Skip to content

Giancarlo Pellegrino

Publication record assembled from the DBLP archive of ranked conferences.

Papers indexed

35

Venues

15

Active years

2010–2026

Best venue rank

A*

Where they publish

Papers

35 indexed papers, newest first.

YearVenueTitleAuthors
2026SPBehind the Curtain: How Shared Hosting Providers Respond to Vulnerability Notifications.Giada Stivala, Rafael Mrowczynski, Maria Hellenthal, Giancarlo Pellegrino
2025CCSIn the DOM We Trust: Exploring the Hidden Dangers of Reading from the DOM on the Web.Jan Drescher, Sepehr Mirzaei, Soheil Khodayari, David Klein, Thomas Barber, Martin Johns, Giancarlo Pellegrino
2025CHIPermission Rationales in the Web Ecosystem: An Exploration of Rationale Text and Design Patterns.Yusra Elbitar, Soheil Khodayari, Marian Harbach, Gianluca De Stefano, Balazs Csaba Engedy, Giancarlo Pellegrino, Sven Bugiel
2025DSNLess is More: Boosting Coverage of Web Crawling through Adversarial Multi-Armed Bandit.Lorenzo Cazzaro, Stefano Calzavara, Maksim Kovalkov, Aleksei Stafeev, Giancarlo Pellegrino
2025IMCExploration of the Dynamics of Buy and Sale of Social Media Accounts.Mario Beluri, Bhupendra Acharya, Soheil Khodayari, Giada Stivala, Giancarlo Pellegrino, Thorsten Holz
2025NDSSDo (Not) Follow the White Rabbit: Challenging the Myth of Harmless Open Redirection.Soheil Khodayari, Kai Glauber, Giancarlo Pellegrino
2025NDSSYuraScanner: Leveraging LLMs for Task-driven Web App Scanning.Aleksei Stafeev, Tim Recktenwald, Gianluca De Stefano, Soheil Khodayari, Giancarlo Pellegrino
2024CCSThe Big Brother's New Playground: Unmasking the Illusion of Privacy in Web Metaverses from a Malicious User's Perspective.Andrea Mengascini, Ryan Aurelio, Giancarlo Pellegrino
2024SPThe Great Request Robbery: An Empirical Study of Client-side Request Hijacking Vulnerabilities on the Web.Soheil Khodayari, Thomas Barber, Giancarlo Pellegrino
2023ACSACFrom Attachments to SEO: Click Here to Learn More about Clickbait PDFs!Giada Stivala, Sahar Abdelnabi, Andrea Mengascini, Mariano Graziano, Mario Fritz, Giancarlo Pellegrino
2023SPIt's (DOM) Clobbering Time: Attack Techniques, Prevalence, and Defenses.Soheil Khodayari, Giancarlo Pellegrino
2023SPThe Leaky Web: Automated Discovery of Cross-Site Information Leaks in Browsers and the Web.Jannis Rautenstrauch, Giancarlo Pellegrino, Ben Stock
2022SPThe State of the SameSite: Studying the Usage, Effectiveness, and Adequacy of SameSite Cookies.Soheil Khodayari, Giancarlo Pellegrino
2021RAIDWhere We Stand (or Fall): An Analysis of CSRF Defenses in Web Frameworks.Xhelal Likaj, Soheil Khodayari, Giancarlo Pellegrino
2021SPBlack Widow: Blackbox Data-driven Web Scanning.Benjamin Eriksson, Giancarlo Pellegrino, Andrei Sabelfeld
2020NDSSDeceptive Previews: A Study of the Link Preview Trustworthiness in Social Platforms.Giada Stivala, Giancarlo Pellegrino
2020SACRaccoon: automated verification of guarded race conditions in web applications.Simon Koch, Tim Sauer, Martin Johns, Giancarlo Pellegrino
2020SPSentiNet: Detecting Localized Universal Attacks Against Deep Learning Systems.Edward Chou, Florian Tramr, Giancarlo Pellegrino
