| 2025 | DBSEC | Hallucination Detection in Large Language Models Using Diversion Decoding. | Basel Abdeen, S. M. Tahmid Siddiqui, Meah Tahmeed Ahmed, Anoop Singhal, Latifur Khan, Punya Parag Modi, Ehab Al-Shaer |
| 2025 | PIMRC | Dynamic Real-time Learning of Electromagnetic Interference Parameters for Drone Crashing Attack. | Yasser El-Alfy, Ehab Al-Shaer, Uthman Baroudi, Umar Johar |
| 2025 | SEAMS | Self-Adaptive Dual-Layer DDoS Mitigation using Autoencoder and Reinforcement Learning. | Qi Duan, Ehab Al-Shaer, David Garlan |
| 2024 | SACMAT | Prompting LLM to Enforce and Validate CIS Critical Security Control. | Mohiuddin Ahmed, Jinpeng Wei, Ehab Al-Shaer |
| 2023 | DBSEC | SMET: Semantic Mapping of CVE to ATT&CK and Its Application to Cybersecurity. | Basel Abdeen, Ehab Al-Shaer, Anoop Singhal, Latifur Khan, Kevin W. Hamlen |
| 2022 | SecureComm | SecureBERT: A Domain-Specific Language Model for Cybersecurity. | Ehsan Aghaei, Xi Niu, Waseem G. Shadid, Ehab Al-Shaer |
| 2021 | ACSAC | SODA: A System for Cyber Deception Orchestration and Automation. | Md Sajidul Islam Sajid, Jinpeng Wei, Basel Abdeen, Ehab Al-Shaer, Md. Mazharul Islam, Walter Diong, Latifur Khan |
| 2021 | DSAA | V2W-BERT: A Framework for Effective Hierarchical Multiclass Classification of Software Vulnerabilities. | Siddhartha Shankar Das, Edoardo Serra, Mahantesh Halappanavar, Alex Pothen, Ehab Al-Shaer |
| 2020 | CCS | Range and Topology Mutation Based Wireless Agility. | Qi Duan, Ehab Al-Shaer, Jiang Xie |
| 2020 | COMPSAC | A Formal Analysis of Moving Target Defense. | Muhammad Abdul Basit Ur Rahim, Qi Duan, Ehab Al-Shaer |
| 2020 | ISI | From Word Embedding to Cyber-Phrase Embedding: Comparison of Processing Cybersecurity Texts. | Moumita Das Purba, Bill Chu, Ehab Al-Shaer |
| 2020 | LREC | Active Defense Against Social Engineering: The Case for Human Language Technology. | Adam Dalton, Ehsan Aghaei, Ehab Al-Shaer, Archna Bhatia, Esteban Castillo, Zhuo Cheng, Sreekar Dhaduvai, Qi Duan, Bryanna Hebenstreit, Md. Mazharul Islam, Younes Karimi, Amir Masoumzadeh, Brodie Mather, Sashank Santhanam, Samira Shaikh, Alan Zemel, Tomek Strzalkowski, Bonnie J. Dorr |
| 2020 | SecureComm | ThreatZoom: Hierarchical Neural Network for CVEs to CWEs Classification. | Ehsan Aghaei, Waseem G. Shadid, Ehab Al-Shaer |
| 2020 | SecureComm | Email Address Mutation for Proactive Deterrence Against Lateral Spear-Phishing Attacks. | Md. Mazharul Islam, Ehab Al-Shaer, Muhammad Abdul Basit Ur Rahim |
| 2020 | SecureComm | A Formal Verification of Configuration-Based Mutation Techniques for Moving Target Defense. | Muhammad Abdul Basit Ur Rahim, Ehab Al-Shaer, Qi Duan |
| 2019 | CCS | Specification-driven Moving Target Defense Synthesis. | Md. Mazharul Islam, Qi Duan, Ehab Al-Shaer |
| 2019 | IM | IoTC | Abdullah Al Farooq, Ehab Al-Shaer, Thomas Moyer, Krishna Kant |
| 2018 | ACSAC | gExtractor: Towards Automated Extraction of Malware Deception Parameters. | Mohammed Noraden Alsaleh, Jinpeng Wei, Ehab Al-Shaer, Mohiuddin Ahmed |
| 2018 | CCS | In-design Resilient SDN Control Plane and Elastic Forwarding Against Aggressive DDoS Attacks. | Fida Gillani, Ehab Al-Shaer, Qi Duan |
| 2018 | ESORICS | A Poisoning Attack Against Cryptocurrency Mining Pools. | Mohiuddin Ahmed, Jinpeng Wei, Yongge Wang, Ehab Al-Shaer |
| 2018 | ISI | Using Entropy and Mutual Information to Extract Threat Actions from Cyber Threat Intelligence. | Ghaith Husari, Xi Niu, Bill Chu, Ehab Al-Shaer |
