Skip to content

Giovanni Vigna

Publication record assembled from the DBLP archive of ranked conferences.

Papers indexed

180

Venues

27

Active years

1997–2026

Best venue rank

A*

Where they publish

Papers

180 indexed papers, newest first.

YearVenueTitleAuthors
2026NDSSHOUSTON: Real-Time Anomaly Detection of Attacks against Ethereum DeFi Protocols.Dongyu Meng, Fabio Gritti, Robert McLaughlin, Nicola Ruaro, Ilya Grishchenko, Christopher Kruegel, Giovanni Vigna
2026SPWhen AI Meets the Web: Prompt Injection Risks in Third-Party AI Chatbot Plugins.Yigitcan Kaya, Anton Landerer, Stijn Pletinckx, Michelle Zimmermann, Christopher Kruegel, Giovanni Vigna
2025CCSAutonomous Vulnerability Analysis, Triaging, and Repair: A Historical Perspective.Giovanni Vigna
2025DIMVAA History of Greed: Practical Symbolic Execution for Ethereum Smart Contracts.Nicola Ruaro, Fabio Gritti, Robert McLaughlin, Dongyu Meng, Ilya Grishchenko, Christopher Kruegel, Giovanni Vigna
2025ESORICSOne Size Doesn't Fit All: A Dynamic Heterogeneous Learning Ensemble for Malware Family Classification.Solomon Yekini Sonya, Muqi Zou, Saastha Vasan, Christopher Kruegel, Giovanni Vigna, Dongyan Xu
2025NDSSMALintent: Coverage Guided Intent Fuzzing Framework for Android.Ammar Askar, Fabian Fleischer, Christopher Kruegel, Giovanni Vigna, Taesoo Kim
2025NDSSA Large-Scale Measurement Study of the PROXY Protocol and its Security Implications.Stijn Pletinckx, Christopher Kruegel, Giovanni Vigna
2025RAIDSyzGrapher: Resource-Centric Graph-Based Kernel Fuzzing.Marius Fleischer, Harrison Green, Ilya Grishchenko, Christopher Kruegel, Giovanni Vigna
2024ACSACDEEPCAPA: Identifying Malicious Capabilities in Windows Malware.Saastha Vasan, Hojjat Aghakhani, Stefano Ortolani, Roman Vasilenko, Ilya Grishchenko, Christopher Kruegel, Giovanni Vigna
2024FCThe Power of Default: Measuring the Effect of Slippage Tolerance in Decentralized Exchanges.Nir Chemaya, Dingyue Liu, Robert McLaughlin, Nicola Ruaro, Christopher Kruegel, Giovanni Vigna
2024ICWSMUnveiling the Risks of NFT Promotion Scams.Sayak Saha Roy, Dipanjan Das, Priyanka Bose, Christopher Kruegel, Giovanni Vigna, Shirin Nilizadeh
2024NDSSNot your Type! Detecting Storage Collision Vulnerabilities in Ethereum Smart Contracts.Nicola Ruaro, Fabio Gritti, Robert McLaughlin, Ilya Grishchenko, Christopher Kruegel, Giovanni Vigna
2024SPTrojanPuzzle: Covertly Poisoning Code-Suggestion Models.Hojjat Aghakhani, Wei Dai, Andre Manoel, Xavier Fernandes, Anant Kharkar, Christopher Kruegel, Giovanni Vigna, David Evans, Ben Zorn, Robert Sim
2023ICSEColumbus: Android App Testing Through Systematic Callback Exploration.Priyanka Bose, Dipanjan Das, Saastha Vasan, Sebastiano Mariani, Ilya Grishchenko, Andrea Continella, Antonio Bianchi, Christopher Kruegel, Giovanni Vigna
2023RAIDShimware: Toward Practical Security Retrofitting for Monolithic Firmware Images.Eric Gustafson, Paul Grosen, Nilo Redini, Saagar Jha, Andrea Continella, Ruoyu Wang, Kevin Fu, Sara Rampazzi, Christopher Kruegel, Giovanni Vigna
2023RAIDContainer Orchestration Honeypot: Observing Attacks in the Wild.Noah Spahn, Nils Hanke, Thorsten Holz, Christopher Kruegel, Giovanni Vigna
2023SPTEEzz: Fuzzing Trusted Applications on COTS Android Devices.Marcel Busch, Aravind Machiry, Chad Spensky, Giovanni Vigna, Christopher Kruegel, Mathias Payer
2023SPToss a Fault to Your Witcher: Applying Grey-box Coverage-Guided Mutational Fuzzing to Detect SQL and Command Injection Vulnerabilities.Erik Trickel, Fabio Pagani, Chang Zhu, Lukas Dresel, Giovanni Vigna, Christopher Kruegel, Ruoyu Wang, Tiffany Bao, Yan Shoshitaishvili, Adam Doup
2023SecureCommStreet Rep: A Privacy-Preserving Reputation Aggregation System.Christophe Hauser, Shirin Nilizadeh, Yan Shoshitaishvili, Ni Trieu, Srivatsan Ravi, Christopher Kruegel, Giovanni Vigna
