1. ESSoS 2009: Leuven, Belgium
Fabio Massacci, Samuel T. Redwine Jr., Nicola Zannone (Eds.): Engineering Secure Software and Systems, First International Symposium ESSoS 2009, Leuven, Belgium, February 4-6, 2009. Proceedings. Springer 2009 Lecture Notes in Computer Science ISBN 978-3-642-00198-7
Policy Verification and Enforcement
Christian Wolter, Philip Miseldine, Christoph Meinel: Verification of Business Process Entailment Constraints Using SPIN. 1-15
Slim Kallel, Anis Charfi, Mira Mezini, Mohamed Jmaiel, Karl Klose: From Formal Access Control Policies to Runtime Enforcement Aspects. 16-31
Timothy E. Levin, Cynthia E. Irvine, Terry Benzel, Thuy D. Nguyen, Paul C. Clark, Ganesha Bhaskara: Idea: Trusted Emergency Management. 32-36
Model Refinement and Program Transformation
Fabio Martinelli, Ilaria Matteucci: Idea: Action Refinement for Security Properties Enforcement. 37-42
Holger Schmidt: Pattern-Based Confidentiality-Preserving Refinement. 43-59
Ron van der Meyden: Architectural Refinement and Notions of Intransitive Noninterference. 60-74
Munawar Hafiz, Paul Adamczyk, Ralph E. Johnson: Systematically Eradicating Data Injection Attacks Using Security-Oriented Program Transformations. 75-90
Secure System Development
Pratyusa K. Manadhata, Yücel Karabulut, Jeannette M. Wing: Report: Measuring the Attack Surfaces of Enterprise Software. 91-100
Pieter Philippaerts, Cédric Boon, Frank Piessens: Report: Extensibility and Implementation Independence of the .NET Cryptographic API. 101-110
Robin Sharp: Report: CC-Based Design of Secure Application Systems. 111-121
Laurie Williams, Michael Gegick, Andrew Meneely: Protection Poker: Structuring Software Security Risk Assessment and Knowledge Transfer. 122-134
Attack Analysis and Prevention
Michael Gegick, Pete Rotella, Laurie Williams: Toward Non-security Failures as a Predictor of Security Faults and Failures. 135-149
Jason Hiser, Clark L. Coleman, Michele Co, Jack W. Davidson: MEDS: The Memory Error Detection System. 164-179
Testing and Assurance

Albin Zuccato, Clemens Kögler: Report: Functional Security Testing Closing the Software - Security Testing Gap: A Case from a Telecom Provider. 185-194
James Walden, Adam Messer, Alex Kuhl: Idea: Measuring the Effect of Code Complexity on Static Analysis Results. 195-199