| 2018 | ISI | PhishMon: A Machine Learning Framework for Detecting Phishing Webpages. | Amirreza Niakanlahiji, Bei-Tseng Chu, Ehab Al-Shaer |
| 2017 | ACSAC | TTPDrill: Automatic and Accurate Extraction of Threat Actions from Unstructured Text of CTI Sources. | Ghaith Husari, Ehab Al-Shaer, Mohiuddin Ahmed, Bill Chu, Xi Niu |
| 2017 | ISI | Prioritized active learning for malicious URL detection using weighted text-based features. | Sreyasee Das Bhattacharjee, Ashit Talukder, Ehab Al-Shaer, Pratik Doshi |
| 2016 | CCS | A Cyber Mutation: Metrics, Techniques and Future Directions. | Ehab Al-Shaer |
| 2016 | CCS | Multi-dimensional Host Identity Anonymization for Defeating Skilled Attackers. | Jafar Haadi Jafarian, Amirreza Niakanlahiji, Ehab Al-Shaer, Qi Duan |
| 2016 | CCS | Formal Approach for Resilient Reachability based on End-System Route Agility. | Usman Rauf, Fida Gillani, Ehab Al-Shaer, Mahantesh Halappanavar, Samrat Chatterjee, Christopher S. Oehmen |
| 2016 | CNSM | Optimizing the RoI of cyber risk mitigation. | Mohammed Noraden Alsaleh, Ghaith Husari, Ehab Al-Shaer |
| 2016 | DSN | Formal Analysis for Dependable Supervisory Control and Data Acquisition in Smart Grids. | Mohammad Ashiqur Rahman, A. H. M. Jakaria, Ehab Al-Shaer |
| 2016 | ICCCN | Strategic Cyber Threat Intelligence Sharing: A Case Study of IDS Logs. | Spike E. Dog, Alex Tweed, LeRoy Rouse, Bill Chu, Duan Qi, Yueqi Hu, Jing Yang, Ehab Al-Shaer |
| 2015 | CCS | SafeConfig 2015: Workshop on Automated Decision Making for Active Cyber Defense. | Ehab Al-Shaer, Christopher S. Oehmen, Mohammad Ashiqur Rahman |
| 2015 | INFOCOM | Agile virtualized infrastructure to proactively defend against cyber attacks. | Fida Gillani, Ehab Al-Shaer, Samantha Lo, Qi Duan, Mostafa H. Ammar, Ellen W. Zegura |
| 2015 | INFOCOM | Adversary-aware IP address randomization for proactive agility against sophisticated attackers. | Jafar Haadi Jafarian, Ehab Al-Shaer, Qi Duan |
| 2014 | CCS | Summary Abstract for the 7th ACM International Workshop on Cyber Security Analytics, Intelligence and Automation. | Ehab Al-Shaer, Krishna Kant |
| 2014 | CCS | Spatio-temporal Address Mutation for Proactive Cyber Agility against Sophisticated Attackers. | Jafar Haadi Jafarian, Ehab Al-Shaer, Qi Duan |
| 2014 | CCS | Moving Target Defense for Hardening the Security of the Power System State Estimation. | Mohammad Ashiqur Rahman, Ehab Al-Shaer, Rakesh B. Bobba |
| 2014 | DSN | Security Threat Analytics and Countermeasure Synthesis for Power System State Estimation. | Mohammad Ashiqur Rahman, Ehab Al-Shaer, Rajesh G. Kavasseri |
| 2014 | ICDCS | Impact Analysis of Topology Poisoning Attacks on Economic Operation of the Smart Power Grid. | Mohammad Ashiqur Rahman, Ehab Al-Shaer, Rajesh G. Kavasseri |
| 2013 | CCS | Configuration-based IDS for advanced metering infrastructure. | Muhammad Qasim Ali, Ehab Al-Shaer |
| 2013 | CCS | Revisiting anomaly detection system design philosophy. | Ayesha Binte Ashfaq, Muhammad Qasim Ali, Ehab Al-Shaer, Syed Ali Khayam |
| 2013 | CCS | A formal model for sustainable vehicle-to-grid management. | Mohammad Ashiqur Rahman, Fadi Mohsen, Ehab Al-Shaer |
| 2013 | CNSM | A formal approach for virtual machine migration planning. | Saeed Al-Haj, Ehab Al-Shaer |
| 2013 | ESORICS | Formal Approach for Route Agility against Persistent Attackers. | Jafar Haadi Jafarian, Ehab Al-Shaer, Qi Duan |
