Publications
Year: 2008
M. S. Lam, M. Martin, B. Livshits and J. Whaley. "Securing web applications with static and dynamic information flow tracking". In ACM Symposium on Partial Evaluation and Semantics-based Program Manipulation. . . JRESEARCH_APA_ED_LOWER. 2008. pp. 3-12. [More]
B. Duan, Y. Zhang and D. Gu. "An Easy-to-Deploy Penetration Testing Platform". ICYCS '08: Proceedings of the 2008 The 9th International Conference for Young Computer Scientists. . . JRESEARCH_APA_ED_LOWER. 2008. pp. 2314-2318. [More]
H. Liu and Z. Li. "Methodology of Network Intrusion Detection System Penetration Testing". WAIM '08: Proceedings of the 2008 The Ninth International Conference on Web-Age Information Management. . . JRESEARCH_APA_ED_LOWER. 2008. pp. 546-551. [More]
V. Darmaillacq. "Security policy testing using vulnerability exploit chaining". ICSTW '08: Proceedings of the 2008 IEEE International Conference on Software Testing Verification and Validation Workshop. . . JRESEARCH_APA_ED_LOWER. 2008. pp. 260-261. [More]
Year: 2007
G. Dallons, P. Massonet, J. F. Molderez, C. Ponsard and A. E. Arenas. "An Analysis of the Chinese Wall Pattern for Guaranteeing Confidentiality in Grid-Based Virtual Organisations". In International Workshop on Security, Trust and Privacy in Grid Systems, Grid-STP 2007. IEEE. . . JRESEARCH_APA_ED_LOWER. 2007. [More]
L. Pérez-Freire and Pérez-González. "F.: Exploiting security holes in lattice data hiding". In: 9th Information Hiding Workshop, IH07. Lecture Notes in Computer Science, Saint. . . JRESEARCH_APA_ED_LOWER. 2007. [More]
M. E. LOCASTO, G. F. CRETU, A. STAVROU and A. D. KEROMYTIS. "A Model for Automatically Repairing Execution Integrity". 2007. [More]
Y. Chen, B. Boehm and L. Sheppard. "Value Driven Security Threat Modeling Based on Attack". Path Analysis”, 40 th Hawaii International Conference on System Sciences, Big Island. . . JRESEARCH_APA_ED_LOWER. 2007. [More]
P. Vogt, F. Nentwich, N. Jovanovic, E. Kirda, C. Kruegel and G. Vigna. "Cross-Site Scripting Prevention with Dynamic Data Tainting and Static Analysis". In Proceeding of NDSS. . . JRESEARCH_APA_ED_LOWER. 2007. [More]
Yamamoto and K. Aoki. "Practical Password Recovery on an MD5 Challenge and Response, Cryptology ePrint Archive, Report 2007/101". 2007. [More]
A. Mahimkar, J. Dange, V. Shmatikov, H. Vin and Y. Zhang. "dFence: Transparent Network-based Denial of Service Mitigation". In NSDI ’07. . . JRESEARCH_APA_ED_LOWER. 2007. [More]
. Erlingsson, B. Livshits and Y. Xie. "End-to-end Web application security". In Proceedings of the Workshop on Hot Topics in Operating Systems. . . JRESEARCH_APA_ED_LOWER. 2007. [More]
L. Singaravelu, J. Wei and C. Pu. "A Secure Middleware Architecture for Web Service Platforms". 2007. [More]
Y. Yoshihama et al.. "Security Model for the Client-Side Web Application Environments. IBM Tokyo Research Laboratory presentation". 2007. [More]
M. Bishop. "About Penetration Testing", IEEE Security and Privacy, JRESEARCH_VOL. 5. 2007, pp. 84-87. [More]
R. W. Ritchey. "Efficient network attack graph generation". Fairfax, VA, USA. 2007. [More]
D. A. Zovi. "An encrypted payload protocol and target-side scripting engine". WOOT '07: Proceedings of the first USENIX workshop on Offensive Technologies. . . JRESEARCH_APA_ED_LOWER. 2007. pp. 1-8. [More]