2022ACSACPOPKORN: Popping Windows Kernel Drivers At Scale.Rajat Gupta, Lukas Patrick Dresel, Noah Spahn, Giovanni Vigna, Christopher Kruegel, Taesoo Kim
2022CCSUnderstanding Security Issues in the NFT Ecosystem.Dipanjan Das, Priyanka Bose, Nicola Ruaro, Christopher Kruegel, Giovanni Vigna
2022DIMVAHybrid Pruning: Towards Precise Pointer and Taint Analysis.Dipanjan Das, Priyanka Bose, Aravind Machiry, Sebastiano Mariani, Yan Shoshitaishvili, Giovanni Vigna, Christopher Kruegel
2022SPSAILFISH: Vetting Smart Contract State-Inconsistency Bugs in Seconds.Priyanka Bose, Dipanjan Das, Yanju Chen, Yu Feng, Christopher Kruegel, Giovanni Vigna
2022SPDEEPCASE: Semi-Supervised Contextual Analysis of Security Events.Thijs van Ede, Hojjat Aghakhani, Noah Spahn, Riccardo Bortolameotti, Marco Cova, Andrea Continella, Maarten van Steen, Andreas Peter, Christopher Kruegel, Giovanni Vigna
2022SPHEAPSTER: Analyzing the Security of Dynamic Allocators for Monolithic Firmware Images.Fabio Gritti, Fabio Pagani, Ilya Grishchenko, Lukas Dresel, Nilo Redini, Christopher Kruegel, Giovanni Vigna
2022SPSYMBEXCEL: Automated Analysis and Understanding of Malicious Excel 4.0 Macros.Nicola Ruaro, Fabio Pagani, Stefano Ortolani, Christopher Kruegel, Giovanni Vigna
2021AsiaCCSBran: Reduce Vulnerability Search Space in Large Open Source Repositories by Learning Bug Symptoms.Dongyu Meng, Michele Guerriero, Aravind Machiry, Hojjat Aghakhani, Priyanka Bose, Andrea Continella, Christopher Kruegel, Giovanni Vigna
2021AsiaCCSConware: Automated Modeling of Hardware Peripherals.Chad Spensky, Aravind Machiry, Nilo Redini, Colin Unger, Graham Foster, Evan Blasband, Hamed Okhravi, Christopher Kruegel, Giovanni Vigna
2021CCSTarnhelm: Isolated, Transparent & Confidential Execution of Arbitrary Code in ARM's TrustZone.Davide Quarta, Michele Ianni, Aravind Machiry, Yanick Fratantonio, Eric Gustafson, Davide Balzarotti, Martina Lindorfer, Giovanni Vigna, Christopher Kruegel
2021DSNGlitching Demystified: Analyzing Control-flow-based Glitching Attacks and Defenses.Chad Spensky, Aravind Machiry, Nathan Burow, Hamed Okhravi, Rick Housley, Zhongshu Gu, Hani Jamjoom, Christopher Kruegel, Giovanni Vigna
2021RAIDSyML: Guiding Symbolic Execution Toward Vulnerable States Through Pattern Learning.Nicola Ruaro, Kyle Zeng, Lukas Dresel, Mario Polino, Tiffany Bao, Andrea Continella, Stefano Zanero, Christopher Kruegel, Giovanni Vigna
2021SPDiane: Identifying Fuzzing Triggers in Apps to Generate Under-constrained Inputs for IoT Devices.Nilo Redini, Andrea Continella, Dipanjan Das, Giulio De Pasquale, Noah Spahn, Aravind Machiry, Antonio Bianchi, Christopher Kruegel, Giovanni Vigna
2020DIMVAOn the Security of Application Installers and Online Software Repositories.Marcus Botacin, Giovanni Berto, Paulo L. de Geus, Andr Grgio, Christopher Kruegel, Giovanni Vigna
2020NDSSWhen Malware is Packin' Heat; Limits of Machine Learning Classifiers Based on Static Analysis Features.Hojjat Aghakhani, Fabio Gritti, Francesco Mecca, Martina Lindorfer, Stefano Ortolani, Davide Balzarotti, Giovanni Vigna, Christopher Kruegel
2020RAIDTracing and Analyzing Web Access Paths Based on User-Side Data Collection: How Do Users Reach Malicious URLs?Takeshi Takahashi, Christopher Kruegel, Giovanni Vigna, Katsunari Yoshioka, Daisuke Inoue
2020WWWDirty Clicks: A Study of the Usability and Security Implications of Click-related Behaviors on the Web.Iskander Snchez-Rola, Davide Balzarotti, Christopher Kruegel, Giovanni Vigna, Igor Santos
2020SPSPIDER: Enabling Fast Patch Propagation In Related Software Repositories.Aravind Machiry, Nilo Redini, Eric Camellini, Christopher Kruegel, Giovanni Vigna
2020SPKaronte: Detecting Insecure Multi-binary Interactions in Embedded Firmware.Nilo Redini, Aravind Machiry, Ruoyu Wang, Chad Spensky, Andrea Continella, Yan Shoshitaishvili, Christopher Kruegel, Giovanni Vigna
