| 2014 | Structure Matters - A New Approach for Data Flow Tracking. | Enrico Lovat, Florian Kelbert |
| 2014 | Stopping a Rapid Tornado with a Puff. | Jos Lopes, Nuno Neves |
| 2014 | Automating Efficient RAM-Model Secure Computation. | Chang Liu, Yan Huang, Elaine Shi, Jonathan Katz, Michael W. Hicks |
| 2014 | Improving Hard Disk Contention-Based Covert Channel in Cloud Computing. | Bartosz Lipinski, Wojciech Mazurczyk, Krzysztof Szczypiorski |
| 2014 | Hunting the Red Fox Online: Understanding and Detection of Mass Redirect-Script Injections. | Zhou Li, Sumayah A. Alrwais, XiaoFeng Wang, Eihal Alowaisheq |
| 2014 | When HTTPS Meets CDN: A Case of Authentication in Delegated Service. | Jinjin Liang, Jian Jiang, Hai-Xin Duan, Kang Li, Tao Wan, Jianping Wu |
| 2014 | Parsifal: A Pragmatic Solution to the Binary Parsing Problems. | Olivier Levillain |
| 2014 | From Zygote to Morula: Fortifying Weakened ASLR on Android. | Byoungyoung Lee, Long Lu, Tielei Wang, Taesoo Kim, Wenke Lee |
| 2014 | Stealing Webpages Rendered on Your Browser by Exploiting GPU Vulnerabilities. | Sangho Lee, Youngsok Kim, Jangwoo Kim, Jong Kim |
| 2014 | Architecture, Workflows, and Prototype for Stateful Data Usage Control in Cloud. | Aliaksandr Lazouski, Gaetano Mancini, Fabio Martinelli, Paolo Mori |
| 2014 | SoK: Automated Software Diversity. | Per Larsen, Andrei Homescu, Stefan Brunthaler, Michael Franz |
| 2014 | Formal Analysis of Chaumian Mix Nets with Randomized Partial Checking. | Ralf Ksters, Tomasz Truderung, Andreas Vogt |
| 2014 | Automated Analysis of Security Protocols with Global State. | Steve Kremer, Robert Knnemann |
| 2014 | Using Existing Hardware Services for Malware Detection. | Sarat Kompalli |
| 2014 | RAPPD: A Language and Prototype for Recipient-Accountable Private Personal Data. | Yuan J. Kang, Allan M. Schiffman, Jeff Shrager |
| 2014 | Combining Generated Data Models with Formal Invalidation for Insider Threat Analysis. | Florian Kammller, Christian W. Probst |
| 2014 | SoK: Introspections on Trust and the Semantic Gap. | Bhushan Jain, Mirza Basim Baig, Dongli Zhang, Donald E. Porter, Radu Sion |
| 2014 | Mind Your Language(s): A Discussion about Languages and Security. | ric Jaeger, Olivier Levillain |
| 2014 | P2U: A Privacy Policy Specification Language for Secondary Data Sharing and Usage. | Johnson Iyilade, Julita Vassileva |
| 2014 | The Tricks of the Trade: What Makes Spam Campaigns Successful? | Jane Iedemska, Gianluca Stringhini, Richard A. Kemmerer, Christopher Kruegel, Giovanni Vigna |
| 2014 | Asset Risk Scoring in Enterprise Network with Mutually Reinforced Reputation Propagation. | Xin Hu, Ting Wang, Marc Ph. Stoecklin, Douglas Lee Schales, Jiyong Jang, Reiner Sailer |
| 2014 | Analyzing Forged SSL Certificates in the Wild. | Lin-Shung Huang, Alex Rice, Erling Ellingsen, Collin Jackson |
| 2014 | ANONIZE: A Large-Scale Anonymous Survey System. | Susan Hohenberger, Steven A. Myers, Rafael Pass, Abhi Shelat |
| 2014 | DF-C2M2: A Capability Maturity Model for Digital Forensics Organisations. | Ebrahim Hamad Al Hanaei, Awais Rashid |
| 2014 | Analysis of Unintentional Insider Threats Deriving from Social Engineering Exploits. | Frank L. Greitzer, Jeremy R. Strozer, Sholom Cohen, Andrew P. Moore, David A. Mundie, Jennifer Cowley |