C. McNab. Network security assessment, 2nd edition, O'Reilly, 2007. [More]
Year: 2006
A. Kapadia, P. Naldurg and R. H. Campbell. "Distributed Enforcement of Unlinkability Policies: Looking Beyond the Chinese Wall". In Proceedings of the Eighth IEEE Workshop on Policies for Distributed Systems and Networks (POLICY. 2006. [More]
O. Regev. "Lattice-based cryptography". In Proc. of the 26th Annual International Cryptology Conference (CRYPTO. . . JRESEARCH_APA_ED_LOWER. 2006. pp. 131-141. [More]
Y. Chen and W. W. Chu. "Database Security Protection via Inference Detection". IEEE International Conference on Intelligence and Security Informatics. . . JRESEARCH_APA_ED_LOWER. 2006. [More]
. Tanenbaum. "Your Cat Infected with a Computer Virus". Proc. 4th Ann. IEEE Int’l Conf. Pervasive Computing and Comm., IEEE CS. . . JRESEARCH_APA_ED_LOWER. 2006. pp. 169-179. [More]
M. Srivatsa, A. Iyengar, J. Yin and L. Liu. "A middleware system for protecting against application level denial of service attacks". In Middleware. . . JRESEARCH_APA_ED_LOWER. 2006. pp. 260-280. [More]
N. Jovanovic, E. Kirda and C. Kruegel. "Preventing Cross Site Request Forgery Attacks". In Proceedings of the Second IEEE Conference on Security and Privacy in Communications Networks (SecureComm. . . JRESEARCH_APA_ED_LOWER. 2006. pp. 1-10. [More]
P. T. Leeson and Coyne. "The Economics of Computer Hacking", Journal of Law, Economics and Policy. 2006. [More]
B. Baker, F. Thornton, R. Rogers, C. Hurley and D. Connelly. Wardriving and wireless penetration testing, Syngress Publishing, 2006. [More]
M. Mink and F. C. Freiling. "Is attack better than defense?: teaching information security the right way". InfoSecCD '06: Proceedings of the 3rd annual conference on Information security curriculum development. . . JRESEARCH_APA_ED_LOWER. 2006. pp. 44-48. [More]
Year: 2005
S. Roy, V. G. Addada, S. Setia and S. Jajodia. "Securing MAODV: Attacks and countermeasures". in Proc. 2nd IEEE Int’l. Conf. SECON. IEEE. . . JRESEARCH_APA_ED_LOWER. 2005. [More]
T. G. Malkin, F.-X. Standaert and M. Yung. "A comparative cost/security analysis of fault attack countermeasures". In Second Workshop on Fault Detection and Tolerance in Cryptography (FDTC 2005. . . JRESEARCH_APA_ED_LOWER. 2005. pp. 109-123. [More]
K. Ingols et al.. "Evaluating and Strengthening Enterprise Network Security Using Attack Graphs". 2005. [More]
W. Sonnenreich, J. Albanese and B. Stout. "Return On Security Investment (ROSI): A practical quantitative model". Journal of Research and Practice in Information Technology. . . JRESEARCH_APA_ED_LOWER. 2005. pp. 239-252. [More]
R. Burke, B. Mobasher, R. Zabicki and R. Bhaumik. "Identifying attack models for secure recommendation". In Beyond Personalization: A Workshop on the Next Generation of Recommender Systems. . . JRESEARCH_APA_ED_LOWER. 2005. [More]
R. S. Ertaul. "Security Planning Using Zachman Framework for Enterprises". In Proceedings of EURO mGOV 2005. . . JRESEARCH_APA_ED_LOWER. 2005. [More]
H. Lipmaa, G. Wang and F. Bao. "Designated Verifier Signature Schemes: Attacks, New Security Notions and A New Construction". In: Proc. of the 32nd International Colloquium on Automata, Languages and Programming (ICALP’05), LNCS 3580. . . JRESEARCH_APA_ED_LOWER. 2005. pp. 459-471. [More]