2019ACSACSleak: automating address space layout derandomization.Christophe Hauser, Jayakrishna Menon, Yan Shoshitaishvili, Ruoyu Wang, Giovanni Vigna, Christopher Kruegel
2019ACSACNeurlux: dynamic malware analysis without feature engineering.Chani Jindal, Christopher Salls, Hojjat Aghakhani, Keith Long, Christopher Kruegel, Giovanni Vigna
2019DIMVABinTrimmer: Towards Static Binary Debloating Through Abstract Interpretation.Nilo Redini, Ruoyu Wang, Aravind Machiry, Yan Shoshitaishvili, Giovanni Vigna, Christopher Kruegel
2019NDSSPeriScope: An Effective Probing and Fuzzing Framework for the Hardware-OS Boundary.Dokyung Song, Felicitas Hetzelt, Dipanjan Das, Chad Spensky, Yeoul Na, Stijn Volckaert, Giovanni Vigna, Christopher Kruegel, Jean-Pierre Seifert, Michael Franz
2019RAIDToward the Analysis of Embedded Firmware through Automated Re-hosting.Eric Gustafson, Marius Muench, Chad Spensky, Nilo Redini, Aravind Machiry, Yanick Fratantonio, Davide Balzarotti, Aurlien Francillon, Yung Ryn Choe, Christopher Kruegel, Giovanni Vigna
2019WWWThink Outside the Dataset: Finding Fraudulent Reviews using Cross-Dataset Analysis.Shirin Nilizadeh, Hojjat Aghakhani, Eric Gustafson, Christopher Kruegel, Giovanni Vigna
2019WWWLightning Talk - Think Outside the Dataset: Finding Fraudulent Reviews using Cross-Dataset Analysis.Shirin Nilizadeh, Hojjat Aghakhani, Eric Gustafson, Christopher Kruegel, Giovanni Vigna
2018ACSACUsing Loops For Malware Classification Resilient to Feature-unaware Perturbations.Aravind Machiry, Nilo Redini, Eric Gustafson, Yanick Fratantonio, Yung Ryn Choe, Christopher Kruegel, Giovanni Vigna
2018CCSMineSweeper: An In-depth Look into Drive-by Cryptocurrency Mining and Its Defense.Radhesh Krishnan Konoth, Emanuele Vineti, Veelasha Moonsamy, Martina Lindorfer, Christopher Kruegel, Herbert Bos, Giovanni Vigna
2018DIMVAGuardION: Practical Mitigation of DMA-Based Rowhammer Attacks on ARM.Victor van der Veen, Martina Lindorfer, Yanick Fratantonio, Harikrishnan Padmanabha Pillai, Giovanni Vigna, Christopher Kruegel, Herbert Bos, Kaveh Razavi
2018ICWSMPeer to Peer Hate: Hate Speech Instigators and Their Targets.Mai ElSherief, Shirin Nilizadeh, Dana Nguyen, Giovanni Vigna, Elizabeth M. Belding
2018NDSSBroken Fingers: On the Usage of the Fingerprint API in Android.Antonio Bianchi, Yanick Fratantonio, Aravind Machiry, Christopher Kruegel, Giovanni Vigna, Simon Pak Ho Chung, Wenke Lee
2018NDSSCloud Strife: Mitigating the Security Risks of Domain-Validated Certificates.Kevin Borgolte, Tobias Fiebig, Shuang Hao, Christopher Kruegel, Giovanni Vigna
2018PAMIn rDNS We Trust: Revisiting a Common Data-Source's Reliability.Tobias Fiebig, Kevin Borgolte, Shuang Hao, Christopher Kruegel, Giovanni Vigna, Anja Feldmann
2018SACMeasuring E-mail header injections on the world wide web.Sai Prashanth Chandramouli, Pierre-Marie Bajan, Christopher Kruegel, Giovanni Vigna, Ziming Zhao, Adam Doup, Gail-Joon Ahn
2018SPDetecting Deceptive Reviews Using Generative Adversarial Networks.Hojjat Aghakhani, Aravind Machiry, Shirin Nilizadeh, Christopher Kruegel, Giovanni Vigna
2018SPEnumerating Active IPv6 Hosts for Large-Scale Security Scans via DNSSEC-Signed Reverse Zones.Kevin Borgolte, Shuang Hao, Tobias Fiebig, Giovanni Vigna
2017ACSACExploitation and Mitigation of Authentication Schemes Based on Device-Public Information.Antonio Bianchi, Eric Gustafson, Yanick Fratantonio, Christopher Kruegel, Giovanni Vigna
2017ACSACPiston: Uncooperative Remote Runtime Patching.Christopher Salls, Yan Shoshitaishvili, Nick Stephens, Christopher Kruegel, Giovanni Vigna
2017CCSDIFUZE: Interface Aware Fuzzing for Kernel Drivers.Jake Corina, Aravind Machiry, Christopher Salls, Yan Shoshitaishvili, Shuang Hao, Christopher Kruegel, Giovanni Vigna
