LEADER 05717nam 22007215 450 001 9910874660003321 005 20240909115227.0 010 $a9783031641718$b(electronic bk.) 010 $z9783031641701 024 7 $a10.1007/978-3-031-64171-8 035 $a(MiAaPQ)EBC31524474 035 $a(Au-PeEL)EBL31524474 035 $a(CKB)32733272000041 035 $a(DE-He213)978-3-031-64171-8 035 $a(EXLCZ)9932733272000041 100 $a20240711d2024 u| 0 101 0 $aeng 135 $aurcnu|||||||| 181 $ctxt$2rdacontent 182 $cc$2rdamedia 183 $acr$2rdacarrier 200 10$aDetection of Intrusions and Malware, and Vulnerability Assessment $e21st International Conference, DIMVA 2024, Lausanne, Switzerland, July 17?19, 2024, Proceedings /$fedited by Federico Maggi, Manuel Egele, Mathias Payer, Michele Carminati 205 $a1st ed. 2024. 210 1$aCham :$cSpringer Nature Switzerland :$cImprint: Springer,$d2024. 215 $a1 online resource (563 pages) 225 1 $aLecture Notes in Computer Science,$x1611-3349 ;$v14828 311 08$aPrint version: Maggi, Federico Detection of Intrusions and Malware, and Vulnerability Assessment Cham : Springer International Publishing AG,c2024 9783031641701 327 $a -- Vulnerability Detection and Defense. -- Exceptional Interprocedural Control Flow Graphs for x86-64 Binaries. -- S2malloc: Statistically Secure Allocator for Use-After-Free Protection And More. -- Acoustic Side-Channel Attacks on a Computer Mouse. -- Using Semgrep OSS to Find OWASP Top 10 Weaknesses in PHP Applications: A Case Study. -- Modularized Directed Greybox Fuzzing for Binaries over Multiple CPU Architectures. -- Malware and Threats. -- Constructs of Deceit: Exploring Nuances in Modern Social Engineering Attacks. -- Tarallo: Evading Behavioral Malware Detectors in the Problem Space. -- Evading Userland API Hooking, Again: Novel Attacks and a Principled Defense Method. -- Extended Abstract: Evading Packing Detection: Breaking Heuristic-Based Static Detectors. -- Listening between the Bits: Privacy Leaks in Audio Fingerprints. -- Mobile and Web Application Security. -- Bringing UFUs Back into the Air With FUEL: A Framework for Evaluating the Effectiveness of Unrestricted File Upload Vulnerability Scanners. -- SandPuppy: Deep-state fuzzing guided by automatic detection of state-representative variables. -- Extended Abstract - Tracking Manifests - Persistent Identifiers in Progressive Web Apps. -- PayRide: Secure Transport e-Ticketing with Untrusted Smartphone Location. -- Knocking on Admin?s Door: Protecting Critical Web Applications with Deception. -- AI for Security. -- Approach for the Optimization of Machine Learning Models for Calculating Binary Function Similarity. -- Inferring Recovery Steps from Cyber Threat Intelligence Reports. -- Pairing Security Advisories with Vulnerable Functions Using Open-Source LLMs. -- Extended Abstract: Assessing Language Models for Semantic Textual Similarity in Cybersecurity. -- Extended Abstract: A Transfer Learning-based Training Approach for DGA Classification. -- Hardware and Firmware Security. -- Seum Spread: Discerning Security Flaws in IoT Firmware Via Call Sequence Semantics. -- Gluezilla: Efficient and Scalable Software to Hardware Binding using Rowhammer. -- SmmPack: Obfuscation for SMM Modules. -- Presshammer: Rowhammer and Rowpress without Physical Address Information. -- Cyber Physical Systems and IoT. -- SecMonS: A Security Monitoring Framework for IEC 61850 Substations Based on Configuration Files and Logs. -- FaultGuard: A Generative Approach to Resilient Fault Prediction in Smart Electrical Grids. -- Wireless Modulation Identification: filling the gap in IoT networks security audit. -- Extended Abstract: Assessing GNSS Vulnerabilities in Smart Grids. 330 $aThis book constitutes the proceedings of the 21st International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment, DIMVA 2024, held in Lausanne, Switzerland, during July 17?19, 2024. The 22 full papers and 6 short paper presented in this volume were carefully reviewed and selected from 110 submissions. The papers are organized in thematical sections named: vulnerability detection and defense; malware and threats; mobile and web application security; AI for security; hardware and firmware security; cyber physical systems and IoT. 410 0$aLecture Notes in Computer Science,$x1611-3349 ;$v14828 606 $aData protection 606 $aComputer engineering 606 $aComputer networks 606 $aComputers 606 $aCriminology 606 $aQuantum physics 606 $aData and Information Security 606 $aComputer Engineering and Networks 606 $aComputing Milieux 606 $aCrime Control and Security 606 $aQuantum Physics 615 0$aData protection. 615 0$aComputer engineering. 615 0$aComputer networks. 615 0$aComputers. 615 0$aCriminology. 615 0$aQuantum physics. 615 14$aData and Information Security. 615 24$aComputer Engineering and Networks. 615 24$aComputing Milieux. 615 24$aCrime Control and Security. 615 24$aQuantum Physics. 676 $a005.8 700 $aMaggi$b Federico$01749710 701 $aEgele$b Manuel$01749711 701 $aPayer$b Mathias$01749712 701 $aCarminati$b Michele$01749713 801 0$bMiAaPQ 801 1$bMiAaPQ 801 2$bMiAaPQ 912 $a9910874660003321 996 $aDetection of Intrusions and Malware, and Vulnerability Assessment$94183981 997 $aUNINA