M. O. Schneider. "Calmet J.: Denial of Service Prevention through Logical Fibering". In: Proceedings of the IIAS 05, Baden Baden/Germany. . . JRESEARCH_APA_ED_LOWER. 2005. [More]
T. Pietraszek and C. V. Berghe. "Defending against injection attacks through context-sensitive string evaluation". In Recent Advances in Intrusion Detection (RAID. . . JRESEARCH_APA_ED_LOWER. 2005. [More]
M. Baudet. "Deciding security of protocols against off-line guessing attacks". In Proc. 12th ACM Conference on Computer and Communications Security (CCS’05. . . JRESEARCH_APA_ED_LOWER. 2005. pp. 16-25. [More]
L. Wang and L. Lee. "UML-based Modeling of Web Services Security". IEEE European Conference on Web Services Poster session. . . JRESEARCH_APA_ED_LOWER. 2005. [More]
E. Kleiner and A. W. Roscoe. "On the relationship between web services security and traditional protocols". In Mathematical Foundations of Programming Semantics (MFPS XXI. . . JRESEARCH_APA_ED_LOWER. 2005. [More]
L. Ding, P. Kolari, T. Finin, A. Joshi, Y. Peng and Y. Yesha. "On homeland security and the semantic web: A provenance and trust aware inference framework". In AAAI Spring Symposium on AI Technologies for Homeland Security. . . JRESEARCH_APA_ED_LOWER. 2005. pp. 21-23. [More]
B. C. Popescu, J. Sacha, M. van Steen, B. Crispo, A. S. Tanenbaum and I. Kuz. "Securely replicated web documents". In Proc. 19th Intl. Parallel and Distributed Processing Symposium. . . JRESEARCH_APA_ED_LOWER. 2005. [More]
H. H. Thompson. "Application Penetration Testing", IEEE Security and Privacy, JRESEARCH_VOL. 3. 2005, pp. 66-69. [More]
B. Arkin, S. Stender and G. McGraw. "Software Penetration Testing", IEEE Security and Privacy, JRESEARCH_VOL. 3. 2005, pp. 84-87. [More]
A. Whitaker and D. Newman. Penetration Testing and Cisco Network Defense, Cisco Press, 2005. [More]
Year: 2004
L. Ding, P. Kolari, S. Ganjugunte, T. Finin and A. Joshi. "Modeling and evaluating trust network inference". In: Proceedings of The Workshop on Deception, Fraud and Trust in Agent Societies at The Third International Joint Conference on Autonomous Agents and Multi-Agent Systems (AAMAS-2004. . . JRESEARCH_APA_ED_LOWER. 2004. pp. 21-32. [More]
U. Meyer and S. Wetzel. "On the impact of GSM Encryption and Man-in-the-Middle Attacks on the Security of Interoperating GSM/UMTS Networks". Proceedings of IEEE International Symposium on Personal, Indoor and Mobile Radio Communications (PIMRC2004), September 2004, IEEE, 2004. http://www.cdc.informatik.tu-darmstadt.de/ ~umeyer/UliPIMRC04.pdf. . . JRESEARCH_APA_ED_LOWER. 2004. [More]
A. Simmonds, P. Sandilands and L. Van. "Ekert. An ontology for network security attacks". In Proceedings of the 2nd Asian Applied Computing Conference (AACC’04), LNCS 3285. . . JRESEARCH_APA_ED_LOWER. 2004. pp. 317-323. [More]
J. A. Clark, S. Stepney and H. Chivers. "Breaking the Model: finalisation and a taxonomy of security attacks". REFINE 2005 workshop. Electronic. 2004. [More]
S. M. Specht and R. B. Lee. "Distributed denial of service: taxonomies of attacks, tools and countermeasures". Proceedings of the International Workshop on Security in Parallel and Distributed Systems, 2004. . . JRESEARCH_APA_ED_LOWER. 2004. pp. 543-550. [More]
