| 2014 | PExy: The Other Side of Exploit Kits. | Giancarlo De Maio, Alexandros Kapravelos, Yan Shoshitaishvili, Christopher Kruegel, Giovanni Vigna |
| 2014 | AndRadar: Fast Discovery of Android Applications in Alternative Markets. | Martina Lindorfer, Stamatis Volanis, Alessandro Sisto, Matthias Neugschwandtner, Elias Athanasopoulos, Federico Maggi, Christian Platzer, Stefano Zanero, Sotiris Ioannidis |
| 2014 | Quantifiable Run-Time Kernel Attack Surface Reduction. | Anil Kurmus, Sergej Dechand, Rdiger Kapitza |
| 2014 | I Sensed It Was You: Authenticating Mobile Users with Sensor-Enhanced Keystroke Dynamics. | Cristiano Giuffrida, Kamil Majdanik, Mauro Conti, Herbert Bos |
| 2014 | Bee Master: Detecting Host-Based Code Injection Attacks. | Thomas Barabosch, Sebastian Eschweiler, Elmar Gerhards-Padilla |
| 2014 | Instruction-Level Steganography for Covert Trigger-Based Malware - (Extended Abstract). | Dennis Andriesse, Herbert Bos |
| 2013 | Exploring Discriminatory Features for Automated Malware Classification. | Guanhua Yan, Nathan Brown, Deguang Kong |
| 2013 | Preventing Backdoors in Server Applications with a Separated Software Architecture - (Short Paper). | Felix Schuster, Stefan Rster, Thorsten Holz |
| 2013 | ProVeX: Detecting Botnets with Encrypted Command and Control Channels. | Christian Rossow, Christian J. Dietrich |
| 2013 | PeerRush: Mining for Unwanted P2P Traffic. | Babak Rahbarinia, Roberto Perdisci, Andrea Lanzi, Kang Li |
| 2013 | Towards the Protection of Industrial Control Systems - Conclusions of a Vulnerability Analysis of Profinet IO. | Andreas Paul, Franka Schuster, Hartmut Knig |
| 2013 | Securing Legacy Firefox Extensions with SENTINEL. | Kaan Onarlioglu, Mustafa Battal, William K. Robertson, Engin Kirda |
| 2013 | HeapSentry: Kernel-Assisted Protection against Heap Overflows. | Nick Nikiforakis, Frank Piessens, Wouter Joosen |
| 2013 | Driving in the Cloud: An Analysis of Drive-by Download Operations and Abuse Reporting. | Antonio Nappa, M. Zubair Rafique, Juan Caballero |
| 2013 | SMS-Based One-Time Passwords: Attacks and Defense - (Short Paper). | Collin Mulliner, Ravishankar Borgaonkar, Patrick Stewin, Jean-Pierre Seifert |
| 2013 | Weaknesses in Defenses against Web-Borne Malware - (Short Paper). | Gen Lu, Saumya K. Debray |
| 2013 | PreparedJS: Secure Script-Templates for JavaScript. | Martin Johns |
| 2013 | Early Detection of Outgoing Spammers in Large-Scale Service Provider Networks. | Yehonatan Cohen, Daniel Gordon, Danny Hendler |
| 2012 | ADAM: An Automatic and Extensible Platform to Stress Test Android Anti-virus Systems. | Min Zheng, Patrick P. C. Lee, John C. S. Lui |
| 2012 | Experiments with Malware Visualization. | Yongzheng Wu, Roland H. C. Yap |
| 2012 | Understanding DMA Malware. | Patrick Stewin, Iurii Bystrov |
| 2012 | NetGator: Malware Detection Using Program Interactive Challenges. | Brian Schulte, Haris Andrianakis, Kun Sun, Angelos Stavrou |
| 2012 | BISSAM: Automatic Vulnerability Identification of Office Documents. | Thomas Schreck, Stefan Berger, Jan Gbel |
| 2012 | Large-Scale Analysis of Malware Downloaders. | Christian Rossow, Christian J. Dietrich, Herbert Bos |
| 2012 | Shedding Light on Log Correlation in Network Forensics Analysis. | Elias Raftopoulos, Matthias Egli, Xenofontas A. Dimitropoulos |