2017CCSGossip: Automatically Identifying Malicious Domains from Mailing List Discussions.Cheng Huang, Shuang Hao, Luca Invernizzi, Jiayong Liu, Yong Fang, Christopher Kruegel, Giovanni Vigna
2017CCSPOISED: Spotting Twitter Spam Off the Beaten Paths.Shirin Nilizadeh, Francois Labreche, Alireza Sedighian, Ali Zand, Jos M. Fernandez, Christopher Kruegel, Gianluca Stringhini, Giovanni Vigna
2017CCSRise of the HaCRS: Augmenting Autonomous Cyber Reasoning Systems with Human Assistance.Yan Shoshitaishvili, Michael Weissbacher, Lukas Dresel, Christopher Salls, Ruoyu Wang, Christopher Kruegel, Giovanni Vigna
2017NDSSObfuscation-Resilient Privacy Leak Detection for Mobile Apps Through Differential Analysis.Andrea Continella, Yanick Fratantonio, Martina Lindorfer, Alessandro Puccetti, Ali Zand, Christopher Kruegel, Giovanni Vigna
2017NDSSBOOMERANG: Exploiting the Semantic Gap in Trusted Execution Environments.Aravind Machiry, Eric Gustafson, Chad Spensky, Christopher Salls, Nick Stephens, Ruoyu Wang, Antonio Bianchi, Yung Ryn Choe, Christopher Kruegel, Giovanni Vigna
2017NDSSRamblr: Making Reassembly Great Again.Ruoyu Wang, Yan Shoshitaishvili, Antonio Bianchi, Aravind Machiry, John Grosen, Paul Grosen, Christopher Kruegel, Giovanni Vigna
2017PAMSomething from Nothing (There): Collecting Global IPv6 Datasets from DNS.Tobias Fiebig, Kevin Borgolte, Shuang Hao, Christopher Kruegel, Giovanni Vigna
2016CCSDrammer: Deterministic Rowhammer Attacks on Mobile Platforms.Victor van der Veen, Yanick Fratantonio, Martina Lindorfer, Daniel Gruss, Clmentine Maurice, Giovanni Vigna, Herbert Bos, Kaveh Razavi, Cristiano Giuffrida
2016CCSBinary Analysis for Autonomous Hacking: Invited Abstract.Giovanni Vigna
2016NDSSGoing Native: Using a Large-Scale Analysis of Android Apps to Create a Practical Native-Code Sandboxing Policy.Vitor Monte Afonso, Paulo L. de Geus, Antonio Bianchi, Yanick Fratantonio, Christopher Kruegel, Giovanni Vigna, Adam Doup, Mario Polino
2016NDSSDriller: Augmenting Fuzzing Through Selective Symbolic Execution.Nick Stephens, John Grosen, Christopher Salls, Andrew Dutcher, Ruoyu Wang, Jacopo Corbetta, Yan Shoshitaishvili, Christopher Kruegel, Giovanni Vigna
2016RAIDTaming Transactions: Towards Hardware-Assisted Control Flow Integrity Using Transactional Memory.Marius Muench, Fabio Pagani, Yan Shoshitaishvili, Christopher Kruegel, Giovanni Vigna, Davide Balzarotti
2016SPTriggerScope: Towards Detecting Logic Bombs in Android Applications.Yanick Fratantonio, Antonio Bianchi, William K. Robertson, Engin Kirda, Christopher Kruegel, Giovanni Vigna
2016SPSOK: (State of) The Art of War: Offensive Techniques in Binary Analysis.Yan Shoshitaishvili, Ruoyu Wang, Christopher Salls, Nick Stephens, Mario Polino, Andrew Dutcher, John Grosen, Siji Feng, Christophe Hauser, Christopher Krgel, Giovanni Vigna
2015ACSACGrab 'n Run: Secure and Practical Dynamic Code Loading for Android Applications.Luca Falsina, Yanick Fratantonio, Stefano Zanero, Christopher Kruegel, Giovanni Vigna, Federico Maggi
2015ACSACBareDroid: Large-Scale Analysis of Android Apps on Real Devices.Simone Mutti, Yanick Fratantonio, Antonio Bianchi, Luca Invernizzi, Jacopo Corbetta, Dhilung Kirat, Christopher Kruegel, Giovanni Vigna
2015ACSACKnow Your Achilles' Heel: Automatic Detection of Network Critical Services.Ali Zand, Amir Houmansadr, Giovanni Vigna, Richard A. Kemmerer, Christopher Kruegel
2015CCSNJAS: Sandboxing Unmodified Applications in non-rooted Devices Running stock Android.Antonio Bianchi, Yanick Fratantonio, Christopher Kruegel, Giovanni Vigna
2015CCSDrops for Stuff: An Analysis of Reshipping Mule Scams.Shuang Hao, Kevin Borgolte, Nick Nikiforakis, Gianluca Stringhini, Manuel Egele, Michael Eubanks, Brian Krebs, Giovanni Vigna
