Deprecated: The each() function is deprecated. This message will be suppressed on further calls in /home/zhenxiangba/zhenxiangba.com/public_html/phproxy-improved-master/index.php on line 456 Andrei Sabelfeld's selected publications
Measuring Login Webpage Security, with Steven Van Acker and Daniel Hausknecht.
In
Proceedings of the ACM Symposium on Applied Computing (SAC), Marrakech, Morocco, April 2017.
Privacy-Preserving Location-Proximity for Mobile Apps, with Simonas Stirbys, Omar Abu Nabah, and Per Hallgren.
In
Proceedings of the Parallel, Distributed, and Network-Based Processing (PDP), St. Petersburg, Russia, March 2017.
Location-enhanced Authentication using the IoT, with Ioannis
Agadakos, Per Hallgren, and Georgios Portokalidis.
In Proceedings of the Annual Computer Security Applications
Conference (ACSAC), Los Angeles, CA, USA, December 2016.
MaxPace: Speed-Constrained Location Queries, with Per Hallgren and Martin Ochoa.
In Proceedings of the IEEE Conference on Communications and Network Security (CNS), Philadelphia, PA, USA, October 2016.
Let's Face It: Faceted Values for Taint Tracking, with Daniel Schoepe, Musard Balliu, and Frank Piessens.
In
Proceedings of the European Symposium on Research in Computer Security (ESORICS), Greece, September 2016.
Data Exfiltration in the Face of CSP, with Steven Van Acker and Daniel Hausknecht.
In
Proceedings of the ACM Asia Conference on
Computer and Communications Security (ASIACCS), Xi'an, China, May 2016.
Progress-Sensitive Security for SPARK, with Willard Rafnsson and Deepak Garg.
In
Proceedings of the International Symposium on
Engineering Secure Software and Systems (ESSoS), London, UK, April 2016.
Web Application Security using JSFlow, with Daniel Hedin.
In
Proceedings of the International Symposium on Symbolic and Numeric Algorithms for Scientific Computing (SYNASC), Romania, March 2016.
Explicit Secrecy: A Policy for Taint
Tracking, with Daniel Schoepe, Musard Balliu, and Benjamin C. Pierce.
In
Proceedings of the IEEE European
Symposium on Security
and Privacy (EuroS&P;), Saarbrücken, Germany, March 2016.
JSLINQ: Building Secure Applications
across Tiers, with Musard Balliu, Benjamin Liebe, and Daniel Schoepe.
In
Proceedings of the ACM Conference on Data and Applications Security and Privacy (CODASPY), New Orleans, LA, March 2016.
Understanding and Enforcing Opacity, with Daniel Schoepe. In
Proceedings of the IEEE Computer Security Foundations
Symposium (CSF), Verona, Italy, July
2015.
Polyglots: Crossing Origins by Crossing Formats, with Jonas
Magazinius and Billy K. Rios. In Proceedings of the ACM
Conference on Computer and Communications Security (CCS),
Berlin, Germany, November
2013.
Information-Flow Security for a Core of JavaScript, with Daniel
Hedin. In Proceedings of the IEEE Computer Security Foundations
Symposium, Harvard University, Cambridge MA, June 25-27,
2012. IEEE Computer Society Press.
Securing Interactive Programs, with Willard Rafnsson and Daniel
Hedin. In Proceedings of the IEEE Computer Security Foundations
Symposium, Harvard University, Cambridge MA, June 25-27,
2012. IEEE Computer Society Press.
Decentralized Delimited Release, with
Jonas Magazinius and Aslan Askarov. In Proceedings of the Asian
Symposium on Programming Languages and Systems (APLAS),
Kenting, Taiwan, December 2011. LNCS,
Springer-Verlag.
Multi-run security,
with Arnar Birgisson.
In Proceedings of the
European Symposium on Research in Computer Security
(ESORICS), Leuven, Belgium, September 2011, LNCS,
Springer-Verlag.
Capabilities for information flow,
with Arnar Birgisson and Alejandro Russo. In ACM SIGPLAN
Workshop on Programming Languages and Analysis for Security,
San Jose, CA, June 2011.
Unifying Facets of Information Integrity,
with Arnar Birgisson and Alejandro Russo. In Proceedings of the International Conference on Information Systems Security (ICISS), Gandhinagar, India, December
2010, LNCS, Springer-Verlag.
On-the-fly Inlining of Dynamic Security
Monitors,
with Jonas Magazinius and Alejandro Russo. In Proceedings of the
IFIP International Information Security Conference (SEC), Brisbane, Australia, September 2010.
Dynamic vs. Static Flow-Sensitive Security Analysis, with Alejandro Russo. In Proceedings of the
IEEE Computer Security Foundations Symposium,
Edinburgh, UK, July 17-19, 2010. IEEE
Computer Society Press.
