;a&gt;
    &lt;a href=&quot;2024-hofhammer-surgeon-presentation.pdf&quot;&gt;Slides&lt;&#x2F;a&gt;
    &lt;a href=&quot;2024-hofhammer-surgeon.bib&quot;&gt;BibTeX&lt;&#x2F;a&gt;
    &lt;a class=&quot;external&quot; href=&quot;https:&#x2F;&#x2F;doi.org&#x2F;10.14722&#x2F;bar.2024.23011&quot;&gt;DOI&lt;&#x2F;a&gt;
    &lt;a class=&quot;external&quot; href=&quot;https:&#x2F;&#x2F;github.com&#x2F;HexHive&#x2F;SURGEON&quot;&gt;Code&lt;&#x2F;a&gt;
&lt;&#x2F;div&gt;
&lt;h2 id=&quot;bibtex&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#bibtex&quot; aria-label=&quot;Anchor link for: bibtex&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
BibTeX&lt;&#x2F;h2&gt;
&lt;pre class=&quot;giallo&quot; style=&quot;color: #CAD3F5; background-color: #24273A;&quot;&gt;&lt;code data-lang=&quot;bibtex&quot;&gt;&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #C6A0F6;&quot;&gt;@inproceedings&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{&lt;&#x2F;span&gt;&lt;span style=&quot;color: #EED49F;font-style: italic;&quot;&gt;hofhammer2024surgeon&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    title&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;SURGEON&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt;: &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Performant&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt;, &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Flexible&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt;, and &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Accurate Re-Hosting&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; via &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Transplantation&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    shorttitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;SURGEON&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    booktitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Proceedings of the 2024 &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Workshop&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; on &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Binary Analysis Research&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    author&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Hofhammer, Florian and Busch, Marcel and Wang, Qinying and Egele, Manuel and Payer, Mathias&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    date&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2024-03&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    publisher&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Internet Society&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    location&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;San Diego, CA, USA&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    doi&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;10.14722&#x2F;bar.2024.23011&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    url&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;https:&#x2F;&#x2F;www.ndss-symposium.org&#x2F;wp-content&#x2F;uploads&#x2F;bar2024-11-paper.pdf&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    urldate&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2025-02-28&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    eventtitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Workshop on &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Binary Analysis Research&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    isbn&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;979-8-9894372-0-7&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    langid&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;english&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;&lt;&#x2F;code&gt;&lt;&#x2F;pre&gt;</content>
        
    </entry>
    <entry xml:lang="en">
        <title>SecureCells: A Secure Compartmentalized Architecture</title>
        <published>2023-05-22T00:00:00+00:00</published>
        <updated>2023-05-22T00:00:00+00:00</updated>
        
        <author>
          <name>
            Atri Bhattacharyya
          </name>
        </author>
        
        <author>
          <name>
            Florian Hofhammer
          </name>
        </author>
        
        <author>
          <name>
            Yuanlong Li
          </name>
        </author>
        
        <author>
          <name>
            Siddharth Gupta
          </name>
        </author>
        
        <author>
          <name>
            Andrés Sanchez
          </name>
        </author>
        
        <author>
          <name>
            Babak Falsafi
          </name>
        </author>
        
        <author>
          <name>
            Mathias Payer
          </name>
        </author>
        
        <link rel="alternate" type="text/html" href="https://fhofhammer.de/publications/securecells/"/>
        <id>https://fhofhammer.de/publications/securecells/</id>
        
