| 2025 | NDSS | Attributing Open-Source Contributions is Critical but Difficult: A Systematic Analysis of GitHub Practices and Their Impact on Software Supply Chain Security. | Jan-Ulrich Holtgrave, Kay Friedrich, Fabian Fischer, Nicolas Huaman, Niklas Busch, Jan H. Klemmer, Marcel Fourn, Oliver Wiese, Dominik Wermke, Sascha Fahl |
| 2023 | SP | It's like flossing your teeth: On the Importance and Challenges of Reproducible Builds for Software Supply Chain Security. | Marcel Fourn, Dominik Wermke, William Enck, Sascha Fahl, Yasemin Acar |
| 2022 | SP | "They're not that hard to mitigate": What Cryptographic Library Developers Think About Timing Attacks. | Jan Jancar, Marcel Fourn, Daniel De Almeida Braga, Mohamed Sabt, Peter Schwabe, Gilles Barthe, Pierre-Alain Fouque, Yasemin Acar |
| 2022 | SP | Committed to Trust: A Qualitative Study on Security & Trust in Open Source Software Projects. | Dominik Wermke, Noah Whler, Jan H. Klemmer, Marcel Fourn, Yasemin Acar, Sascha Fahl |
| 2013 | GI | Attack-Test and Verification Systems, steps towards verifiable Anomaly Detection. | Marcel Fourn, Dominique Petersen, Norbert Pohlmann |