| 2007 | Static Analysis on x86 Executables for Preventing Automatic Mimicry Attacks. | Danilo Bruschi, Lorenzo Cavallaro, Andrea Lanzi |
| 2006 | A Fast Worm Scan Detection Tool for VPN Congestion Avoidance. | Arno Wagner, Thomas Dbendorfer, Roman Hiestand, Christoph Gldi, Bernhard Plattner |
| 2006 | Detecting Unknown Network Attacks Using Language Models. | Konrad Rieck, Pavel Laskov |
| 2006 | Network-Level Polymorphic Shellcode Detection Using Emulation. | Michalis Polychronakis, Kostas G. Anagnostakis, Evangelos P. Markatos |
| 2006 | Using Labeling to Prevent Cross-Service Attacks Against Smart Phones. | Collin Mulliner, Giovanni Vigna, David Dagon, Wenke Lee |
| 2006 | A Robust SNMP Based Infrastructure for Intrusion Detection and Response in Tactical MANETs. | Marko Jahnke, Jens Tlle, Sascha Lettgen, Michael Bussmann, Uwe Weddige |
| 2006 | Using Static Program Analysis to Aid Intrusion Detection. | Manuel Egele, Martin Szydlowski, Engin Kirda, Christopher Krgel |
| 2006 | Using Contextual Security Policies for Threat Response. | Herv Debar, Yohann Thomas, Nora Boulahia-Cuppens, Frdric Cuppens |
| 2006 | An SVM-Based Masquerade Detection Method with Online Update Using Co-occurrence Matrix. | Liangwen Chen, Masayoshi Aritsugi |
| 2006 | Using Type Qualifiers to Analyze Untrusted Integers and Detecting Security Flaws in C Programs. | Ebrima N. Ceesay, Jingmin Zhou, Michael Gertz, Karl N. Levitt, Matt Bishop |
| 2006 | Detecting Self-mutating Malware Using Control-Flow Graph Matching. | Danilo Bruschi, Lorenzo Martignoni, Mattia Monga |
| 2006 | Digital Forensic Reconstruction and the Virtual Security Testbed ViSe. | Andr rnes, Paul Haas, Giovanni Vigna, Richard A. Kemmerer |
| 2005 | Analyzing Memory Accesses in Obfuscated x86 Executables. | Michael Venable, Mohamed R. Chouchane, Md. Enamul Karim, Arun Lakhotia |
| 2005 | A Learning-Based Approach to the Detection of SQL Attacks. | Fredrik Valeur, Darren Mutz, Giovanni Vigna |
| 2005 | A Pointillist Approach for Comparing Honeypots. | Fabien Pouget, Thorsten Holz |
| 2005 | Hybrid Engine for Polymorphic Shellcode Detection. | Udo Payer, Peter Teufl, Mario Lamberger |
| 2005 | Improving the Efficiency of Misuse Detection. | Michael Meier, Sebastian Schmerl, Hartmut Knig |
| 2005 | Masquerade Detection via Customized Grammars. | Mario Latendresse |
| 2005 | METAL - A Tool for Extracting Attack Manifestations. | Ulf Larson, Emilie Lundin Barse, Erland Jonsson |
| 2005 | Detecting Malicious Code by Model Checking. | Johannes Kinder, Stefan Katzenbeisser, Christian Schallhart, Helmut Veith |
| 2005 | A Prevention Model for Algorithmic Complexity Attacks. | Suraiya Khan, Issa Traor |
| 2005 | TCPtransform: Property-Oriented TCP Traffic Transformation. | Seung-Sun Hong, Fiona Wong, Shyhtsun Felix Wu, Bjorn Lilja, Tony Y. Yohansson, Henric Johnson, Ame Nelsson |
| 2005 | Flow-Level Traffic Analysis of the Blaster and Sobig Worm Outbreaks in an Internet Backbone. | Thomas Dbendorfer, Arno Wagner, Theus Hossmann, Bernhard Plattner |
| 2005 | Enhancing the Accuracy of Network-Based Intrusion Detection with Host-Based Context. | Holger Dreger, Christian Kreibich, Vern Paxson, Robin Sommer |
| 2005 | Experiences Using Minos as a Tool for Capturing and Analyzing Novel Worms for Unknown Vulnerabilities. | Jedidiah R. Crandall, Shyhtsun Felix Wu, Frederic T. Chong |