Fetching the paper…
Reading the bibliography…
Similarity metrics, e.g., signatures as used by anti-virus products, are the dominant technique to detect if a given binary is malware.
Operating system protection through program evolution
1993
Earlier work this paper cites.
A taxonomy of obfuscating transformations
1997
Earlier work this paper cites.
Building diverse computer systems
1997
Earlier work this paper cites.
Hunting for metamorphic
2001
Earlier work this paper cites.
CyberInsecurity: The cost of monopoly – how the dominance of Microsoft’s products poses a risk to security
2003
Earlier work this paper cites.
Countering code-injection attacks with instruction-set randomization
2003
Earlier work this paper cites.
Hydan: Hiding information in program binaries
2004
Earlier work this paper cites.
Static disassembly of obfuscated binaries
2004
Earlier work this paper cites.
LLVM: A compilation framework for lifelong program analysis & transformation
2004
Earlier work this paper cites.
Red pill… or how to detect VMM using (almost) one CPU instruction
2004
Earlier work this paper cites.
Randomized instruction set emulation
2005
Earlier work this paper cites.
Malware normalization
2005
Earlier work this paper cites.
Where’s the FEEB? the effectiveness of instruction set randomization
2005
Earlier work this paper cites.
N-variant systems: a secretless framework for security through diversity
2006
Earlier work this paper cites.
Attacks on virtual machine emulators
2006
Earlier work this paper cites.
PolyUnpack: Automating the hidden-code extraction of unpack-executing malware
2006
Earlier work this paper cites.
Compatibility is not transparency: Vmm detection myths and realities
2007
Earlier work this paper cites.
Renovo: a hidden code extractor for packed executables
2007
Earlier work this paper cites.
Software security through targeted diversification
2007
Cited alongside, same era.
Omniunpack: Fast, generic, and safe unpacking of malware
2007
Cited alongside, same era.
Detecting system emulators
2007
Cited alongside, same era.
Packer (r)evolution, 2008
2008
Cited alongside, same era.
Towards an Understanding of Anti-Virtualization and Anti-Debugging Behavior in Modern Malware
2008
Cited alongside, same era.
Classification of packed executables for accurate computer virus detection
2008
Cited alongside, same era.
Instruction set limitation in support of software diversity
Detecting Environment-Sensitive Malware
2011
Later among the works it cites.
Obfuscation: The Hidden Malware
2011
Later among the works it cites.
Iama a malware coder and botnet operator, ama
2012
Later among the works it cites.
Distributed application tamper detection via continuous software updates
2012
Later among the works it cites.
Enhanced operating system security through efficient and fine-grained address space randomization
2012
Later among the works it cites.
Ilr: Where’d my gadgets go?
2012
Later among the works it cites.
Frankenstein: Stitching malware from benign binaries
2012
alphaXiv searches the wider corpus for related work and actual follow-ups.
alphaXiv is searching for related work…
2008
Cited alongside, same era.
Emulating emulation-resistant malware
2009
Cited alongside, same era.
Polymorphing software by randomizing data structure layout
2009
Cited alongside, same era.
PolyPack: an automated online packing service for optimal antivirus evasion
2009
Cited alongside, same era.
A fistful of red-pills: How to automatically generate procedures to detect CPU emulators
2009
Cited alongside, same era.
Security through diversity: Leveraging virtual machine technology
2009
Cited alongside, same era.
Later among the works it cites.
Smashing the gadgets: Hindering return-oriented programming using in-place code randomization
2012
Later among the works it cites.
Feedback-driven binary code diversification
2013
Later among the works it cites.
Profile-guided automated software diversity
2013
Later among the works it cites.
Themida advanced windows software protection system, 2013
2013
Later among the works it cites.
Covert computation: Hiding code in code for obfuscation purposes
2013
Later among the works it cites.
Aspack executable file compressor, 2013
2013
Later among the works it cites.
Symantec Develops New Attack on Cyberhacking
2014
Closest in time.
Sok: Automated software diversity
2014
Closest in time.
Embracing the New Threat: Towards Automatically Self-Diversifying Malware
2014
Closest in time.
Reverse engineering malware binary obfuscation and protection, 2014
2014
Closest in time.