| 2011 | A Data Mining Framework for Securing 3G Core Network from GTP Fuzzing Attacks. | Faraz Ahmed, M. Zubair Rafique, Muhammad Abulaish |
| 2010 | Strengthening XSRF Defenses for Legacy Web Applications Using Whitebox Analysis and Transformation. | Michelle Zhou, Prithvi Bisht, V. N. Venkatakrishnan |
| 2010 | Abstracting Audit Data for Lightweight Intrusion Detection. | Wei Wang, Xiangliang Zhang, Georgios Pitsilis |
| 2010 | WebAppArmor: A Framework for Robust Prevention of Attacks on Web Applications (Invited Paper). | V. N. Venkatakrishnan, Prithvi Bisht, Mike Ter Louw, Michelle Zhou, Kalpana Gondi, Karthik Thotta Ganesh |
| 2010 | Determining the Integrity of Application Binaries on Unsecure Legacy Machines Using Software Based Remote Attestation. | Raghunathan Srinivasan, Partha Dasgupta, Tushar Gohad, Amiya Bhattacharya |
| 2010 | Analyzing Explicit Information Flow. | Sriram K. Rajamani |
| 2010 | Stamp-It: A Method for Enhancing the Universal Verifiability of E2E Voting Systems. | Mridul Nandi, Stefan Popoveniuc, Poorvi L. Vora |
| 2010 | Toward Securely Programming the Internet. | Andrew C. Myers |
| 2010 | Mining RBAC Roles under Cardinality Constraint. | Ravi Kumar, Shamik Sural, Arobinda Gupta |
| 2010 | Security Rules | Mathieu Jaume |
| 2010 | A Persistent Public Watermarking of Relational Databases. | Raju Halder, Agostino Cortesi |
| 2010 | Attribution of Malicious Behavior. | Jonathon T. Giffin, Abhinav Srivastava |
| 2010 | Specification of History Based Constraints for Access Control in Conceptual Level. | Fathieh Faghih, Morteza Amini, Rasool Jalili |
| 2010 | Coverage Criteria for Automatic Security Testing of Web Applications. | Thanh-Binh Dao, Etsuya Shibayama |
| 2010 | Efficient Detection of the Return-Oriented Programming Malicious Code. | Ping Chen, Xiao Xing, Hao Han, Bing Mao, Li Xie |
| 2010 | Protecting and Restraining the Third Party in RFID-Enabled 3PL Supply Chains. | Shaoying Cai, Chunhua Su, Yingjiu Li, Robert H. Deng, Tieyan Li |
| 2010 | Unifying Facets of Information Integrity. | Arnar Birgisson, Alejandro Russo, Andrei Sabelfeld |
| 2010 | A Practical Generic Privacy Language. | Moritz Y. Becker, Alexander Malkis, Laurent Bussard |
| 2010 | ValueGuard: Protection of Native Applications against Data-Only Buffer Overflows. | Steven Van Acker, Nick Nikiforakis, Pieter Philippaerts, Yves Younan, Frank Piessens |
| 2009 | An E-Cash Based Implementation Model for Facilitating Anonymous Purchasing of Information Products. | Zhen Zhang, K. H. (Kane) Kim, Myeong-Ho Kang, Tianran Zhou, Byung-Ho Chung, Shin-Hyo Kim, Seok-Joon Lee |
| 2009 | Method-Specific Java Access Control via RMI Proxy Objects Using Annotations. | Jeff Zarnett, Patrick Lam, Mahesh V. Tripunitara |
| 2009 | Automatic Identification of Critical Data Items in a Database to Mitigate the Effects of Malicious Insiders. | Jonathan White, Brajendra Panda |
| 2009 | Remote Electronic Voting with Revocable Anonymity. | Matt Smart, Eike Ritter |
| 2009 | Quantitative Analysis of a Probabilistic Non-repudiation Protocol through Model Checking. | Indranil Saha, Debapriyay Mukhopadhyay |
| 2009 | Making Peer-Assisted Content Distribution Robust to Collusion Using Bandwidth Puzzles. | Michael K. Reiter, Vyas Sekar, Chad Spensky, Zhenghao Zhang |