2015CCSMalGene: Automatic Extraction of Malware Analysis Evasion Signature.Dhilung Kirat, Giovanni Vigna
2015DIMVAOn the Security and Engineering Implications of Finer-Grained Access Controls for Android Developers and Users.Yanick Fratantonio, Antonio Bianchi, William K. Robertson, Manuel Egele, Christopher Kruegel, Engin Kirda, Giovanni Vigna
2015HPCCPrison: Tracking Process Interactions to Contain Malware.Benjamin Caillat, Bob Gilbert, Richard A. Kemmerer, Christopher Kruegel, Giovanni Vigna
2015NDSSEdgeMiner: Automatically Detecting Implicit Control Flow Transitions through the Android Framework.Yinzhi Cao, Yanick Fratantonio, Antonio Bianchi, Manuel Egele, Christopher Kruegel, Giovanni Vigna, Yan Chen
2015NDSSFirmalice - Automatic Detection of Authentication Bypass Vulnerabilities in Binary Firmware.Yan Shoshitaishvili, Ruoyu Wang, Christophe Hauser, Christopher Kruegel, Giovanni Vigna
2015SPWhat the App is That? Deception and Countermeasures in the Android User Interface.Antonio Bianchi, Jacopo Corbetta, Luca Invernizzi, Yanick Fratantonio, Christopher Kruegel, Giovanni Vigna
2014CCSThe harvester, the botmaster, and the spammer: on the relations between the different actors in the spam landscape.Gianluca Stringhini, Oliver Hohlfeld, Christopher Kruegel, Giovanni Vigna
2014DIMVAPExy: The Other Side of Exploit Kits.Giancarlo De Maio, Alexandros Kapravelos, Yan Shoshitaishvili, Christopher Kruegel, Giovanni Vigna
2014IMCThe Dark Alleys of Madison Avenue: Understanding Malicious Advertisements.Apostolis Zarras, Alexandros Kapravelos, Gianluca Stringhini, Thorsten Holz, Christopher Kruegel, Giovanni Vigna
2014INFOCOMRippler: Delay injection for service dependency detection.Ali Zand, Giovanni Vigna, Richard A. Kemmerer, Christopher Kruegel
2014NDSSNazca: Detecting Malware Distribution in Large-Scale Networks.Luca Invernizzi, Stanislav Miskovic, Ruben Torres, Christopher Kruegel, Sabyasachi Saha, Giovanni Vigna, Sung-Ju Lee, Marco Mellia
2014NDSSExecute This! Analyzing Unsafe and Malicious Dynamic Code Loading in Android Applications.Sebastian Poeplau, Yanick Fratantonio, Antonio Bianchi, Christopher Kruegel, Giovanni Vigna
2014RAIDProtecting Web-Based Single Sign-on Protocols against Relying Party Impersonation Attacks through a Dedicated Bi-directional Authenticated Secure Channel.Yinzhi Cao, Yan Shoshitaishvili, Kevin Borgolte, Christopher Krgel, Giovanni Vigna, Yan Chen
2014RAIDEyes of a Human, Eyes of a Program: Leveraging Different Views of the Web for Analysis and Detection.Jacopo Corbetta, Luca Invernizzi, Christopher Krgel, Giovanni Vigna
2014WWWRelevant change detection: a framework for the precise extraction of modified and novel web-based content as a filtering technique for analysis engines.Kevin Borgolte, Christopher Kruegel, Giovanni Vigna
2014WWWStranger danger: exploring the ecosystem of ad-based URL shortening services.Nick Nikiforakis, Federico Maggi, Gianluca Stringhini, M. Zubair Rafique, Wouter Joosen, Christopher Kruegel, Frank Piessens, Giovanni Vigna, Stefano Zanero
2014SACDo you feel lucky?: a large-scale analysis of risk-rewards trade-offs in cyber security.Yan Shoshitaishvili, Luca Invernizzi, Adam Doup, Giovanni Vigna
2014SACExtracting probable command and control signatures for detecting botnets.Ali Zand, Giovanni Vigna, Xifeng Yan, Christopher Kruegel
2014SPThe Tricks of the Trade: What Makes Spam Campaigns Successful?Jane Iedemska, Gianluca Stringhini, Richard A. Kemmerer, Christopher Kruegel, Giovanni Vigna
2013ACSACMessage in a bottle: sailing past censorship.Luca Invernizzi, Christopher Kruegel, Giovanni Vigna
2013ACSACSigMal: a static signal processing based malware triage.Dhilung Kirat, Lakshmanan Nataraj, Giovanni Vigna, B. S. Manjunath
2013CCSDelta: automatic identification of unknown web-based infection campaigns.Kevin Borgolte, Christopher Kruegel, Giovanni Vigna
