6 citations · 11 across the 3 of their papers we have counts for
5 papers
Context-Auditor: Context-sensitive Content Injection Mitigation
Faezeh Kalantari, Mehrnoosh Zaeifi, Tiffany Bao +3
Cross-site scripting (XSS) is the most common vulnerability class in web applications over the last decade. Much research attention has focused on building exploit mitigation defen…
Constructing Flow Graphs from Procedural Cybersecurity Texts
Kuntal Kumar Pal, Kazuaki Kashihara, Pratyay Banerjee +3
Following procedural texts written in natural languages is challenging. We must read the whole text to identify the relevant information or identify the instruction flows to comple…
Scam Pandemic: How Attackers Exploit Public Fear through Phishing
Marzieh Bitaab, Haehyun Cho, Adam Oest +9
As the COVID-19 pandemic started triggering widespread lockdowns across the globe, cybercriminals did not hesitate to take advantage of users' increased usage of the Internet and t…
BootKeeper: Validating Software Integrity Properties on Boot Firmware Images
Ronny Chevalier, Stefano Cristalli, Christophe Hauser +6
Boot firmware, like UEFI-compliant firmware, has been the target of numerous attacks, giving the attacker control over the entire system while being undetected. The measured boot m…
Rise of the HaCRS: Augmenting Autonomous Cyber Reasoning Systems with Human Assistance
Yan Shoshitaishvili, Michael Weissbacher, Lukas Dresel +4
As the size and complexity of software systems increase, the number and sophistication of software security flaws increase as well. The analysis of these flaws began as a manual ap…