47 citations · 50 across the 4 of their papers we have counts for
6 papers · 1 filter
Security Header Fields in HTTP Clients
Pascal Gadient, Oscar Nierstrasz, Mohammad Ghafari
HTTP headers are commonly used to establish web communications, and some of them are relevant for security. However, we have only little information about the usage and support of…
Phish What You Wish
Pascal Gadient, Pascal Gerig, Oscar Nierstrasz +1
IT professionals have no simple tool to create phishing websites and raise the awareness of users. We developed a prototype that can dynamically mimic websites by using enriched sc…
Security Smells Pervade Mobile App Servers
Pascal Gadient, Marc-Andrea Tarnutzer, Oscar Nierstrasz +1
[Background] Web communication is universal in cyberspace, and security risks in this domain are devastating. [Aims] We analyzed the prevalence of six security smells in mobile app…
Security Smells in Android
Mohammad Ghafari, Pascal Gadient, Oscar Nierstrasz
The ubiquity of smartphones, and their very broad capabilities and usage, make the security of these devices tremendously important. Unfortunately, despite all progress in security…
Web APIs in Android through the Lens of Security
Pascal Gadient, Mohammad Ghafari, Marc-Andrea Tarnutzer +1
Web communication has become an indispensable characteristic of mobile apps. However, it is not clear what data the apps transmit, to whom, and what consequences such transmissions…
Security Code Smells in Android ICC
Pascal Gadient, Mohammad Ghafari, Patrick Frischknecht +1
Android Inter-Component Communication (ICC) is complex, largely unconstrained, and hard for developers to understand. As a consequence, ICC is a common source of security vulnerabi…