| 2013 | GLOBECOM | Overlay network placement for diagnosability. | Mehmet Demirci, Fida Gillani, Mostafa H. Ammar, Ehab Al-Shaer |
| 2013 | ICDCS | A Formal Framework for Network Security Design Synthesis. | Mohammad Ashiqur Rahman, Ehab Al-Shaer |
| 2013 | IM | A formal approach for network security management based on qualitative risk analysis. | Mohammad Ashiqur Rahman, Ehab Al-Shaer |
| 2013 | MOBICOM | SensorChecker: reachability verification in mission-oriented sensor networks. | Ehab Al-Shaer, Qi Duan, Saeed Al-Haj, Moustafa Youssef |
| 2013 | NDSS | Metrics for Automated Network Security Design. | Mohammad Ashiqur Rahman, Ehab Al-Shaer |
| 2012 | CCS | Monetizing spambot activity and understanding its relation with spambot traffic features. | Syed Fida Gillani, Ehab Al-Shaer, Sardar Ali, Syed Ali Khayam |
| 2012 | CNSM | Provable configuration planning for wireless sensor networks. | Qi Duan, Saeed Al-Haj, Ehab Al-Shaer |
| 2012 | CNSM | Fine-grain diagnosis of overlay performance anomalies using end-point network experiences. | Fida Gillani, Ehab Al-Shaer, Mostafa H. Ammar, Mehmet Demirci |
| 2012 | DEXA | Anomaly Discovery and Resolution in MySQL Access Control Policies. | Mohamed Shehab, Saeed Al-Haj, Salil Bhagurkar, Ehab Al-Shaer |
| 2012 | INFOCOM | SmartAnalyzer: A noninvasive security threat analyzer for AMI smart grid. | Mohammad Ashiqur Rahman, Padmalochan Bera, Ehab Al-Shaer |
| 2012 | NOMS | On stochastic risk ordering of network services for proactive security management. | Mohamed Amezziane, Ehab Al-Shaer, Muhammad Qasim Ali |
| 2012 | NOMS | An evasive attack on SNORT flowbits. | Tung Tran, Issam Aib, Ehab Al-Shaer, Raouf Boutaba |
| 2012 | TrustCom | Secure Distributed Solution for Optimal Energy Consumption Scheduling in Smart Grid. | Mohammad Ashiqur Rahman, Libin Bai, Mohamed Shehab, Ehab Al-Shaer |
| 2012 | SIGCOMM | Openflow random host mutation: transparent moving target defense using software defined networking. | Jafar Haadi Jafarian, Ehab Al-Shaer, Qi Duan |
| 2012 | SecureComm | Random Host Mutation for Moving Target Defense. | Ehab Al-Shaer, Qi Duan, Jafar Haadi Jafarian |
| 2011 | CNSM | On synthesizing distributed firewall configurations considering risk, usability and cost constraints. | Bin Zhang, Ehab Al-Shaer |
| 2011 | IM | A declarative approach for global network security configuration verification and evaluation. | Mohammad Ashiqur Rahman, Ehab Al-Shaer |
| 2011 | IWQoS | QoS policy verification for DiffServ networks. | Taghrid Samak, Adel El-Atawy, Ehab Al-Shaer |
| 2011 | SecureComm | Build and Test Your Own Network Configuration. | Saeed Al-Haj, Padmalochan Bera, Ehab Al-Shaer |
| 2010 | CCS | Synthetic security policy generation via network traffic clustering. | Taghrid Samak, Ehab Al-Shaer |
| 2010 | INFOCOM | Towards Automatic Creation of Usable Security Configuration. | Bin Zhang, Ehab Al-Shaer |
| 2010 | SACMAT | Automated management of network access control from design to enforcement. | Ehab Al-Shaer |
| 2009 | CCS | TimeVM: a framework for online intrusion mitigation and fast recovery using multi-time-lag traffic replay. | Khalid Elbadawi, Ehab Al-Shaer |
| 2009 | DSN | Sharing end-user negative symptoms for improving overlay network dependability. | Yongning Tang, Ehab Al-Shaer |
| 2009 | ICNP | Network Configuration in A Box: Towards End-to-End Verification of Network Reachability and Security. | Ehab Al-Shaer, Wilfredo Marrero, Adel El-Atawy, Khalid Elbadawi |