G. Badishi, I. Keidar and A. Sasson. "Exposing and eliminating vulnerabilities to denial of service attacks in secure gossip-based multicast". In The International Conference on Dependable Systems and Networks (DSN. . . JRESEARCH_APA_ED_LOWER. 2004. pp. 223-232. [More]
U. Meyer and S. Wetzel. "A Man-in-the-Middle Attack on UMTS". in Proceedings of the 2004 ACM Workshop on Wireless Security. . . JRESEARCH_APA_ED_LOWER. 2004. pp. 90-97. [More]
I. Aad, J. Hubaux and E. Knightly. "Denial of Service Resilience in Ad Hoc Networks". In Proc. of ACM Mobicom. . . JRESEARCH_APA_ED_LOWER. 2004. [More]
F. Cayre, C. Fontaine and T. Furon. "Watermarking attack: Security of wss techniques". in Proc. of Int. Workshop on Digital Watermarking, (Seoul, Corea), IWDW’04. . . JRESEARCH_APA_ED_LOWER. 2004. pp. 171-183. [More]
E. B. Fernandez. "Two patterns for web services security". Proceedings of the International Symposium on Web Services and Applications, Las Vegas. . . JRESEARCH_APA_ED_LOWER. 2004. [More]
M. Wu, S. Garfinkel and R. Miller. "Secure Web Authentication with Mobile Phones". DIMACS Workshop on Usable Privacy and Security Software. . . JRESEARCH_APA_ED_LOWER. 2004. [More]
L. ALCHAAL, V. ROCA and M. HABERT. "Managing and Securing Web Services with VPNs". in "2nd IEEE International Conference on Web Services (ICWS. . . JRESEARCH_APA_ED_LOWER. 2004. [More]
V. Gupta, D. Stebila and S. Chang-Shantz. "Integrating Elliptic Curve Cryptography into the Web’s Security Infrastructure". 13th World Wide Web Conference – Alternate Track Papers and Posters, May 17-22, 2004. . . JRESEARCH_APA_ED_LOWER. 2004. pp. 402-403. [More]
K. Bhargavan, R. Corin, C. Fournet and A. D. Gordon. "Secure sessions for web services". In Proc. ACM Workshop on Secure Web Services. . . JRESEARCH_APA_ED_LOWER. 2004. [More]
Y.-W. Huang, F. Yu, C. Hang, C.-H. Tsai, D.-T. Lee and S.-Y. Kuo. "Securing web application code by static analysis and runtime protection". In Proc. 13th International World Wide Web Conference (WWW’04. . . JRESEARCH_APA_ED_LOWER. 2004. pp. 40-52. [More]
S. Singh, J. Lyons and D. M. Nicol. "Fast model-based penetration testing". WSC '04: Proceedings of the 36th conference on Winter simulation. . . JRESEARCH_APA_ED_LOWER. 2004. pp. 309-317. [More]
Year: 2003
C. Farkas and A. Stoica. "Correlated Data Inference in Ontology Guided XML Security Engine". In Proc. of IFIP WG 11.3 Working Group Conference on Data and Application Security. . . JRESEARCH_APA_ED_LOWER. 2003. [More]
T. Anderson, T. Roscoe and D. Wetherall. "Preventing Internet denial-of-service with capabilities". In Proc. of Hotnets-II. . . JRESEARCH_APA_ED_LOWER. 2003. [More]
A. Rae and L. Wildman. "A Taxonomy of Attacks on Secure Devices". Proceedings of the Australia Information Warfare and Security Conference 2003. 20-21 November 2003. . . JRESEARCH_APA_ED_LOWER. 2003. [More]
Blind. "SQL Injection". http://www.packetstormsecurity.org/papers/bypass/ Blind_XPath_Injection_20040518.pdf. 2003. [More]
J. Xu and W. Lee. "Sustaining availability of web services under distributed denial of service attacks", IEEE Trans. Comput. 2003. [More]
N. Asokan, V. Niemi and K. Nyberg. "Man-in-the-Middle in Tunneled Authentication". In the Proceedings of the 11th International Workshop on Security Protocols. . . JRESEARCH_APA_ED_LOWER. 2003. pp. 15-24. [More]