        <content type="html" xml:base="https://fhofhammer.de/publications/securecells/">&lt;h2 id=&quot;abstract&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#abstract&quot; aria-label=&quot;Anchor link for: abstract&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Abstract&lt;&#x2F;h2&gt;
&lt;p&gt;Modern programs are monolithic, combining code of varied provenance without
isolation, all the while running on network-connected devices.
A vulnerability in any component may compromise code and data of all other
components.
Compartmentalization separates programs into fault domains with limited
policy-defined permissions, following the Principle of Least Privilege,
preventing arbitrary interactions between components.
Unfortunately, existing compartmentalization mechanisms target weak attacker
models, incur high overheads, or overfit to specific use cases, precluding
their general adoption.
The need of the hour is a secure, performant, and flexible mechanism on which
developers can reliably implement an arsenal of compartmentalized software.&lt;&#x2F;p&gt;
&lt;p&gt;We present SecureCells, a novel architecture for intra-address space
compartmentalization.
SecureCells enforces per-Virtual Memory Area (VMA) permissions for secure and
scalable access control, and introduces new userspace instructions for secure
and fast compartment switching with hardware-enforced call gates and zero-copy
permission transfers.
SecureCells enables novel software mechanisms for call stack maintenance and
register context isolation.
In microbenchmarks, SecureCells switches compartments in only 8 cycles on a
5-stage in-order processor, reducing cost by an order of magnitude compared to
state-of-the-art.
Consequently, SecureCells helps secure high-performance software such as an
in-memory key-value store with negligible overhead of less than 3%.&lt;&#x2F;p&gt;
&lt;h2 id=&quot;links&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#links&quot; aria-label=&quot;Anchor link for: links&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Links&lt;&#x2F;h2&gt;
&lt;div class=&quot;tags&quot;&gt;
    &lt;a href=&quot;2023-bhattacharyya-securecells.pdf&quot;&gt;Paper&lt;&#x2F;a&gt;
    &lt;a href=&quot;2023-bhattacharyya-securecells-presentation.pdf&quot;&gt;Slides&lt;&#x2F;a&gt;
    &lt;a href=&quot;2023-bhattacharyya-securecells.bib&quot;&gt;BibTeX&lt;&#x2F;a&gt;
    &lt;a class=&quot;external&quot; href=&quot;https:&#x2F;&#x2F;doi.org&#x2F;10.1109&#x2F;SP46215.2023.10179472&quot;&gt;DOI&lt;&#x2F;a&gt;
    &lt;a class=&quot;external&quot; href=&quot;https:&#x2F;&#x2F;github.com&#x2F;HexHive?q=seccell&amp;type=all&amp;language=&amp;sort=&quot;&gt;Code&lt;&#x2F;a&gt;
    &lt;a class=&quot;external&quot; href=&quot;https:&#x2F;&#x2F;hexhive.epfl.ch&#x2F;securecells&#x2F;&quot;&gt;Website&lt;&#x2F;a&gt;
&lt;&#x2F;div&gt;
&lt;h2 id=&quot;bibtex&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#bibtex&quot; aria-label=&quot;Anchor link for: bibtex&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
BibTeX&lt;&#x2F;h2&gt;
&lt;pre class=&quot;giallo&quot; style=&quot;color: #CAD3F5; background-color: #24273A;&quot;&gt;&lt;code data-lang=&quot;bibtex&quot;&gt;&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #C6A0F6;&quot;&gt;@inproceedings&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{&lt;&#x2F;span&gt;&lt;span style=&quot;color: #EED49F;font-style: italic;&quot;&gt;bhattacharyya2023securecells&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    title&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;SecureCells&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt;: &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;A Secure Compartmentalized Architecture&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    shorttitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;SecureCells&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    booktitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2023 &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;IEEE Symposium&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; on &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Security&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; and &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Privacy&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; (&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;SP&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt;)&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    author&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Bhattacharyya, Atri and Hofhammer, Florian and Li, Yuanlong and Gupta, Siddharth and Sanchez, Andres and Falsafi, Babak and Payer, Mathias&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    date&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2023-05&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    pages&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2921--2939&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    publisher&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;IEEE&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    location&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;San Francisco, CA, USA&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    doi&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;10.1109&#x2F;SP46215.2023.10179472&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    url&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;https:&#x2F;&#x2F;ieeexplore.ieee.org&#x2F;document&#x2F;10179472&#x2F;&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    urldate&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2023-10-10&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    eventtitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2023 &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;IEEE Symposium&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; on &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Security&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; and &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Privacy&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; (&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;SP&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt;)&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    isbn&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;978-1-6654-9336-9&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;&lt;&#x2F;code&gt;&lt;&#x2F;pre&gt;</content>
        
    </entry>
    <entry xml:lang="en">
        <title>Towards Metrics for Analyzing System Architectures Modeled with EAST-ADL</title>
        <published>2020-02-25T00:00:00+00:00</published>
        <updated>2020-02-25T00:00:00+00:00</updated>
        
        <author>
          <name>
            Christoph Etzel
          </name>
        </author>
        
        <author>
          <name>
            Florian Hofhammer
          </name>
        </author>
        
        <author>
          <name>
            Bernhard Bauer
          </name>
        </author>
        
        <link rel="alternate" type="text/html" href="https://fhofhammer.de/publications/east-adl-metrics/"/>
        <id>https://fhofhammer.de/publications/east-adl-metrics/</id>
        
