-
1
-
-
65349145047
-
Using programmer-written compiler extensions to catch security holes
-
May, Oakland, California
-
K. Ashcraft and D. Engler. Using programmer-written compiler extensions to catch security holes, May 2002. In IEEE Symposium on Security and Privacy, Oakland, California.
-
(2002)
IEEE Symposium on Security and Privacy
-
-
Ashcraft, K.1
Engler, D.2
-
2
-
-
0036079901
-
Improving computer security using extended static checking
-
Washington, DC, USA, IEEE Computer Society
-
B. Chess. Improving computer security using extended static checking. In SP '02: Proceedings of the 2002 IEEE Symposium on Security and Privacy, page 160, Washington, DC, USA, 2002. IEEE Computer Society.
-
(2002)
SP '02: Proceedings of the 2002 IEEE Symposium on Security and Privacy
, pp. 160
-
-
Chess, B.1
-
3
-
-
0038716438
-
CCured in the real world
-
New York, NY, USA
-
J. Condit, M. Harren, S. McPeak, G. Necula, and W. Weimer. CCured in the real world. In PLDI '03: Proceedings of the ACM SIGPLAN 2003 conference on Programming language design and implementation, pages 232-244, New York, NY, USA, 2003.
-
(2003)
PLDI '03: Proceedings of the ACM SIGPLAN 2003 conference on Programming language design and implementation
, pp. 232-244
-
-
Condit, J.1
Harren, M.2
McPeak, S.3
Necula, G.4
Weimer, W.5
-
4
-
-
85084160243
-
StackGuard: Automatic adaptive detection and prevention of buffer-overflow attacks
-
San Antonio, Texas, Jan
-
C. Cowan, G. Pu, D. Maier, J. Walpole, P. Bakke, S. Beattie, A. Grier, P. Wagle, Q. Zhang, and H. Hinton. StackGuard: Automatic adaptive detection and prevention of buffer-overflow attacks. In Proc. 7th USENIX Security Conference, pages 63-78, San Antonio, Texas, Jan 1998.
-
(1998)
Proc. 7th USENIX Security Conference
, pp. 63-78
-
-
Cowan, C.1
Pu, G.2
Maier, D.3
Walpole, J.4
Bakke, P.5
Beattie, S.6
Grier, A.7
Wagle, P.8
Zhang, Q.9
Hinton, H.10
-
5
-
-
0037702242
-
-
N. Dor, M. Rodeh, and M. Sagiv. CSSV: towards a realistic tool for statically detecting all buffer overflows in C. In PLDI '03: Proceedings of the ACM SIGPLAN 2003 conference on Programming language design and implementation, pages 155-167, New York, NY, USA, 2003. ACM Press.
-
N. Dor, M. Rodeh, and M. Sagiv. CSSV: towards a realistic tool for statically detecting all buffer overflows in C. In PLDI '03: Proceedings of the ACM SIGPLAN 2003 conference on Programming language design and implementation, pages 155-167, New York, NY, USA, 2003. ACM Press.
-
-
-
-
6
-
-
0035250541
-
Dynamically discovering likely program invariants to support program evolution
-
February
-
M. Ernst, J. Cockrell, W. Griswold, and D. Notkin. Dynamically discovering likely program invariants to support program evolution. IEEE Transactions in Software Engineering, 27(2):99-123, February 2001.
-
(2001)
IEEE Transactions in Software Engineering
, vol.27
, Issue.2
, pp. 99-123
-
-
Ernst, M.1
Cockrell, J.2
Griswold, W.3
Notkin, D.4
-
7
-
-
0036147522
-
Improving security using extensible lightweight static analysis
-
D. Evans and D. Larochelle. Improving security using extensible lightweight static analysis. IEEE Software, 19(1):42-51, 2002.
-
(2002)
IEEE Software
, vol.19
, Issue.1
, pp. 42-51
-
-
Evans, D.1
Larochelle, D.2
-
9
-
-
0036036098
-
Extended static checking for Java
-
C. Flanagan, K. R. M. Leino, M. Lillibridge, G. Nelson, J. B. Saxe, and R. Stata. Extended static checking for Java. In Proceedings of the 29th ACM Symposium on Principles of Programming Languages, 2002.
-
(2002)
Proceedings of the 29th ACM Symposium on Principles of Programming Languages
-
-
Flanagan, C.1
Leino, K.R.M.2
Lillibridge, M.3
Nelson, G.4
Saxe, J.B.5
Stata, R.6
-
13
-
-
84906487819
-
Enhancing server availability and security through failure-oblivious computing
-
M. Rinard, C. Cadar, D. Dumitran, D. Roy, T. Leu, and W. Beebee Jr. Enhancing server availability and security through failure-oblivious computing. In Proceedings of the 6th Symposium on Operating Systems Design and Implementation, 2004.
-
(2004)
Proceedings of the 6th Symposium on Operating Systems Design and Implementation
-
-
Rinard, M.1
Cadar, C.2
Dumitran, D.3
Roy, D.4
Leu, T.5
Beebee Jr., W.6
-
15
-
-
85081874807
-
A first step towards automated detection of buffer overrun vulnerabilities
-
San Diego, CA, February
-
D. Wagner, J. Foster, E. Brewer, and A. Aiken. A first step towards automated detection of buffer overrun vulnerabilities. In Network and Distributed System Security Symposium, pages 3-17, San Diego, CA, February 2000.
-
(2000)
Network and Distributed System Security Symposium
, pp. 3-17
-
-
Wagner, D.1
Foster, J.2
Brewer, E.3
Aiken, A.4
-
17
-
-
14844302134
-
MEGA: An extensible, expressive system and language for statically checking security properties
-
J. Yang, T. Kremenek, Y. Xie, and D. Engler. MEGA: an extensible, expressive system and language for statically checking security properties. In Proceedings of the 10th ACM Conference on Computer and Communications Security, 2003.
-
(2003)
Proceedings of the 10th ACM Conference on Computer and Communications Security
-
-
Yang, J.1
Kremenek, T.2
Xie, Y.3
Engler, D.4
-
18
-
-
20344363200
-
Testing static analysis tools using exploitable buffer overflows from open source code
-
New York, NY, USA, ACM Press
-
M. Zitser, R. Lippmann, and T. Leek. Testing static analysis tools using exploitable buffer overflows from open source code. In SIGSOFT '04/FSE-12: Proceedings of the 12th ACM SIGSOFT twelfth international symposium on Foundations of software engineering, pages 97-106, New York, NY, USA, 2004. ACM Press.
-
(2004)
SIGSOFT '04/FSE-12: Proceedings of the 12th ACM SIGSOFT twelfth international symposium on Foundations of software engineering
, pp. 97-106
-
-
Zitser, M.1
Lippmann, R.2
Leek, T.3
|