| 2008 |
| 49 | | Andy Ozment,
Ketil Stølen:
Proceedings of the 4th ACM Workshop on Quality of Protection, QoP 2008, Alexandria, VA, USA, October 27, 2008
ACM 2008 |
| 48 | EE | Bjørnar Solhaug,
Ketil Stølen:
Compositional Refinement of Policies in UML - Exemplified for Access Control.
ESORICS 2008: 300-316 |
| 47 | EE | Fredrik Seehusen,
Ketil Stølen:
A Transformational Approach to Facilitate Monitoring of High-Level Policies.
POLICY 2008: 70-73 |
| 46 | EE | Atle Refsdal,
Ketil Stølen:
Extending UML Sequence Diagrams to Model Trust-dependent Behavior With the Aim to Support Risk Analysis.
Electr. Notes Theor. Comput. Sci. 197(2): 15-29 (2008) |
| 45 | EE | Atle Refsdal,
Ketil Stølen:
Extending UML sequence diagrams to model trust-dependent behavior with the aim to support risk analysis.
Sci. Comput. Program. 74(1-2): 34-42 (2008) |
| 2007 |
| 44 | | Günter Karjoth,
Ketil Stølen:
Proceedings of the 3th ACM Workshop on Quality of Protection, QoP 2007, Alexandria, VA, USA, October 29, 2007
ACM 2007 |
| 43 | EE | Bjørnar Solhaug,
Dag Elgesem,
Ketil Stølen:
Specifying Policies Using UML Sequence Diagrams - An Evaluation Based on a Case Study.
POLICY 2007: 19-28 |
| 2006 |
| 42 | | Ketil Stølen,
William H. Winsborough,
Fabio Martinelli,
Fabio Massacci:
Trust Management, 4th International Conference, iTrust 2006, Pisa, Italy, May 16-19, 2006, Proceedings
Springer 2006 |
| 41 | EE | Mass Soldal Lund,
Ketil Stølen:
A Fully General Operational Semantics for UML 2.0 Sequence Diagrams with Potential and Mandatory Choice.
FM 2006: 380-395 |
| 40 | EE | Atle Refsdal,
Ragnhild Kobro Runde,
Ketil Stølen:
Underspecification, Inherent Nondeterminism and Probability in Sequence Diagrams.
FMOODS 2006: 138-155 |
| 39 | EE | Fredrik Seehusen,
Ketil Stølen:
Maintaining Information Flow Security Under Refinement and Transformation.
Formal Aspects in Security and Trust 2006: 143-157 |
| 38 | EE | Gyrd Brændeland,
Ketil Stølen:
A Semantic Paradigm for Component-Based Specification Integrating a Notion of Security Risk.
Formal Aspects in Security and Trust 2006: 31-46 |
| 37 | EE | Ida Hogganvik,
Ketil Stølen:
A Graphical Approach to Risk Identification, Motivated by Empirical Investigations.
MoDELS 2006: 574-588 |
| 36 | EE | Gyrd Brændeland,
Ketil Stølen:
Using model-based security analysis in component-oriented system development.
QoP 2006: 11-18 |
| 35 | EE | Fredrik Seehusen,
Ketil Stølen:
Information flow property preserving transformation of UML interaction diagrams.
SACMAT 2006: 150-159 |
| 2005 |
| 34 | EE | Ragnhild Kobro Runde,
Øystein Haugen,
Ketil Stølen:
The Pragmatics of STAIRS.
FMCO 2005: 88-114 |
| 33 | EE | Atle Refsdal,
Knut Eilif Husa,
Ketil Stølen:
Specification and Refinement of Soft Real-Time Requirements Using Sequence Diagrams.
FORMATS 2005: 32-48 |
| 32 | | Fredrik Seehusen,
Ketil Stølen:
Graphical Specification of Dynamic Network Structure.
ICEIS (3) 2005: 203-210 |
| 31 | EE | Ida Hogganvik,
Ketil Stølen:
Risk analysis terminology for IT-systems: does it match intuition?
ISESE 2005: 13-22 |
| 30 | EE | Ida Hogganvik,
Ketil Stølen:
On the Comprehension of Security Risk Scenarios.
IWPC 2005: 115-124 |
| 29 | EE | Fredrik Vraalsen,
Folker den Braber,
Mass Soldal Lund,
Ketil Stølen:
The CORAS Tool for Security Risk Analysis.
iTrust 2005: 402-405 |
| 28 | EE | Fredrik Vraalsen,
Mass Soldal Lund,
Tobias Mahler,
Xavier Parent,
Ketil Stølen:
Specifying Legal Risk Scenarios Using the CORAS Threat Modelling Language.
iTrust 2005: 45-60 |
| 27 | | Folker den Braber,
Mass Soldal Lund,
Ketil Stølen,
Fredrik Vraalsen:
Integrating Security in the Development Process with UML.
Encyclopedia of Information Science and Technology (III) 2005: 1560-1566 |
| 26 | | Ragnhild Kobro Runde,
Øystein Haugen,
Ketil Stølen:
Refining UML Interactions with Underspecification and Nondeterminism.
Nord. J. Comput. 12(2): 157-188 (2005) |
| 25 | EE | Øystein Haugen,
Knut Eilif Husa,
Ragnhild Kobro Runde,
Ketil Stølen:
STAIRS towards formal design with sequence diagrams.