Security of Multithreaded Programs by Compilation, with
Gilles Barthe, Tamara Rezk, and Alejandro Russo. In ACM
Transactions on Information and System Security (TISSEC). 13:3(21:1-21:32), July 2010.
Securing Class Initialization,
with Keiko
Nakata. In Proceedings of the IFIP International
Conference on Trust Management (IFIPTM), Morioka, Iwate,
Japan, June 2010, LNCS, Springer-Verlag.
A Lattice-based Approach to Mashup Security, with
Jonas Magazinius and Aslan Askarov. In Proceedings of the ACM
Symposium on Information, Computer and Communications Security
(ASIACCS), Beijing, China, April 2010.
Tracking Information Flow in Dynamic Tree Structures, with
Alejandro Russo and Andrey Chudnov. In Proceedings of the
European Symposium on Research in Computer Security
(ESORICS), Saint Malo, France, September 2009, LNCS,
Springer-Verlag.
Securing Timeout Instructions in Web Applications, with Alejandro Russo. In Proceedings of the
IEEE Computer Security Foundations Symposium,
Port Jefferson, NY, July 8-10, 2009. IEEE
Computer Society Press.
Declassification:
Dimensions and Principles, with David Sands. Journal of
Computer Security, 17:5(517-548), IOS
Press. Accepted: December 2006; Final version: February 2007; Publication: January 2009.
Termination-Insensitive Noninterference Leaks More Than Just a Bit, with
Aslan Askarov, Sebastian Hunt, and David Sands. In Proceedings of the
13th European Symposium on Research in Computer Security
(ESORICS), Malaga, Spain, October 2008, LNCS 5283,
Springer-Verlag.
Cryptographically-Masked Flows, with Aslan Askarov and Daniel
Hedin.
In Theoretical Computer Science, 402(2-3):82-101, August
2008, Elsevier.
Closing Internal Timing Channels by Transformation, with
Alejandro Russo, John Hughes, and David Naumann.
In Proceedings of the 11th Annual Asian Computing Science
Conference,
Tokyo, Japan, December 6-8, 2006, Revised Selected Papers, LNCS 4435, Springer-Verlag. January 2008.
Security of Multithreaded Programs by Compilation, with
Gilles Barthe, Tamara Rezk, and Alejandro Russo. In Proceedings of the
12th European Symposium on Research in Computer Security
(ESORICS), Dresden, Germany, September 24-26, 2007, LNCS 4734,
Springer-Verlag.
Cryptographically-Masked Flows, with Aslan Askarov and Daniel
Hedin.
In Proceedings of the International Static Analysis Symposium,
Seoul, Korea, August 29-31, 2006. LNCS 4134, Springer-Verlag.
Security for Multithreaded Programs under Cooperative
Scheduling, with Alejandro Russo. In Proceedings of Andrei
Ershov International Conference on Perspectives of System
Informatics, Akademgorodok, Novosibirsk, Russia, June 27-30,
2006. LNCS 4378, Springer-Verlag.
Dimensions and Principles of
Declassification, with David Sands. In Proceedings of the
18th IEEE Computer Security Foundations Workshop,
Aix-en-Provence, France, June 20-22, 2005. IEEE
Computer Society Press.
Bridging Language-Based and Process Calculi Security, with
Riccardo Focardi and Sabina Rossi. In Proceedings of Foundations of Software Science and Computation Structures
(FOSSACS'05), pages 299-315, Edinburgh, Scotland, April 2-8, 2005, LNCS 3441,
Springer-Verlag.
A Model for Delimited Information Release, with Andrew
C. Myers. In Proceedings of the 2003 International Symposium on
Software Security (ISSS'03), pages 174-191, Tokyo, Japan, November 4-6,
2003. LNCS 3233, Springer-Verlag. October 2004.
Enforcing Robust Declassification, with Andrew C. Myers and
Steve Zdancewic. In Proceedings of the 17th IEEE Computer Security Foundations Workshop, Pacific Grove, California, June 28-30, 2004. IEEE
Computer Society Press.
Confidentiality
for Multithreaded Programs via Bisimulation. In Proceedings of Andrei
Ershov 5th International Conference on Perspectives of System
Informatics, Akademgorodok, Novosibirsk, Russia, July 9-12, 2003. LNCS
2890, Springer-Verlag.
Language-Based
Information-Flow Security (ps, pdf) with Andrew C.
Myers. IEEE
Journal on Selected Areas in Communications, 21(1):5-19, January 2003.
This is a survey article on language-based techniques for the
specification and enforcement of confidentiality properties. The BibTeX file
with references made in the survey is available here.