2020SPAutomatic Uncovering of Hidden Behaviors From Input Validation in Mobile Apps.Qingchuan Zhao, Chaoshun Zuo, Brendan Dolan-Gavitt, Giancarlo Pellegrino, Zhiqiang Lin
2019CCSAdVersarial: Perceptual Ad Blocking meets Adversarial Machine Learning.Florian Tramr, Pascal Dupr, Gili Rusak, Giancarlo Pellegrino, Dan Boneh
2019NDSSGeo-locating Drivers: A Study of Sensitive Data Leakage in Ride-Hailing Services.Qingchuan Zhao, Chaoshun Zuo, Giancarlo Pellegrino, Zhiqiang Lin
2019SPFidelius: Protecting User Secrets from Compromised Browsers.Saba Eskandarian, Jonathan Cogan, Sawyer Birnbaum, Peh Chang Wei Brandon, Dillon Franke, Forest Fraser, Gaspar Garcia Jr., Eric Gong, Hung T. Nguyen, Taresh K. Sethi, Vishal Subbiah, Michael Backes, Giancarlo Pellegrino, Dan Boneh
2018NDSSDidn't You Hear Me? - Towards More Successful Web Vulnerability Notifications.Ben Stock, Giancarlo Pellegrino, Frank Li, Michael Backes, Christian Rossow
2018SPThe Rise of the Citizen Developer: Assessing the Security Impact of Online App Generators.Marten Oltrogge, Erik Derr, Christian Stransky, Yasemin Acar, Sascha Fahl, Christian Rossow, Giancarlo Pellegrino, Sven Bugiel, Michael Backes
2017CCSDeemon: Detecting CSRF with Dynamic Analysis and Property Graphs.Giancarlo Pellegrino, Martin Johns, Simon Koch, Michael Backes, Christian Rossow
2017WWWWho Controls the Internet?: Analyzing Global Threats using Property Graph Traversals.Milivoj Simeonovski, Giancarlo Pellegrino, Christian Rossow, Michael Backes
2016CCSPOSTER: Mapping the Landscape of Large-Scale Vulnerability Notifications.Ben Stock, Giancarlo Pellegrino, Christian Rossow, Martin Johns, Michael Backes
2016RAIDUses and Abuses of Server-Side Requests.Giancarlo Pellegrino, Onur Catakoglu, Davide Balzarotti, Christian Rossow
2015RAIDjk: Using Dynamic Analysis to Crawl and Test Modern Web Applications.Giancarlo Pellegrino, Constantin Tschrtz, Eric Bodden, Christian Rossow
2014NDSSToward Black-Box Detection of Logic Flaws in Web Applications.Giancarlo Pellegrino, Davide Balzarotti
2014SECRYPTTowards a Framework for Assessing the Feasibility of Side-channel Attacks in Virtualized Environments.Tsvetoslava Vateva-Gurova, Jesus Luna, Giancarlo Pellegrino, Neeraj Suri
2012TACASThe AVANTSSAR Platform for the Automated Validation of Trust and Security of Service-Oriented Architectures.Alessandro Armando, Wihem Arsac, Tigran Avanesov, Michele Barletta, Alberto Calvi, Alessandro Cappai, Roberto Carbone, Yannick Chevalier, Luca Compagna, Jorge Cullar, Gabriel Erzse, Simone Frau, Marius Minea, Sebastian Mdersheim, David von Oheimb, Giancarlo Pellegrino, Serena Elisa Ponta, Marco Rocchetto, Michal Rusinowitch, Mohammad Torabi Dashti, Mathieu Turuani, Luca Vigan
2012TAPFrom Model-Checking to Automated Testing of Security Protocols: Bridging the Gap.Alessandro Armando, Giancarlo Pellegrino, Roberto Carbone, Alessio Merlo, Davide Balzarotti
2011SECFrom Multiple Credentials to Browser-Based Single Sign-On: Are We More Secure?Alessandro Armando, Roberto Carbone, Luca Compagna, Jorge Cullar, Giancarlo Pellegrino, Alessandro Sorniotti
2010ICSTModel-Checking Driven Security Testing of Web-Based Applications.Alessandro Armando, Roberto Carbone, Luca Compagna, Keqin Li, Giancarlo Pellegrino