| 2015 | Towards Analyzing the Input Validation Vulnerabilities associated with Android System Services. | Chen Cao, Neng Gao, Peng Liu, Ji Xiang |
| 2015 | Entity-Based Access Control: supporting more expressive access control policies. | Jasper Bogaerts, Maarten Decat, Bert Lagaisse, Wouter Joosen |
| 2015 | Proactive Security Analysis of Changes in Virtualized Infrastructures. | Sren Bleikertz, Carsten Vogel, Thomas Gro, Sebastian Mdersheim |
| 2015 | Using Channel State Information for Tamper Detection in the Internet of Things. | Ibrahim Ethem Bagci, Utz Roedig, Ivan Martinovic, Matthias Schulz, Matthias Hollick |
| 2015 | Is Bigger Better? Comparing User-Generated Passwords on 3x3 vs. 4x4 Grid Sizes for Android's Pattern Unlock. | Adam J. Aviv, Devon Budzitowski, Ravi Kuber |
| 2015 | ErsatzPasswords: Ending Password Cracking and Detecting Password Leakage. | Mohammed H. Almeshekah, Christopher N. Gutierrez, Mikhail J. Atallah, Eugene H. Spafford |
| 2014 | New models of cache architectures characterizing information leakage from cache side channels. | Tianwei Zhang, Ruby B. Lee |
| 2014 | A taste of tweets: reverse engineering Twitter spammers. | Chao Yang, Jialong Zhang, Guofei Gu |
| 2014 | Intellectual Property Protection in Additive Layer Manufacturing: Requirements for Secure Outsourcing. | Mark Yampolskiy, Todd R. Andel, Jeffrey Todd McDonald, William Bradley Glisson, Alec Yasinsac |
| 2014 | SILK: high level of abstraction leakage simulator for side channel analysis. | Nikita Veshchikov |
| 2014 | Advanced Wi-Fi attacks using commodity hardware. | Mathy Vanhoef, Frank Piessens |
| 2014 | Lightweight authentication of freshness in outsourced key-value stores. | Yuzhe Richard Tang, Ting Wang, Ling Liu, Xin Hu, Jiyong Jang |
| 2014 | Interrupt-oriented bugdoor programming: a minimalist approach to bugdooring embedded systems firmware. | Samuel Junjie Tan, Sergey Bratus, Travis Goodspeed |
| 2014 | Design and implementation of an Android host-based intrusion prevention system. | Mingshen Sun, Min Zheng, John C. S. Lui, Xuxian Jiang |
| 2014 | ICE: a passive, high-speed, state-continuity scheme. | Raoul Strackx, Bart Jacobs, Frank Piessens |
| 2014 | Relation extraction for inferring access control rules from natural language artifacts. | John Slankas, Xusheng Xiao, Laurie A. Williams, Tao Xie |
| 2014 | Towards a scalable resource-driven approach for detecting repackaged Android applications. | Yuru Shao, Xiapu Luo, Chenxiong Qian, Pengfei Zhu, Lei Zhang |
| 2014 | Taking two-factor to the next level: protecting online poker, banking, healthcare and other applications. | Aviel D. Rubin |
| 2014 | Assisted deletion of related content. | Hubert Ritzdorf, Nikolaos Karapanos, Srdjan Capkun |
| 2014 | Multi-App Security Analysis with FUSE: Statically Detecting Android App Collusion. | Tristan Ravitch, E. Rogan Creswick, Aaron Tomb, Adam Foltzer, Trevor Elliott, Ledah Casburn |
| 2014 | Network dialog minimization and network dialog diffing: two novel primitives for network security applications. | M. Zubair Rafique, Juan Caballero, Christophe Huygens, Wouter Joosen |
| 2014 | A Framework for Understanding Dynamic Anti-Analysis Defenses. | Jing Qiu, Babak Yadegari, Brian Johannesmeyer, Saumya Debray, Xiaohong Su |
| 2014 | IntFlow: improving the accuracy of arithmetic error detection using information flow tracking. | Marios Pomonis, Theofilos Petsios, Kangkook Jee, Michalis Polychronakis, Angelos D. Keromytis |
| 2014 | Leveraging semantic signatures for bug search in binary programs. | Jannik Pewny, Felix Schuster, Lukas Bernhard, Thorsten Holz, Christian Rossow |
| 2014 | It's the psychology stupid: how heuristics explain software vulnerabilities and how priming can illuminate developer's blind spots. | Daniela Oliveira, Marissa Rosenthal, Nicole Morin, Kuo-Chuan (Martin) Yeh, Justin Cappos, Yanyan Zhuang |