| 2009 | IM | Optimizing correlation structure of event services considering time and capacity constraints. | Bin Zhang, Ehab Al-Shaer |
| 2009 | INFOCOM | Building Covert Channels over the Packet Reordering Phenomenon. | Adel El-Atawy, Ehab Al-Shaer |
| 2009 | INFOCOM | Adaptive Early Packet Filtering for Defending Firewalls Against DoS Attacks. | Adel El-Atawy, Ehab Al-Shaer, Tung Tran, Raouf Boutaba |
| 2009 | INFOCOM | Overlay Fault Diagnosis Based on Evidential Reasoning. | Yongning Tang, Ehab Al-Shaer |
| 2008 | INFOCOM | A Novel Quantitative Approach For Measuring Network Security. | Mohammad Salim Ahmed, Ehab Al-Shaer, Latifur Khan |
| 2008 | INFOCOM | Towards Collaborative User-Level Overlay Fault Diagnosis. | Yongning Tang, Ehab Al-Shaer |
| 2008 | NOMS | Towards autonomic risk-aware security configuration. | Mohammad Salim Ahmed, Ehab Al-Shaer, Mohamed Mahmoud Taibah, Muhammad Abedin, Latifur Khan |
| 2008 | NOMS | Designing, optimizing, and evaluating network security configuration. | Ehab Al-Shaer |
| 2008 | NOMS | Alert prioritization in Intrusion Detection Systems. | Khalid Alsubhi, Ehab Al-Shaer, Raouf Boutaba |
| 2008 | SecureComm | Correlation-based load balancing for network intrusion detection and prevention systems. | Anh Le, Raouf Boutaba, Ehab Al-Shaer |
| 2007 | ICNP | FireCracker: A Framework for Inferring Firewall Policies using Smart Probing. | Taghrid Samak, Adel El-Atawy, Ehab Al-Shaer |
| 2007 | IM | Toward Globally Optimal Event Monitoring & Aggregation For Large-scale Overlay Networks. | Yongning Tang, Ehab Al-Shaer, Bin Zhang |
| 2007 | INFOCOM | Using Online Traffic Statistical Matching for Optimizing Packet Filtering Performance. | Adel El-Atawy, Taghrid Samak, Ehab Al-Shaer, Hong Li |
| 2007 | INFOCOM | Ranking-Based Optimal Resource Allocation in Peer-to-Peer Networks. | Yonghe Yan, Adel El-Atawy, Ehab Al-Shaer |
| 2007 | SACMAT | Specifications of a high-level conflict-free firewall policy language for multi-domain networks. | Bin Zhang, Ehab Al-Shaer, Radha Jagadeesan, James Riely, Corin Pitcher |
| 2006 | CCS | Vulnerability analysis For evaluating quality of protection of security policies. | Muhammad Abedin, Syeda Nessa, Ehab Al-Shaer, Latifur Khan |
| 2006 | CCS | Dynamic rule-ordering optimization for high-speed firewall filtering. | Hazem H. Hamed, Ehab Al-Shaer |
| 2006 | INFOCOM | Adaptive Statistical Optimization Techniques for Firewall Packet Filtering. | Hazem H. Hamed, Adel El-Atawy, Ehab Al-Shaer |
| 2006 | ISI | Email Worm Detection Using Nave Bayes and Support Vector Machine. | Mohammad M. Masud, Latifur Khan, Ehab Al-Shaer |
| 2006 | NOMS | Analysis of Firewall Policy Rules Using Data Mining Techniques. | Korosh Golnabi, Richard K. Min, Latifur Khan, Ehab Al-Shaer |
| 2006 | NOMS | Fair Bandwidth Allocation under User Capacity Constraints. | Yonghe Yan, Adel El-Atawy, Ehab Al-Shaer |
| 2006 | SecureComm | An Architecture for an Email Worm Prevention System. | Mohamed Mahmoud Taibah, Ehab Al-Shaer, Raouf Boutaba |
| 2004 | NOMS | Managing firewall and network-edge security policies. | Ehab Al-Shaer |
| 2004 | NOMS | MRMON: remote multicast monitoring. | Ehab Al-Shaer, Yongning Tang |
| 2002 | NOMS | SMRM: SNMP-based multicast reachability monitoring. | Ehab Al-Shaer, Yongning Tang |
| 2001 | IM | A Dynamic Group Management Framework for Large-scale Distributed Event Monitoring. | Ehab Al-Shaer |