| 2018 | Hiding in the Shadows: Empowering ARM for Stealthy Virtual Machine Introspection. | Sergej Proskurin, Tamas K. Lengyel, Marius Momeu, Claudia Eckert, Apostolis Zarras |
| 2018 | Mapping to Bits: Efficiently Detecting Type Confusion Errors. | Chengbin Pang, Yunlan Du, Bing Mao, Shanqing Guo |
| 2018 | MADE: Security Analytics for Enterprise Threat Detection. | Alina Oprea, Zhou Li, Robin Norris, Kevin D. Bowers |
| 2018 | Finding The Greedy, Prodigal, and Suicidal Contracts at Scale. | Ivica Nikolic, Aashish Kolluri, Ilya Sergey, Prateek Saxena, Aquinas Hobor |
| 2018 | Do Social Disorders Facilitate Social Engineering?: A Case Study of Autism and Phishing Attacks. | Ajaya Neupane, Kiavash Satvat, Nitesh Saxena, Despina Stavrinos, Haley Johnson Bishop |
| 2018 | Shredder: Breaking Exploits through API Specialization. | Shachee Mishra, Michalis Polychronakis |
| 2018 | Latent Typing Biometrics in Online Collaboration Services. | Shane McCulley, Vassil Roussev |
| 2018 | On The Systematic Development and Evaluation Of Password Security Awareness-Raising Materials. | Peter Mayer, Christian Schwartz, Melanie Volkamer |
| 2018 | An Extensive Evaluation of the Internet's Open Proxies. | Akshaya Mani, Tavish Vaidya, David Dworken, Micah Sherr |
| 2018 | Leave It to Weaver. | William Mahoney, Joseph Franco, Greg Hoff, Jeffrey Todd McDonald |
| 2018 | Using Loops For Malware Classification Resilient to Feature-unaware Perturbations. | Aravind Machiry, Nilo Redini, Eric Gustafson, Yanick Fratantonio, Yung Ryn Choe, Christopher Kruegel, Giovanni Vigna |
| 2018 | A Measurement Study of Authentication Rate-Limiting Mechanisms of Modern Websites. | Bo Lu, Xiaokuan Zhang, Ziman Ling, Yinqian Zhang, Zhiqiang Lin |
| 2018 | A Heuristic Framework to Detect Concurrency Vulnerabilities. | Changming Liu, Deqing Zou, Peng Luo, Bin B. Zhu, Hai Jin |
| 2018 | Typing-Proof: Usable, Secure and Low-Cost Two-Factor Authentication Based on Keystroke Timings. | Ximing Liu, Yingjiu Li, Robert H. Deng |
| 2018 | A Measurement Study on Linux Container Security: Attacks and Countermeasures. | Xin Lin, Lingguang Lei, Yuewu Wang, Jiwu Jing, Kun Sun, Quan Zhou |
| 2018 | MemCloak: Practical Access Obfuscation for Untrusted Memory. | Weixin Liang, Kai Bu, Ke Li, Jinhong Li, Arya Tavakoli |
| 2018 | Type-After-Type: Practical and Complete Type-Safe Memory Reuse. | Erik van der Kouwe, Taddeus Kroes, Chris Ouwehand, Herbert Bos, Cristiano Giuffrida |
| 2018 | Model Extraction Warning in MLaaS Paradigm. | Manish Kesarwani, Bhaskar Mukhoty, Vijay Arya, Sameep Mehta |
| 2018 | StateDroid: Stateful Detection of Stealthy Attacks in Android Apps via Horn-Clause Verification. | Mohsin Junaid, Jiang Ming, David Chenho Kung |
| 2018 | TIFF: Using Input Type Inference To Improve Fuzzing. | Vivek Jain, Sanjay Rawat, Cristiano Giuffrida, Herbert Bos |
| 2018 | An Historical Analysis of the SEAndroid Policy Evolution. | Bumjin Im, Ang Chen, Dan S. Wallach |
| 2018 | Identifying Input-Dependent Jumps from Obfuscated Execution using Dynamic Data Flow Graphs. | Joonhyung Hwang, Taisook Han |
| 2018 | Now You See Me: Real-time Dynamic Function Call Detection. | Franck de Gor, Sanjay Rawat, Dennis Andriesse, Herbert Bos, Roland Groz |
| 2018 | On-Device Detection via Anomalous Environmental Factors. | Adam M. Gautier, Todd R. Andel, Ryan Benton |
| 2018 | Towards Automated Generation of Exploitation Primitives for Web Browsers. | Behrad Garmany, Martin Stoffel, Robert Gawlik, Philipp Koppe, Tim Blazytko, Thorsten Holz |