| 2003 | Scalable and Efficient PKI for Inter-Organizational Communication. | Arne Ansper, Ahto Buldas, Margus Freudenthal, Jan Willemson |
| 2003 | Log Correlation for Intrusion Detection: A Proof of Concept. | Cristina L. Abad, Jed Taylor, Cigdem Sengul, William Yurcik, Yuanyuan Zhou, Kenneth E. Rowe |
| 2002 | Did You Ever Have To Make Up Your Mind? What Notes Users Do When Faced With A Security Decision. | Mary Ellen Zurko, Charlie Kaufman, Katherine Spanbauer, Chuck Bassett |
| 2002 | Enforcing Resource Bound Safety for Mobile SNMP Agents. | Weijiang Yu, Aloysius K. Mok |
| 2002 | Protecting Web Usage of Credit Cards Using One-Time Pad Cookie Encryption. | Donghua Xu, Chenghuai Lu, Andr L. M. dos Santos |
| 2002 | Throttling Viruses: Restricting propagation to defeat malicious mobile code. | Matthew M. Williamson |
| 2002 | A Toolkit for Detecting and Analyzing Malicious Software. | Michael Weber, Matthew Schmid, Michael Schatz, David Geyer |
| 2002 | GOSSIB vs. IP Traceback Rumors. | Marcel Waldvogel |
| 2002 | Composable Tools For Network Discovery and Security Analysis. | Giovanni Vigna, Fredrik Valeur, Jingyu Zhou, Richard A. Kemmerer |
| 2002 | Regulating E-Commerce through Certified Contracts. | Victoria Ungureanu |
| 2002 | Evaluating the Impact of Automated Intrusion Response Mechanisms. | Thomas Toth, Christopher Krgel |
| 2002 | Themes and Highlights of the New Security Paradigms Workshop 2002. | Cristina Serban, O. Sami Saydjari |
| 2002 | Safe Virtual Execution Using Software Dynamic Translation. | Kevin Scott, Jack W. Davidson |
| 2002 | Protecting Data from Malicious Software. | Matthew Schmid, Frank Hill, Anup K. Ghosh |
| 2002 | A Framework for Organisational Control Principles. | Andreas Schaad, Jonathan D. Moffett |
| 2002 | LOCK : An Historical Perspective. | O. Sami Saydjari |
| 2002 | Access Control for Active Spaces. | Geetanjali Sampemane, Prasad Naldurg, Roy H. Campbell |
| 2002 | Representing TCP/IP Connectivity For Topological Analysis of Network Security. | Ronald W. Ritchey, Brian O'Berry, Steven Noel |
| 2002 | Reusable Components for Developing Security-Aware Application. | Stefan Probst, Wolfgang Emayr, Edgar R. Weippl |
| 2002 | A Security Architecture for Object-Based Distributed Systems. | Bogdan C. Popescu, Maarten van Steen, Andrew S. Tanenbaum |
| 2002 | A Financial Institution's Legacy Mainframe Access Control System in Light of the Proposed NIST RBAC Standard. | Andrew D. Marshall |
| 2002 | Architectures for Intrusion Tolerant Database Systems. | Peng Liu |
| 2002 | Intrusion Detection: Current Capabilities and Future Directions. | Karl N. Levitt |
| 2002 | Security Architecture of the Austrian Citizen Card Concept. | Herbert Leitold, Arno Hollosi, Reinhard Posch |
| 2002 | Detecting and Defending against Web-Server Fingerprinting. | Dustin Lee, Jeff Rowe, Calvin Ko, Karl N. Levitt |