Software and System Modeling 4(4): 355-357 (2005) |
| 2004 |
| 24 | EE | Gyrd Brændeland,
Ketil Stølen:
Using Risk Analysis to Assess User Trust: A Net-Bank Scenario.
iTrust 2004: 146-160 |
| 2003 |
| 23 | EE | Mass Soldal Lund,
Folker den Braber,
Ketil Stølen:
Maintaining Results from Security Assessment.
CSMR 2003: 341-350 |
| 22 | EE | Øystein Haugen,
Knut Eilif Husa,
Ragnhild Kobro Runde,
Ketil Stølen:
Why Timed Sequence Diagrams Require Three-Event Semantics.
Scenarios: Models, Transformations and Tools 2003: 1-25 |
| 21 | EE | Øystein Haugen,
Ketil Stølen:
STAIRS - Steps to Analyze Interactions with Refinement Semantics.
UML 2003: 388-402 |
| 2002 |
| 20 | | Dimitris Raptis,
Theodosis Dimitrakos,
Bjørn Axel Gran,
Ketil Stølen:
The coras approach for model-based risk management applied to e-commerce domain.
Communications and Multimedia Security 2002: 169-181 |
| 19 | EE | Jan Øyvind Aagedal,
Folker den Braber,
Theodosis Dimitrakos,
Bjørn Axel Gran,
Dimitris Raptis,
Ketil Stølen:
Model-Based Risk Assessment to Improve Enterprise Security.
EDOC 2002: 51- |
| 18 | EE | Theodosis Dimitrakos,
Dimitris Raptis,
Brian Ritchie,
Ketil Stølen:
Model Based Security Risk Analysis for Web Applications.
EuroWeb 2002 |
| 17 | | Theodosis Dimitrakos,
Brian Ritchie,
Dimitris Raptis,
Jan Øyvind Aagedal,
Folker den Braber,
Ketil Stølen,
Siv Hilde Houmb:
Integrating Model-based Security Risk Management into eBusiness Systems Development: The CORAS Approach.
I3E 2002: 159-175 |
| 16 | EE | Rune Fredriksen,
Monica Kristiansen,
Bjørn Axel Gran,
Ketil Stølen,
Tom Arthur Opperud,
Theodosis Dimitrakos:
The CORAS Framework for a Model-Based Risk Management Process.
SAFECOMP 2002: 94-105 |
| 2001 |
| 15 | EE | Radu Grosu,
Ketil Stølen:
Stream-Based Specification of Mobile Systems.
Formal Asp. Comput. 13(1): 1-31 (2001) |
| 2000 |
| 14 | | Ketil Stølen,
P. Mohn:
Experience from Using MSC, UML and SDL in the Development of the FAME Communication Manager.
SAM 2000: 276- |
| 1999 |
| 13 | | Ketil Stølen:
Specification of Dynamic Reconfiguration in the Context of Input/Output Relations.
FMOODS 1999 |
| 1998 |
| 12 | EE | Ketil Stølen,
Max Fuchs:
An Exercise in Conditional Refinement.
Prospects for Hardware Foundations 1998: 390-420 |
| 1996 |
| 11 | | Radu Grosu,
Ketil Stølen:
A Model for Mobile Point-to-Point Data-flow Networks without Channel Sharing.
AMAST 1996: 504-519 |
| 10 | | Ketil Stølen:
Assumption/Commitment Rules for Dataflow Networks - With an Emphasis on Completeness.
ESOP 1996: 356-372 |
| 9 | | Ketil Stølen,
Frank Dederichs,
Rainer Weber:
Specification and Refinement of Networks of Asynchronously Communicating Agents Using the Assumption/Commitment Paradigm.
Formal Asp. Comput. 8(2): 127-161 (1996) |
| 8 | | Ketil Stølen:
Refinement Principles Supporting the Transition from Asynchronous to Synchronous Communication.
Sci. Comput. Program. 26(1-3): 255-272 (1996) |
| 1995 |
| 7 | | Ketil Stølen:
A Refinement Relation Supporting the Transition from Unbounded to Bounded Communication Buffers.
MPC 1995: 423-451 |
| 1994 |
| 6 | | Eckhardt Holz,
Ketil Stølen:
An attempt to embed a restricted version of SDL as a target language in Focus.
FORTE 1994: 324-339 |
| 5 | | Manfred Broy,
Ketil Stølen:
Specification and Refinement of Finite Dataflow Networks - a Relational Approach.
FTRTFT 1994: 247-267 |
| 4 | | Ketil Stølen:
Using Relations to Solve the RPC-Memory Specification Problem.
Formal Systems Specification 1994: 477-520 |
| 1992 |
| 3 | | Ketil Stølen:
Shared-state design modulo weak and strong process fairness.
FORTE 1992: 479-498 |
| 1991 |
| 2 | | Ketil Stølen:
A Method for the Development of Totally Correct Shared-State Parallel Programs.
CONCUR 1991: 510-525 |
| 1 | | Ketil Stølen:
An Attempt to Reason about Shared-State Concurrency in the Style of VDM.
VDM Europe (1) 1991: 324-342 |