2009 |
10 | EE | Jedidiah R. Crandall,
John Brevik,
Shaozhi Ye,
Gary Wassermann,
Daniela A. S. de Oliveira,
Zhendong Su,
Shyhtsun Felix Wu,
Frederic T. Chong:
Putting Trojans on the Horns of a Dilemma: Redundancy for Information Theft Detection.
Transactions on Computational Science 4: 244-262 (2009) |
2008 |
9 | EE | Gary Wassermann,
Zhendong Su:
Static detection of cross-site scripting vulnerabilities.
ICSE 2008: 171-180 |
8 | EE | Gary Wassermann,
Dachuan Yu,
Ajay Chander,
Dinakar Dhurjati,
Hiroshi Inamura,
Zhendong Su:
Dynamic test input generation for web applications.
ISSTA 2008: 249-260 |
7 | EE | Daniela A. S. de Oliveira,
Jedidiah R. Crandall,
Gary Wassermann,
Shaozhi Ye,
Shyhtsun Felix Wu,
Zhendong Su,
Frederic T. Chong:
Bezoar: Automated virtual machine-based full-system recovery from control-flow hijacking attacks.
NOMS 2008: 121-128 |
2007 |
6 | EE | Gary Wassermann,
Zhendong Su:
Sound and precise analysis of web applications for injection vulnerabilities.
PLDI 2007: 32-41 |
5 | EE | Gary Wassermann,
Carl Gould,
Zhendong Su,
Premkumar T. Devanbu:
Static checking of dynamically generated queries in database applications.
ACM Trans. Softw. Eng. Methodol. 16(4): (2007) |
2006 |
4 | EE | Daniela A. S. de Oliveira,
Jedidiah R. Crandall,
Gary Wassermann,
Shyhtsun Felix Wu,
Zhendong Su,
Frederic T. Chong:
ExecRecorder: VM-based full-system replay for attack analysis and system recovery.
ASID 2006: 66-71 |
3 | EE | Jedidiah R. Crandall,
Gary Wassermann,
Daniela A. S. de Oliveira,
Zhendong Su,
Shyhtsun Felix Wu,
Frederic T. Chong:
Temporal search: detecting hidden malware timebombs with virtual machines.
ASPLOS 2006: 25-36 |
2 | EE | Gary Wassermann,
Zhendong Su:
Validity Checking for Finite Automata over Linear Arithmetic Constraints.
FSTTCS 2006: 405-416 |
1 | EE | Zhendong Su,
Gary Wassermann:
The essence of command injection attacks in web applications.
POPL 2006: 372-382 |