HornDroid: Practical and sound static analysis of Android applications by SMT solving S Calzavara, I Grishchenko, M Maffei 2016 IEEE European Symposium on Security and Privacy (EuroS&P), 47-62, 2016 | 57 | 2016 |
Surviving the web: A journey into web session security S Calzavara, R Focardi, M Squarcina, M Tempesta ACM Computing Surveys (CSUR) 50 (1), 1-34, 2017 | 52 | 2017 |
Content security problems? evaluating the effectiveness of content security policy in the wild S Calzavara, A Rabitti, M Bugliesi Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications …, 2016 | 49 | 2016 |
Formal methods for web security M Bugliesi, S Calzavara, R Focardi Journal of Logical and Algebraic Methods in Programming 87, 110-126, 2017 | 43 | 2017 |
CookiExt: Patching the browser against session hijacking attacks M Bugliesi, S Calzavara, R Focardi, W Khan Journal of Computer Security 23 (4), 509-537, 2015 | 42 | 2015 |
Lintent: Towards security type-checking of Android applications M Bugliesi, S Calzavara, A Spanò Formal techniques for distributed systems, 289-304, 2013 | 39 | 2013 |
Quite a mess in my cookie jar! Leveraging machine learning to protect web authentication S Calzavara, G Tolomei, M Bugliesi, S Orlando Proceedings of the 23rd international conference on World wide web, 189-200, 2014 | 37 | 2014 |
Semantics-based analysis of content security policy deployment S Calzavara, A Rabitti, M Bugliesi ACM Transactions on the Web (TWEB) 12 (2), 1-36, 2018 | 31 | 2018 |
A supervised learning approach to protect client authentication on the web S Calzavara, G Tolomei, A Casini, M Bugliesi, S Orlando ACM Transactions on the Web (TWEB) 9 (3), 1-30, 2015 | 28 | 2015 |
Provably sound browser-based enforcement of web session integrity M Bugliesi, S Calzavara, R Focardi, W Khan, M Tempesta 2014 IEEE 27th Computer Security Foundations Symposium, 366-380, 2014 | 27 | 2014 |
Automatic and robust client-side protection for cookie-based sessions M Bugliesi, S Calzavara, R Focardi, W Khan International Symposium on Engineering Secure Software and Systems, 161-178, 2014 | 27 | 2014 |
Postcards from the post-http world: Amplification of https vulnerabilities in the web ecosystem S Calzavara, R Focardi, M Nemec, A Rabitti, M Squarcina 2019 IEEE Symposium on Security and Privacy (SP), 281-298, 2019 | 25 | 2019 |
Complex security policy? a longitudinal analysis of deployed content security policies S Roth, T Barron, S Calzavara, N Nikiforakis, B Stock Proceedings of the 27th Network and Distributed System Security Symposium (NDSS), 2020 | 24 | 2020 |
Mitch: A machine learning approach to the black-box detection of CSRF vulnerabilities S Calzavara, M Conti, R Focardi, A Rabitti, G Tolomei 2019 IEEE European Symposium on Security and Privacy (EuroS&P), 528-543, 2019 | 23 | 2019 |
Treant: training evasion-aware decision trees S Calzavara, C Lucchese, G Tolomei, SA Abebe, S Orlando Data Mining and Knowledge Discovery 34 (5), 1390-1420, 2020 | 21 | 2020 |
On compliance of cookie purposes with the purpose specification principle I Fouad, C Santos, F Al Kassar, N Bielova, S Calzavara 2020 IEEE European Symposium on Security and Privacy Workshops (EuroS&PW …, 2020 | 20 | 2020 |
Adversarial training of gradient-boosted decision trees S Calzavara, C Lucchese, G Tolomei Proceedings of the 28th ACM international conference on information and …, 2019 | 20 | 2019 |
Resource-aware authorization policies for statically typed cryptographic protocols M Bugliesi, S Calzavara, F Eigner, M Maffei 2011 IEEE 24th Computer Security Foundations Symposium, 83-98, 2011 | 20 | 2011 |
Security protocol specification and verification with AnBx M Bugliesi, S Calzavara, S Mödersheim, P Modesti Journal of Information Security and Applications 30, 46-63, 2016 | 17 | 2016 |
WPSE: Fortifying Web Protocols via Browser-Side Security Monitoring S Calzavara, R Focardi, M Maffei, C Schneidewind, M Squarcina, ... 27th USENIX Security Symposium (USENIX Security 18), 1493-1510, 2018 | 16 | 2018 |