Search results

  1. WebWitness: Investigating, Categorizing, and Mitigating Malware Download Paths

    attacks occur via the browser, typically due to social engineering and driveby downloads. In this paper ...

    arnold - December 11, 2021 - 8:59 pm

  2. Vulnerability Disclosure in the Age of Social Media: Exploiting Twitter for Predicting Real-World Exploits

    Carl Sabottke, Octavian Suciu, and Tudor Dumitraș, University of Maryland In recent years, the number of software vulnerabilities discovered has grown significantly. This creates a need for prioritizing the response to new disclosures by assessing which v ...

    arnold - December 11, 2021 - 8:59 pm

  3. Needles in a Haystack: Mining Information from Public Dynamic Analysis Sandboxes for Malware Intelligence

    refer to similar cases as malware developments.  In this paper, we propose a novel methodology to ...

    arnold - December 11, 2021 - 8:59 pm

  4. Cache Template Attacks: Automating Attacks on Inclusive Last-Level Caches

    execution depending on secret information. In this paper, we present Cache Template Attacks. This generic ...

    arnold - December 11, 2021 - 9:29 pm

  5. A Placement Vulnerability Study in Multi-Tenant Public Clouds

    Venkatanathan Varadarajan, University of Wisconsin—Madison; Yinqian Zhang, The Ohio State University; Thomas Ristenpart, Cornell Tech; Michael Swift, University of Wisconsin—Madison Public infrastructure-as-a-service clouds, such as Amazon EC2, Google Com ...

    arnold - December 11, 2021 - 9:29 pm

  6. A Measurement Study on Co-residence Threat inside the Cloud

    Zhang Xu, College of William and Mary; Haining Wang, University of Delaware; Zhenyu Wu, NEC Laboratories America As the most basic cloud service model, Infrastructure as a Service (IaaS) has been widely used for serving the evergrowing computing demand du ...

    arnold - December 11, 2021 - 9:29 pm

  7. Experience with Rules-Based Programming for Distributed, Concurrent, Fault-Tolerant Code

    Ryan Stutsman, University of Utah; Collin Lee and John Ousterhout, Stanford University This paper ...

    michele - December 12, 2021 - 4:47 am

  8. Callisto-RTS: Fine-Grain Parallel Loops

    Tim Harris, Oracle Labs; Stefan Kaestle, ETH Zürich We introduce Callisto-RTS, a parallel runtime system designed for multi-socket shared-memory machines. It supports very fine-grained scheduling of parallel loops—down to batches of work of around 1K cycl ...

    michele - December 12, 2021 - 4:47 am

  9. Pyro: A Spatial-Temporal Big-Data Storage System

    existing solutions. This paper presents Pyro, a spatial-temporal bigdata storage system tailored for high ...

    michele - December 12, 2021 - 4:47 am

  10. Mahimahi: Accurate Record-and-Replay for HTTP

    University; James Mickens, Harvard University; Hari Balakrishnan, MIT CSAIL This paper presents Mahimahi, ...

    michele - December 12, 2021 - 5:18 am

  11. LPD: Low Power Display Mechanism for Mobile and Wearable Devices

    paper focuses on the energy conservation problem in display components, the importance of which is ...

    michele - December 12, 2021 - 5:18 am

  12. Boosting GPU Virtualization Performance with Hybrid Shadow Page Tables

    this paper first presents GMedia, a media benchmark, and uses it to analyze the causes of such ... table and shadow page table. To this end, this paper proposes gHyvi 1, an optimized GPU virtualization ...

    michele - December 12, 2021 - 5:18 am

  13. Identifying Trends in Enterprise Data Protection Systems

    case. In this paper, we present a study of 40,000 enterprise data protection systems deploying Symantec ...

    michele - December 12, 2021 - 5:18 am

  14. Lamassu: Storage-Efficient Host-Side Encryption

    from applying content-based features, such as deduplication, to the data. In this paper, we present ... the client application or the storage controller. In this paper, we lay out the architecture and ...

    michele - December 12, 2021 - 5:18 am

  15. WALDIO: Eliminating the Filesystem Journaling in Resolving the Journaling of Journal Anomaly

    Wongun Lee, Keonwoo Lee, and Hankeun Son, Hanyang University; Wook-Hee Kim and Beomseok Nam, Ulsan National Institute of Science and Technology; Youjip Won, Hanyang University This work is dedicated to resolve the Journaling of Journal Anomaly in Android ...

    michele - December 12, 2021 - 5:18 am

  16. Between Mutual Trust and Mutual Distrust: Practical Fine-grained Privilege Separation in Multithreaded Applications

    contamination or data leakage of other threads. The Arbiter system proposed in this paper explores the solution ...

    michele - December 12, 2021 - 5:18 am

  17. Hawk: Hybrid Datacenter Scheduling

    Kermarrec, Inria; Willy Zwaenepoel, École Polytechnique Fédérale de Lausanne (EPFL) This paper addresses the ...

    michele - December 12, 2021 - 5:18 am

  18. Slipstream: Automatic Interprocess Communication Optimization

    Will Dietz, Joshua Cranmer, Nathan Dautenhahn, and Vikram Adve, University of Illinois at Urbana-Champaign We present Slipstream, a userspace solution for transparently selecting efficient local transports in distributed applications written to use TCP/IP ...

    michele - December 12, 2021 - 5:18 am

  19. This is Not a Game: Early Observations on Using Alternate Reality Games for Teaching Security Concepts to First-Year Undergraduates

    engagement with course material. In this paper, we motivate the use of ARG characteristics to connect course ...

    arnold - December 11, 2021 - 10:37 pm

  20. Build It Break It: Measuring and Comparing Development Security

    Andrew Ruef, Michael Hicks, James Parker, Dave Levin, Atif Memon, Jandelyn Plane, and Piotr Mardziel, University of Maryland, College Park There is currently little evidence about what tools, methods, processes, and languages lead to secure software. We p ...

    arnold - December 11, 2021 - 10:37 pm

  21. Experiences with Honey-Patching in Active Cyber Security Education

    Frederico Araujo, Mohammad Shapouri, Sonakshi Pandey, and Kevin Hamlen, The University of Texas at Dallas Modern cyber security educational programs that emphasize technical skills often omit or struggle to effectively teach the increasingly important sci ...

    arnold - December 11, 2021 - 10:37 pm

  22. PRISM: Private Retrieval of the Internet’s Sensitive Metadata

    privacy concerns have played a role. In this paper, we ask whether differential privacy could provide the ...

    arnold - December 11, 2021 - 10:37 pm

  23. Developing Security Reputation Metrics for Hosting Providers

    worked through the serious methodological challenges that plague metric design. In this paper we present ...

    arnold - December 11, 2021 - 10:37 pm

  24. Finding Bugs in Source Code Using Commonly Available Development Metadata

    as number and type of defects injected by committer. This paper provides a method for leveraging ...

    arnold - December 11, 2021 - 10:37 pm

  25. Shadow-Bitcoin: Scalable Simulation via Direct Execution of Multi-Threaded Applications

    Andrew Miller, University of Maryland; Rob Jansen, U.S. Naval Research Laboratory We describe a new methodology that enables the direct execution of multi-threaded applications inside of Shadow, an existing parallel discrete-event network simulation frame ...

    arnold - December 11, 2021 - 10:37 pm

Pages