BitBlaze Publications

[Refereed Papers]][Books and Book Chapters] [Technical Reports][Back to BitBlaze]


Refereed Papers

"Automatic Patch-Based Exploit Generation is Possible: Techniques and Implications"
David Brumley, Pongsin Poosankam, Dawn Song and Jiang Zheng. In Proceedings of the IEEE Symposium on Security and Privacy, May 2008.

PDF BIB Project
"HookFinder: Identifying and Understanding Malware Hooking Behaviors"
Heng Yin, Zhenkai Liang, and Dawn Song. In Proceedings of the 15th Annual Network and Distributed System Security Symposium, February 2008.

PDF BIB Project
"Polyglot: Automatic Extraction of Protocol Message Format using Dynamic Binary Analysis."
Juan Caballero, Heng Yin, Zhenkai Liang, and Dawn Song. In Proceedings of the 14th ACM Conference on Computer and Communications Security (CCS), October 2007.

PDF BIB Project
"Panorama: Capturing System-wide Information Flow for Malware Detection and Analysis."
Heng Yin, Dawn Song, Manuel Egele, Christopher Kruegel, and Engin Kirda. In Proceedings of ACM Conference on Computer and Communication Security, Oct 2007.

PDF BIB Project
"Renovo: A Hidden Code Extractor for Packed Executa bles."
Min Gyung Kang, Pongsin Poosankam, and Heng Yin. In The 5th ACM Workshop on Recurring Malcode (WORM), Oct 2007.

PDF BIB Project
"Towards Automatic Discovery of Deviations in Binary Implementations with Applications to Error Detection and Fingerprint Generation."
David Brumley, Juan Caballero, Zhenkai Liang, James Newsome, and Dawn Song. In Proceedings of USENIX Security Symposium, Aug 2007.

PDF BIB Project
"Creating Vulnerability Signatures Using Weakest Pre-conditions."
David Brumley, Hao Wang, Somesh Jha, and Dawn Song. In Proceedings of Computer Security Foundations Symposium, Jul 2007.

PDF BIB Project
"Dynamic Spyware Analysis."
Manuel Egele, Christopher Kruegel, Engin Kirda, Heng Yin, and Dawn Song. In Proceedings of USENIX Annual Technical Conference, Jun 2007.

PDF BIB Project
"Sweeper: a Lightweight End-to-End System for Defending against Fast Worms."
Joseph Tucek, James Newsome, Shan Lu, Chengdu Huang, Spiros Xanthos, David Brumley, Yuanyuan Zhou, and Dawn Song. In Proceedings of European Conference on Computer Systems (EuroSys), Mar 2007.

PDF BIB Project
"Replayer: Automatic Protocol Replay by Binary Analysis."
James Newsome, David Brumley, Jason Franklin, and Dawn Song. In Proceedings of the 13th ACM Conference on Computer and Communications Security (CCS), October 2006.

PDF BIB Project
"Towards Automatic Generation of Vulnerability Signatures."
David Brumley, James Newsome, Dawn Song, Hao Wang, and Somesh Jha. In the Proceedings of the IEEE Symposium on Security and Privacy, May 2006.

PDF BIB Project
"Vulnerability-Specific Execution Filtering for Exploit Prevention on Commodity Software."
James Newsome, David Brumley, and Dawn Song. In the Proceedings of the 13th Annual Network and Distributed Systems Security Symposium (NDSS), 2006.

PDF BIB Project
"Dynamic Taint Analysis: Automatic Detection, Analysis, and Signature Generation of Exploit Attacks on Commodity Software"
James Newsome and Dawn Song. In the Proceedings of the Network and Distributed Systems Security Symposium, Feb 2005.

PDF BIB Project

Books and Book Chapters

"Automatically Identifying Trigger-based Behavior in Malware"
David Brumley, Cody Hartwig, Zhenkai Liang James Newsome, Pongsin Poosankam, Dawn Song, and Heng Yin. Book chapter in "Botnet Analysis and Defense", Editors Wenke Lee et. al., 2007.

PDF BIB Project
"Sting: an End-to-End Self-healing System for Defending against Internet Worms"
David Brumley, James Newsome, and Dawn Song. Book chapter in "Malware Detection and Defense", Editors Christodorescu, Jha, Maughn, Song, 2007.

PDF BIB Project

Technical Reports

"BitScope: Automatically Dissecting Malicious Binaries"
David Brumley, Cody Hartwig, Min Gyung Kang, Zhenkai Liang James Newsome, Pongsin Poosankam, Dawn Song, and Heng Yin. CS-07-133, School of Computer Science, Carnegie Mellon University, March 18, 2007.

PDF BIB Project
"Sting: and End-to-End Self-healing system for Defendinga against Zero-day Worm Attacks on Commodity Software."
James Newsome, David Brumley, and Dawn Song. Technical Report CMU-CS-05-191.

PDF BIB Project