H. Koshutanski and F. Massacci. "A logical model for security of Web services". First International Workshop on Formal Aspects of Security and Trust (FAST), Istituto di Informatica e Telematica. 2003. [More]
I. Melzer and M. Jeckle. "A Signing Proxy for Web Services Security". Berliner XML Tage 2003. . . JRESEARCH_APA_ED_LOWER. 2003. pp. 292-304. [More]
C. Youn, M. Pierce and G. Fox. "Developing Secure Web Services for Computational Portals”. Under review". Paper presented at the International Conference on Security and Management, Las Vegas, NV. . . JRESEARCH_APA_ED_LOWER. 2003. [More]
G. Bella, S. Bistarelli and F. Massacci. "A protocol’s life after attacks". in Proc. 11th International Workshop on Security Protocols. . . JRESEARCH_APA_ED_LOWER. 2003. pp. 3-18. [More]
Year: 2002
N. Weiler. "Honeypots for distributed denial of service attacks". Network Ingress Filtering: Defeating Denial of Service Attacks which employ IP Source Address Spoofing,” RFC 2267. . . JRESEARCH_APA_ED_LOWER. 2002. [More]
A. Garg and A. L. Reddy. "Mitigating denial of service attacks using qos regulation". In Proceedings of International Workshop on Quality of Service (IWQoS. . . JRESEARCH_APA_ED_LOWER. 2002. pp. 45-53. [More]
T. Peng, C. Leckie and K. Ramamohanarao. "Defending against distributed denial of service attack using selective pushback". In Proceedings of the Ninth IEEE International Conference on Telecommunications (ICT. . . JRESEARCH_APA_ED_LOWER. 2002. pp. 411-429. [More]
P. Michiardi and R. Molva. "Prevention of Denial of Service Attacks and selfishness". in Mobile Ad Hoc Networks, Institut Eurecom Research Report RR-02-063. . . JRESEARCH_APA_ED_LOWER. 2002. [More]
C. Shields. "What do we mean by Network Denial of Service". In Proceedings of the 2002 IEEE Workshop on Information Assurance and Security, pages 17–19, United States Military Academy. . . JRESEARCH_APA_ED_LOWER. 2002. pp. 17-19. [More]
C. Mitchell. "On the security". of XCBC, TMAC and OMAC” http://csrc.nist.gov/CryptoToolkit/modes/comments/Mitchell.pdf. . . JRESEARCH_APA_ED_LOWER. 2002. pp. 132-145. [More]
L. Auronen. "Tool-Based Approach to Assessing Web Application Security". Security”, Seminar on Network Security. . . JRESEARCH_APA_ED_LOWER. 2002. [More]
D. Scott and R. Sharp. "Developing secure web applications", IEEE Internet Computing. 2002, pp. 38-45. [More]
L. Jacob, K. Srijith, H. Duo and A. Ananda. "Effectiveness of TCP SACK, TCP HACK and TCP trunk over satellite links". in Proceedings of IEEE International Conference on Communications. . . JRESEARCH_APA_ED_LOWER. 2002. pp. 3038-3043. [More]
J. Douceur. "The Sybil Attack". Proceedings of the 1st International Peer To Peer Systems Workshop (IPTPS 2002). . . JRESEARCH_APA_ED_LOWER. 2002. [More]
M. Backes, C. Jacobi and B. Pfitzmann. "Deriving Cryptographically Sound Implementations Using Composition and Formally Verified Bisimulation". Formal Methods Europe '02 (FME). . . JRESEARCH_APA_ED_LOWER. 2002. pp. 310-329. [More]
S. Marcel and S. Bengio. "Improving Face Verification using Skin Color Information". 2002. [More]
Year: 2001
R. F. Werner and M. M. Wolf. "Bell inequalities and entanglement", Quantum Information and Computation. 2001, pp. 1-25. [More]