        <content type="html" xml:base="https://fhofhammer.de/publications/east-adl-metrics/">&lt;h2 id=&quot;abstract&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#abstract&quot; aria-label=&quot;Anchor link for: abstract&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Abstract&lt;&#x2F;h2&gt;
&lt;p&gt;Quality of system and software architectures plays a major role in today’s
development to reduce the complexity of systems during design and ensure
maintainability and extensibility.
Metrics can provide system architects with information about the quality of the
system architectures and support them to ensure the quality characteristics
defined in ISO 25010.&lt;&#x2F;p&gt;
&lt;p&gt;In this position paper, we look on selected metrics from code and
object-oriented design analysis to use them for the evaluation of system
architectures modeled with EAST-ADL.
Therefore, the metrics (collections) &lt;em&gt;Lines of Code&lt;&#x2F;em&gt;, &lt;em&gt;Cyclomatic Complexity&lt;&#x2F;em&gt;,
&lt;em&gt;Chidamber and Kemerer&lt;&#x2F;em&gt; and &lt;em&gt;MOOD&lt;&#x2F;em&gt; are examined for their application on
EAST-ADL models.&lt;&#x2F;p&gt;
&lt;h2 id=&quot;links&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#links&quot; aria-label=&quot;Anchor link for: links&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
Links&lt;&#x2F;h2&gt;
&lt;div class=&quot;tags&quot;&gt;
    &lt;a href=&quot;2020-etzel-east-adl.pdf&quot;&gt;Paper&lt;&#x2F;a&gt;
    &lt;a href=&quot;2020-etzel-east-adl.bib&quot;&gt;BibTeX&lt;&#x2F;a&gt;
    &lt;a class=&quot;external&quot; href=&quot;https:&#x2F;&#x2F;doi.org&#x2F;10.5220&#x2F;0009165704410448&quot;&gt;DOI&lt;&#x2F;a&gt;
&lt;&#x2F;div&gt;
&lt;h2 id=&quot;bibtex&quot;&gt;&lt;a class=&quot;zola-anchor&quot; href=&quot;#bibtex&quot; aria-label=&quot;Anchor link for: bibtex&quot;&gt;&lt;i class=&quot;icon&quot;&gt;&lt;&#x2F;i&gt;&lt;&#x2F;a&gt;
BibTeX&lt;&#x2F;h2&gt;
&lt;pre class=&quot;giallo&quot; style=&quot;color: #CAD3F5; background-color: #24273A;&quot;&gt;&lt;code data-lang=&quot;bibtex&quot;&gt;&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #C6A0F6;&quot;&gt;@inproceedings&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{&lt;&#x2F;span&gt;&lt;span style=&quot;color: #EED49F;font-style: italic;&quot;&gt;etzel2020metrics&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    title&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Towards &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Metrics&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; for &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Analyzing System Architectures Modeled&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; with &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;EAST-ADL&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    shorttitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Towards &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Metrics&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; for &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Analyzing System Architectures Modeled&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; with &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;EAST-ADL&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    booktitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Proceedings of the 8th &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;International Conference&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; on &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Model-Driven Engineering&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; and &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Software Development&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    author&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Etzel, Christoph and Hofhammer, Florian and Bauer, Bernhard&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    date&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2020&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    pages&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;441--448&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    publisher&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{&lt;&#x2F;span&gt;&lt;span&gt;SCITEPRESS - Science and Technology Publications&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    location&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;Valletta, Malta&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    doi&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;10.5220&#x2F;0009165704410448&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    url&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;http:&#x2F;&#x2F;www.scitepress.org&#x2F;DigitalLibrary&#x2F;Link.aspx?doi=10.5220&#x2F;0009165704410448&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    urldate&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;2022-10-28&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    eventtitle&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;8th &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;International Conference&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; on &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Model-Driven Engineering&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span&gt; and &lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;{{&lt;&#x2F;span&gt;&lt;span&gt;Software Development&lt;&#x2F;span&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}}&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;span&gt;,&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #8AADF4;font-style: italic;&quot;&gt;    isbn&lt;&#x2F;span&gt;&lt;span style=&quot;color: #8BD5CA;&quot;&gt; =&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt; {&lt;&#x2F;span&gt;&lt;span&gt;978-989-758-400-8&lt;&#x2F;span&gt;&lt;span style=&quot;color: #A6DA95;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;
&lt;span class=&quot;giallo-l&quot;&gt;&lt;span style=&quot;color: #939AB7;&quot;&gt;}&lt;&#x2F;span&gt;&lt;&#x2F;span&gt;&lt;&#x2F;code&gt;&lt;&#x2F;pre&gt;</content>
        
    </entry>
</feed>