2013CCSdeDacota: toward preventing server-side XSS via automatic code and data separation.Adam Doup, Weidong Cui, Mariusz H. Jakubowski, Marcus Peinado, Christopher Kruegel, Giovanni Vigna
2013CCSShady paths: leveraging surfing crowds to detect malicious web pages.Gianluca Stringhini, Christopher Kruegel, Giovanni Vigna
2013CISSFormulating Cyber-Security as Convex Optimization Problems.Kyriakos G. Vamvoudakis, Joo P. Hespanha, Richard A. Kemmerer, Giovanni Vigna
2013IMCFollow the green: growth and dynamics in twitter follower markets.Gianluca Stringhini, Gang Wang, Manuel Egele, Christopher Kruegel, Giovanni Vigna, Haitao Zheng, Ben Y. Zhao
2013NDSSCOMPA: Detecting Compromised Accounts on Social Networks.Manuel Egele, Gianluca Stringhini, Christopher Krgel, Giovanni Vigna
2013RAIDPractical Attacks against the I2P Network.Christoph Egger, Johannes Schlumberger, Christopher Kruegel, Giovanni Vigna
2013WWWTwo years of short URLs internet measurement: security threats and countermeasures.Federico Maggi, Alessandro Frossi, Stefano Zanero, Gianluca Stringhini, Brett Stone-Gross, Christopher Kruegel, Giovanni Vigna
2013SACEARs in the wild: large-scale analysis of execution after redirect vulnerabilities.Pierre Payet, Adam Doup, Christopher Kruegel, Giovanni Vigna
2013SPCookieless Monster: Exploring the Ecosystem of Web-Based Device Fingerprinting.Nick Nikiforakis, Alexandros Kapravelos, Wouter Joosen, Christopher Kruegel, Frank Piessens, Giovanni Vigna
2012ACSACJarhead analysis and detection of malicious Java applets.Johannes Schlumberger, Christopher Kruegel, Giovanni Vigna
2012CCSBlacksheep: detecting compromised hosts in homogeneous crowds.Antonio Bianchi, Yan Shoshitaishvili, Christopher Kruegel, Giovanni Vigna
2012CCSYou are what you include: large-scale evaluation of remote javascript inclusions.Nick Nikiforakis, Luca Invernizzi, Alexandros Kapravelos, Steven Van Acker, Wouter Joosen, Christopher Kruegel, Frank Piessens, Giovanni Vigna
2012CoNEXTBotFinder: finding bots in network traffic without deep packet inspection.Florian Tegeler, Xiaoming Fu, Giovanni Vigna, Christopher Kruegel
2012DIMVATracking Memory Writes for Malware Classification and Code Reuse Identification.Andr Ricardo Abed Grgio, Paulo Lcio de Geus, Christopher Kruegel, Giovanni Vigna
2012DIMVAA Static, Packer-Agnostic Filter to Detect Similar Malware Samples.Grgoire Jacob, Paolo Milani Comparetti, Matthias Neugschwandtner, Christopher Kruegel, Giovanni Vigna
2012RAIDFlashDetect: ActionScript 3 Malware Detection.Timon Van Overveldt, Christopher Kruegel, Giovanni Vigna
2012SPEvilSeed: A Guided Approach to Finding Malicious Web Pages.Luca Invernizzi, Paolo Milani Comparetti, Stefano Benvenuti, Christopher Kruegel, Marco Cova, Giovanni Vigna
2012RVMalware Riding Badware: Challenges in Analyzing (Malicious/Benign) Web Applications.Giovanni Vigna
2011ACSACNexat: a history-based approach to predict attacker actions.Casey Cipriano, Ali Zand, Amir Houmansadr, Christopher Kruegel, Giovanni Vigna
2011ACSACHit 'em where it hurts: a live security exercise on cyber situational awareness.Adam Doup, Manuel Egele, Benjamin Caillat, Gianluca Stringhini, Gorkem Yakin, Ali Zand, Ludovico Cavedon, Giovanni Vigna
2011ACSACBareBox: efficient malware analysis on bare-metal.Dhilung Kirat, Giovanni Vigna, Christopher Kruegel
2011CCSFear the EAR: discovering and mitigating execution after redirect vulnerabilities.Adam Doup, Bryce Boe, Christopher Kruegel, Giovanni Vigna
2011DIMVAMISHIMA: Multilateration of Internet Hosts Hidden Using Malicious Fast-Flux Agents (Short Paper).Greg Banks, Aristide Fattori, Richard A. Kemmerer, Christopher Kruegel, Giovanni Vigna
2011DIMVAEscape from Monkey Island: Evading High-Interaction Honeyclients.Alexandros Kapravelos, Marco Cova, Christopher Kruegel, Giovanni Vigna