V. Atluri, A. Chun and P. Mazzoleni. "A Chinese Wall security model for decentralized workflow systms". In Proceedings of the 8th Conference on Computer and Communications Security. . . JRESEARCH_APA_ED_LOWER. 2001. pp. 48-57. [More]
N. Courtois. "Generic Attacks and the Security of Quartz". PKC 2003, LNCS V. 2567. . . JRESEARCH_APA_ED_LOWER. 2001. pp. 351-364. [More]
C. A. Meadows. "A cost-based framework for analysis of denial of service in networks", J. Comp. Security. 2001, pp. 143-164. [More]
E. Fulp, Z. Fu, D. S. Reeves, S. F. Wu and X. Zhang. "Preventing denial of service attacks on quality of service". in DISCEX ’01: Proceedings of the DARPA Information Survivability Conference and Exposition II. . . JRESEARCH_APA_ED_LOWER. 2001. pp. 159-172. [More]
D. Karig and R. Lee. "Remote Denial of Service Attacks and Countermeasures". 2001. [More]
S. Ioannidis and S. M. Bellovin. "Building a Secure Web Browser". USENIX Annual Technical Conference, FREENIX Track. . . JRESEARCH_APA_ED_LOWER. 2001. pp. 127-134. [More]
A. Jsang, P. M. Mllerud and E. Cheung. "Web Security: The Emperors New Armour". In Proceedings of the European Conference on Information Systems (ECIS2001. . . JRESEARCH_APA_ED_LOWER. 2001. [More]
M. J. Gosselin and J. Schommer. "Confining the apache web server with security-enhanced linux". 2001. [More]
S. Jiang, S. Smith and K. Minami. "Securing web servers against insider attack". ACSA/ACM Annual Computer Security Applications Conference. . . JRESEARCH_APA_ED_LOWER. 2001. pp. 265-276. [More]
J. Claessens, B. Preneel and J. Vandewalle. "Combining World Wide Web and wireless security". Advances in Network and Distributed Systems Security, Proceedings of IFIP TC11 WG11.4 First Annual Working Conference on Network Security. . . JRESEARCH_APA_ED_LOWER. 2001. pp. 153-171. [More]
S. Herrmann and M. Mezini. "Connectors for bridging mismatches between the components of a software engineering environment". IEE Proceedings -- Software. . . JRESEARCH_APA_ED_LOWER. 2001. [More]
E. D. Samarati. "On the Secure Interoperability of E-Business Services", Business Briefing, Global InfoSecurity. 2001. [More]
D. Gritzalis, K. Moulinos, J. Iliadis, C. Lambrinoudakis and S. Xarhoulakos. "PyTHIA: Towards Anonymity in Authentication". Proceedings of the IFIP 16th International Conference on Information Security, Paris-France. . . JRESEARCH_APA_ED_LOWER. 2001. pp. 1-17. [More]
D. C. Parkes and L. H. Ungar. "An Auction-Based Method for Decentralized Train Scheduling". Proc. 5th International Conference on Autonomous Agents ({AGENTS}-01). . . JRESEARCH_APA_ED_LOWER. 2001. pp. 43-50. [More]
P. Bonatti, E. Damiani, S. D. di Vimercati and P. Samarati. "An Access Control System for Data Archives". Proc. of the 16th International Conference on Information Security. . . JRESEARCH_APA_ED_LOWER. 2001. [More]
. S. De Capitani di Vimercati P. Samarati and S. Jajodia. "Database Security". J. Marciniak JRESEARCH_APA_ED_LOWER. John Wiley & Sons. 2001. [More]
. S. De Capitani di Vimercati P. Samarati and S. Jajodia. "Hardware and Software Data Security". D. Kaeli and Z. Navabi JRESEARCH_APA_EDS_LOWER. EOLSS Publishers. 2001. [More]
Results 1 - 100 of 391
<< Start < Prev 1 2 3 4 Next > End >>
RocketTheme Joomla Templates