| 2026 | ICISSP | Detecting Attack Patterns in Windows Registry Using CTI: A BERT-Based Approach. | Leanne Briffa, Claudia Borg, Mark Vella |
| 2023 | ICISSP | Using Infrastructure-Based Agents to Enhance Forensic Logging of Third-Party Applications. | Jennifer Bellizzi, Mark Vella, Christian Colombo, Julio C. Hernandez-Castro |
| 2022 | SEC | D-Cloud-Collector: Admissible Forensic Evidence from Mobile Cloud Storage. | Mark Vella, Christian Colombo |
| 2021 | ISSTA | Runtime verification for trustworthy secure shell deployment. | Axel Curmi, Christian Colombo, Mark Vella |
| 2021 | SECRYPT | Responding to Living-Off-the-Land Tactics using Just-In-Time Memory Forensics (JIT-MF) for Android. | Jennifer Bellizzi, Mark Vella, Christian Colombo, Julio C. Hernandez-Castro |
| 2020 | ICISSP | Towards a Comprehensive Solution for Secure Cryptographic Protocol Execution based on Runtime Verification. | Christian Colombo, Mark Vella |
| 2020 | SIN | SpotCheck: On-Device Anomaly Detection for Android. | Mark Vella, Christian Colombo |
| 2018 | CloudCom | Enhancing Virtual Machine Introspection-Based Memory Analysis with Event Triggers. | Matthew Muscat, Mark Vella |
| 2018 | FedCSIS | Volatile memory-centric investigation of SMS-hijacked phones: a Pushbullet case study. | Mark Vella, Vishwas Rudramurthy |
| 2017 | ICISSP | Memory Forensics of Insecure Android Inter-app Communications. | Mark Vella, Rachel Cilia |
| 2017 | WISTP | AndroNeo: Hardening Android Malware Sandboxes by Predicting Evasion Heuristics. | Yonas Leguesse, Mark Vella, Joshua Ellul |
| 2015 | SECRYPT | WeXpose: Towards on-Line Dynamic Analysis of Web Attack Payloads using Just-In-Time Binary Modification. | Jennifer Bellizzi, Mark Vella |
| 2012 | RAID | Distress Detection (Poster Abstract). | Mark Vella, Sotirios Terzis, Marc Roper |