activity
20172022
most citedA Survey of Binary Code Similarity

16 citations · 18 across the 3 of their papers we have counts for

collaborators

8 papers

cs.CR20221 cited

A Deep Dive into VirusTotal: Characterizing and Clustering a Massive File Feed

Kevin van Liebergen, Juan Caballero, Platon Kotzias +1

Online scanners analyze user-submitted files with a large number of security tools and provide access to the analysis results. As the most popular online scanner, VirusTotal (VT) i…

cs.CR20201 cited

Malware Traffic Classification: Evaluation of Algorithms and an Automated Ground-truth Generation Pipeline

Syed Muhammad Kumail Raza, Juan Caballero

Identifying threats in a network traffic flow which is encrypted is uniquely challenging. On one hand it is extremely difficult to simply decrypt the traffic due to modern encrypti…

cs.CR2020

How Did That Get In My Phone? Unwanted App Distribution on Android Devices

Platon Kotzias, Juan Caballero, Leyla Bilge

Android is the most popular operating system with billions of active devices. Unfortunately, its popularity and openness makes it attractive for unwanted apps, i.e., malware and po…

cs.CR2020

AVClass2: Massive Malware Tag Extraction from AV Labels

Silvia Sebastián, Juan Caballero

Tags can be used by malware repositories and analysis services to enable searches for samples of interest across different dimensions. Automatically extracting tags from AV labels…

cs.CR201916 cited

A Survey of Binary Code Similarity

Irfan Ul Haq, Juan Caballero

Binary code similarity approaches compare two or more pieces of binary code to identify their similarities and differences. The ability to compare binary code enables many real-wor…

cs.CR2019

Cross-Origin State Inference (COSI) Attacks: Leaking Web Site States through XS-Leaks

Avinash Sudhodanan, Soheil Khodayari, Juan Caballero

In a Cross-Origin State Inference (COSI) attack, an attacker convinces a victim into visiting an attack web page, which leverages the cross-origin interaction features of the victi…