2011IMCUnderstanding fraudulent activities in online ad exchanges.Brett Stone-Gross, Ryan Stevens, Apostolis Zarras, Richard A. Kemmerer, Christopher Kruegel, Giovanni Vigna
2011INFOCOMPeering through the iframe.Brett Stone-Gross, Marco Cova, Christopher Kruegel, Giovanni Vigna
2011NDSSPiOS: Detecting Privacy Leaks in iOS Applications.Manuel Egele, Christopher Kruegel, Engin Kirda, Giovanni Vigna
2011RAIDShellzer: A Tool for the Dynamic Analysis of Malicious Shellcode.Yanick Fratantonio, Christopher Kruegel, Giovanni Vigna
2011RAIDDymo: Tracking Dynamic Code Identity.Bob Gilbert, Richard A. Kemmerer, Christopher Kruegel, Giovanni Vigna
2011WWWProphiler: a fast filter for the large-scale detection of malicious web pages.Davide Canali, Marco Cova, Giovanni Vigna, Christopher Kruegel
2010ACSACDetecting spammers on social networks.Gianluca Stringhini, Christopher Kruegel, Giovanni Vigna
2010ACSACNetwork intrusion detection: dead or alive?Giovanni Vigna
2010DIMVAOrganizing Large Scale Hacking Competitions.Nicholas Childers, Bryce Boe, Lorenzo Cavallaro, Ludovico Cavedon, Marco Cova, Manuel Egele, Giovanni Vigna
2010DIMVAWhy Johnny Can't Pentest: An Analysis of Black-Box Web Vulnerability Scanners.Adam Doup, Marco Cova, Giovanni Vigna
2010NDSSEfficient Detection of Split Personalities in Malware.Davide Balzarotti, Marco Cova, Christoph Karlberger, Engin Kirda, Christopher Kruegel, Giovanni Vigna
2010NDSSEffective Anomaly Detection with Scarce Training Data.William K. Robertson, Federico Maggi, Christopher Kruegel, Giovanni Vigna
2010WWWDetection and analysis of drive-by-download attacks and malicious JavaScript code.Marco Cova, Christopher Krgel, Giovanni Vigna
2009ACSACAnalyzing and Detecting Malicious Flash Advertisements.Sean Ford, Marco Cova, Christopher Kruegel, Giovanni Vigna
2009CCSYour botnet is my botnet: analysis of a botnet takeover.Brett Stone-Gross, Marco Cova, Lorenzo Cavallaro, Bob Gilbert, Martin Szydlowski, Richard A. Kemmerer, Christopher Kruegel, Giovanni Vigna
2009RAIDProtecting a Moving Target: Addressing Web Application Concept Drift.Federico Maggi, William K. Robertson, Christopher Krgel, Giovanni Vigna
2008ICISSA Parallel Architecture for Stateful, High-Speed Intrusion Detection.Luca Foschini, Ashish V. Thapliyal, Lorenzo Cavallaro, Christopher Kruegel, Giovanni Vigna
2008ISSTAAre your votesDavide Balzarotti, Greg Banks, Marco Cova, Viktoria Felmetsger, Richard A. Kemmerer, William K. Robertson, Fredrik Valeur, Giovanni Vigna
2008SPSaner: Composing Static and Dynamic Analysis to Validate Sanitization in Web Applications.Davide Balzarotti, Marco Cova, Viktoria Felmetsger, Nenad Jovanovic, Engin Kirda, Christopher Kruegel, Giovanni Vigna
2008SPClearShot: Eavesdropping on Keyboard Input from Video.Davide Balzarotti, Marco Cova, Giovanni Vigna
2007ACSACFeature Omission Vulnerabilities: Thwarting Signature Generation for Polymorphic Worms.Matthew Van Gundy, Hao Chen, Zhendong Su, Giovanni Vigna
2007ACSACImproving Signature Testing through Dynamic Data Flow Analysis.Christopher Kruegel, Davide Balzarotti, William K. Robertson, Giovanni Vigna
2007CCSMulti-module vulnerability analysis of web-based applications.Davide Balzarotti, Marco Cova, Viktoria Felmetsger, Giovanni Vigna
2007ICSEIs Code Still Moving Around? Looking Back at a Decade of Code Mobility.Antonio Carzaniga, Gian Pietro Picco, Giovanni Vigna
2007NDSSCross Site Scripting Prevention with Dynamic Data Tainting and Static Analysis.Philipp Vogt, Florian Nentwich, Nenad Jovanovic, Engin Kirda, Christopher Krgel, Giovanni Vigna
2007RAIDSwaddler: An Approach for the Anomaly-Based Detection of State Violations in Web Applications.Marco Cova, Davide Balzarotti, Viktoria Felmetsger, Giovanni Vigna
