5 papers
Automated Detection of Configuration-Specific Security Vulnerabilities via Patch Analysis
Felipe de Sant'Anna Paixão, Joanna C. S. Santos, Paulo Anselmo da Mota Silveira Neto +3
We study how security patches in highly configurable C/C++ systems map onto the space of compile-time variants. We formalize the Vulnerability Impact Condition (VIC) - a Boolean pr…
Learning Filters with Certainty
Yuval Banoun, Daniel Sadoc Menasche, Ori Rottenstreich
Hash-based data structures such as Bloom filters are widely used in network systems for tasks including caching, anomaly detection, and machine learning pipelines. They typically p…
Characterizing and Modeling the GitHub Security Advisories Review Pipeline
Claudio Segal, Paulo Segal, Carlos Eduardo Banjar +8
GitHub Security Advisories (GHSA) have become a central component of open-source vulnerability disclosure and are widely used by developers and security tools. A distinctive featur…
Visualizing Coalition Formation: From Hedonic Games to Image Segmentation
Pedro Henrique de Paula França, Lucas Lopes Felipe, Daniel Sadoc Menasché
We propose image segmentation as a visual diagnostic testbed for coalition formation in hedonic games. Modeling pixels as agents on a graph, we study how a granularization paramete…
A Transfer Learning Approach to Unveil the Role of Windows Common Configuration Enumerations in IEC 62443 Compliance
Miguel Bicudo, Estevão Rabello, Daniel Menasché +4
Industrial control systems (ICS) depend on highly heterogeneous environments where Linux, proprietary real-time operating systems, and Windows coexist. Although the IEC 62443-3-3 s…