2008 |
8 | EE | William G. J. Halfond,
Alessandro Orso:
Automated identification of parameter mismatches in web applications.
SIGSOFT FSE 2008: 181-191 |
7 | EE | William G. J. Halfond,
Alessandro Orso,
Pete Manolios:
WASP: Protecting Web Applications Using Positive Tainting and Syntax-Aware Evaluation.
IEEE Trans. Software Eng. 34(1): 65-81 (2008) |
2007 |
6 | EE | William G. J. Halfond,
Alessandro Orso:
Improving test case generation for web applications using automated interface discovery.
ESEC/SIGSOFT FSE 2007: 145-154 |
2006 |
5 | EE | William G. J. Halfond,
Alessandro Orso:
Command-Form Coverage for Testing Database Applications.
ASE 2006: 69-80 |
4 | EE | William G. J. Halfond,
Alessandro Orso:
Preventing SQL injection attacks using AMNESIA.
ICSE 2006: 795-798 |
3 | EE | William G. J. Halfond,
Alessandro Orso,
Panagiotis Manolios:
Using positive tainting and syntax-aware evaluation to counter SQL injection attacks.
SIGSOFT FSE 2006: 175-185 |
2005 |
2 | EE | William G. J. Halfond,
Alessandro Orso:
AMNESIA: analysis and monitoring for NEutralizing SQL-injection attacks.
ASE 2005: 174-183 |
1 | EE | William G. J. Halfond,
Alessandro Orso:
Combining static analysis and runtime monitoring to counter SQL-injection attacks.
ACM SIGSOFT Software Engineering Notes 30(4): 1-7 (2005) |