 | 2012 |
| 28 |  | Theodoor Scholte,
Davide Balzarotti,
Engin Kirda:
Have things changed now? An empirical study on input validation vulnerabilities in web applications.
Computers & Security 31(3): 344-356 (2012) |
| 2011 |
| 27 |  | Robin Sommer,
Davide Balzarotti,
Gregor Maier:
Recent Advances in Intrusion Detection - 14th International Symposium, RAID 2011, Menlo Park, CA, USA, September 20-21, 2011. Proceedings
Springer 2011 |
| 26 |  | Abhinav Srivastava,
Andrea Lanzi,
Jonathon T. Giffin,
Davide Balzarotti:
Operating System Interface Obfuscation and the Revealing of Hidden Operations.
DIMVA 2011: 214-233 |
| 25 |  | Danesh Irani,
Marco Balduzzi,
Davide Balzarotti,
Engin Kirda,
Calton Pu:
Reverse Social Engineering Attacks in Online Social Networks.
DIMVA 2011: 55-74 |
| 24 |  | Theodoor Scholte,
Davide Balzarotti,
Engin Kirda:
Quo Vadis? A Study of the Evolution of Input Validation Vulnerabilities in Web Applications.
Financial Cryptography 2011: 284-298 |
| 23 |  | Marco Balduzzi,
Carmen Torrano Gimenez,
Davide Balzarotti,
Engin Kirda:
Automated Discovery of Parameter Pollution Vulnerabilities in Web Applications.
NDSS 2011 |
| 2010 |
| 22 |  | Andrea Lanzi,
Davide Balzarotti,
Christopher Kruegel,
Mihai Christodorescu,
Engin Kirda:
AccessMiner: using system-centric models for malware protection.
ACM Conference on Computer and Communications Security 2010: 399-412 |
| 21 |  | Kaan Onarlioglu,
Leyla Bilge,
Andrea Lanzi,
Davide Balzarotti,
Engin Kirda:
G-Free: defeating return-oriented programming through gadget-less binaries.
ACSAC 2010: 49-58 |
| 20 |  | Marco Balduzzi,
Manuel Egele,
Engin Kirda,
Davide Balzarotti,
Christopher Kruegel:
A solution for the automated detection of clickjacking attacks.
ASIACCS 2010: 135-144 |
| 19 |  | Davide Balzarotti,
Marco Cova,
Christoph Karlberger,
Engin Kirda,
Christopher Kruegel,
Giovanni Vigna:
Efficient Detection of Split Personalities in Malware.
NDSS 2010 |
| 18 |  | Marco Balduzzi,
Christian Platzer,
Thorsten Holz,
Engin Kirda,
Davide Balzarotti,
Christopher Kruegel:
Abusing Social Networks for Automated User Profiling.
RAID 2010: 422-441 |
| 17 |  | Davide Balzarotti,
Greg Banks,
Marco Cova,
Viktoria Felmetsger,
Richard A. Kemmerer,
William K. Robertson,
Fredrik Valeur,
Giovanni Vigna:
An Experience in Testing the Security of Real-World Electronic Voting Systems.
IEEE Trans. Software Eng. 36(4): 453-473 (2010) |
| 2009 |
| 16 |  | Engin Kirda,
Somesh Jha,
Davide Balzarotti:
Recent Advances in Intrusion Detection, 12th International Symposium, RAID 2009, Saint-Malo, France, September 23-25, 2009. Proceedings
Springer 2009 |
| 15 |  | Leyla Bilge,
Thorsten Strufe,
Davide Balzarotti,
Engin Kirda:
All your contacts are belong to us: automated identity theft attacks on social networks.
WWW 2009: 551-560 |
| 14 |  | Giovanni Vigna,
Fredrik Valeur,
Davide Balzarotti,
William K. Robertson,
Christopher Kruegel,
Engin Kirda:
Reducing errors in the anomaly-based detection of web-based attacks through the combined analysis of web requests and SQL queries.
Journal of Computer Security 17(3): 305-329 (2009) |
| 2008 |
| 13 |  | Davide Balzarotti,
Marco Cova,
Giovanni Vigna:
ClearShot: Eavesdropping on Keyboard Input from Video.
IEEE Symposium on Security and Privacy 2008: 170-183 |
| 12 |  | Davide Balzarotti,
Marco Cova,
Viktoria Felmetsger,
Nenad Jovanovic,
Engin Kirda,
Christopher Kruegel,
Giovanni Vigna:
Saner: Composing Static and Dynamic Analysis to Validate Sanitization in Web Applications.
IEEE Symposium on Security and Privacy 2008: 387-401 |
| 11 |  | Davide Balzarotti,
Greg Banks,
Marco Cova,
Viktoria Felmetsger,
Richard A. Kemmerer,
William K. Robertson,
Fredrik Valeur,
Giovanni Vigna:
Are your votes really counted?: testing the security of real-world electronic voting systems.
ISSTA 2008: 237-248 |
| 2007 |
| 10 |  | Davide Balzarotti,
Marco Cova,
Viktoria Felmetsger,
Giovanni Vigna:
Multi-module vulnerability analysis of web-based applications.
ACM Conference on Computer and Communications Security 2007: 25-35 |
| 9 |  | Christopher Kruegel,
Davide Balzarotti,
William K. Robertson,
Giovanni Vigna:
Improving Signature Testing through Dynamic Data Flow Analysis.
ACSAC 2007: 53-63 |
| 8 |  | Marco Cova,
Davide Balzarotti,
Viktoria Felmetsger,
Giovanni Vigna:
Swaddler: An Approach for the Anomaly-Based Detection of State Violations in Web Applications.
RAID 2007: 63-86 |
| 7 |  | Davide Balzarotti,
Paolo Costa,
Gian Pietro Picco:
The LighTS tuple space framework and its customization for context-aware applications.
Web Intelligence and Agent Systems 5(2): 215-231 (2007) |
| 2006 |
| 6 |  | Davide Balzarotti,
Mattia Monga,
Sabrina Sicari:
Assessing the risk of using vulnerable components.
Quality of Protection 2006: 65-77 |
| 5 |  | Davide Balzarotti,
Carlo Ghezzi,
Mattia Monga:
Supporting Cooperative Software Processes in a Decentralized and Nomadic World.
IEEE Transactions on Systems, Man, and Cybernetics, Part A 36(6): 1098-1109 (2006) |
| 2005 |
| 4 |  | Gian Pietro Picco,
Davide Balzarotti,
Paolo Costa:
LighTS: a lightweight, customizable tuple space supporting context-aware applications.
SAC 2005: 413-419 |
| 2004 |
| 3 |  | Giovanni Vigna,
William K. Robertson,
Davide Balzarotti:
Testing network-based intrusion detection signatures using mutant exploits.
ACM Conference on Computer and Communications Security 2004: 21-30 |
| 2002 |
| 2 |  | Davide Balzarotti,
Carlo Ghezzi,
Mattia Monga:
Freeing Cooperation from Servers Tyranny.
NETWORKING Workshops 2002: 235-246 |
| 1 |  | Davide Balzarotti,
Carlo Ghezzi,
Mattia Monga:
Supporting configuration management for virtual workgroups ini a peer-to-peer setting.
SEKE 2002: 507-511 |