4 papers
Vulnerabilities, Secrets and Misconfiguration in the Highest-Exposure Docker Hub Images
Cristhian Kapelinski, Beatriz Machado, Diego Kreutz
Docker Hub is the registry underneath most container deployments, and a flaw in a widely reused base image is inherited by every image built on it. Prior ecosystem-scale measuremen…
AnonShield: Scalable On-Premise Pseudonymization for CSIRT Vulnerability Data
Cristhian Kapelinski, Douglas Lautert, Beatriz Machado +2
We present AnonShield, a high-throughput, on-premise pseudonymization system that combines GPU-accelerated NER, streaming processing, caching, and schema-aware configuration. Evalu…
Structured Extraction of Vulnerabilities in OpenVAS and Tenable WAS Reports Using LLMs
Beatriz Machado, Douglas Lautert, Cristhian Kapelinski +1
This paper proposes an automated LLM-based method to extract and structure vulnerabilities from OpenVAS and Tenable WAS scanner reports, converting unstructured data into a standar…
AnonLFI 2.0: Extensible Architecture for PII Pseudonymization in CSIRTs with OCR and Technical Recognizers
Cristhian Kapelinski, Douglas Lautert, Beatriz Machado +1
This work presents AnonLFI 2.0, a modular pseudonymization framework for CSIRTs that uses HMAC SHA256 to generate strong and reversible pseudonyms, preserves XML and JSON structure…