2007RAIDExploiting Execution Context for the Detection of Anomalous System Calls.Darren Mutz, William K. Robertson, Giovanni Vigna, Richard A. Kemmerer
2006ACSACStatic Detection of Vulnerabilities in x86 Executables.Marco Cova, Viktoria Felmetsger, Greg Banks, Giovanni Vigna
2006ACSACVulnerability Analysis of MMS User Agents.Collin Mulliner, Giovanni Vigna
2006DIMVADigital Forensic Reconstruction and the Virtual Security Testbed ViSe.Andr rnes, Paul Haas, Giovanni Vigna, Richard A. Kemmerer
2006DIMVAUsing Labeling to Prevent Cross-Service Attacks Against Smart Phones.Collin Mulliner, Giovanni Vigna, David Dagon, Wenke Lee
2006NDSSUsing Generalization and Characterization Techniques in the Anomaly-based Detection of Web Attacks.William K. Robertson, Giovanni Vigna, Christopher Krgel, Richard A. Kemmerer
2006RAIDUsing Hidden Markov Models to Evaluate the Risks of Intrusions.Andr rnes, Fredrik Valeur, Giovanni Vigna, Richard A. Kemmerer
2006SACNoxes: a client-side solution for mitigating cross-site scripting attacks.Engin Kirda, Christopher Krgel, Giovanni Vigna, Nenad Jovanovic
2006SACAn anomaly-driven reverse proxy for web applications.Fredrik Valeur, Giovanni Vigna, Christopher Krgel, Engin Kirda
2005DIMVAA Learning-Based Approach to the Detection of SQL Attacks.Fredrik Valeur, Darren Mutz, Giovanni Vigna
2005ICECCSExploiting OS-Level Mechanisms to Implement Mobile Code Security.Viktoria Felmetsger, Giovanni Vigna
2005ICECCSDetecting Malicious JavaScript Code in Mozilla.Oystein Hallaraker, Giovanni Vigna
2005RAIDPolymorphic Worm Detection Using Structural Information of Executables.Christopher Krgel, Engin Kirda, Darren Mutz, William K. Robertson, Giovanni Vigna
2004ACSACDetecting Kernel-Level Rootkits Through Binary Analysis.Christopher Krgel, William K. Robertson, Giovanni Vigna
2004ACSACAn Intrusion Detection Tool for AODV-Based Ad hoc Wireless Networks.Giovanni Vigna, Sumit Gwalani, Kavitha Srinivasan, Elizabeth M. Belding-Royer, Richard A. Kemmerer
2004ACSACDetecting Attacks That Exploit Application-Logic Errors Through Application-Level Auditing.Jingyu Zhou, Giovanni Vigna
2004CCSTesting network-based intrusion detection signatures using mutant exploits.Giovanni Vigna, William K. Robertson, Davide Balzarotti
2004MDMMobile Agents: Ten Reasons For Failure.Giovanni Vigna
2003ACSACAn Experience Developing an IDS Stimulator for the Black-Box Testing of Network Intrusion Detection Systems.Darren Mutz, Giovanni Vigna, Richard A. Kemmerer
2003ACSACA Stateful Intrusion Detection System for World-Wide Web Servers.Giovanni Vigna, William K. Robertson, Vishal Kher, Richard A. Kemmerer
2003CCSAnomaly detection of web-based attacks.Christopher Krgel, Giovanni Vigna
2003ESORICSOn the Detection of Anomalous System Call Arguments.Christopher Krgel, Darren Mutz, Fredrik Valeur, Giovanni Vigna
2003FMA Topological Characterization of TCP/IP Security.Giovanni Vigna
2003ICSEInternet Security and Intrusion Detection.Richard A. Kemmerer, Giovanni Vigna
2002ACSACComposable Tools For Network Discovery and Security Analysis.Giovanni Vigna, Fredrik Valeur, Jingyu Zhou, Richard A. Kemmerer
2002CCSSensor-based intrusion detection for intra-domain distance-vector routing.Vishal Mittal, Giovanni Vigna
2002ICECCSMnemosyne: Designing and Implementing Network Short-Term Memory.Giovanni Vigna, Andrew Mitchel
2002SPStateful Intrusion Detection for High-Speed Networks.Christopher Krgel, Fredrik Valeur, Giovanni Vigna, Richard A. Kemmerer
2001RAIDDesigning a Web of Highly-Configurable Intrusion Detection Sensors.Giovanni Vigna, Richard A. Kemmerer, Per Blix
1998ACSACNetSTAT: A Network-Based Intrusion Detection Approach.Giovanni Vigna, Richard A. Kemmerer
1997ICSEDesigning Distributed Applications with Mobile Code Paradigms.Antonio Carzaniga, Gian Pietro Picco, Giovanni Vigna