Publications

 

View publications by:

Recent publications by research staff member

Carrie Gates

J. Glanfield, D. Paterson, C. Smith, T. Taylor, S. Brooks, C. Gates, J. McHugh. “FloVis: Leveraging Visualization to Protect Sensitive Network Infrastructure”. NATO Information Systems Technology Panel Symposium on Information Assurance and Cyber Defense. Tallinn, Estonia. November 2010.

S. Brunza, O. McCusker, J. Glanfield, D. Paterson, C. Gates, J. McHugh. “Combining Trust and Behavioral Analysis to Detect Security Threats”. NATO Information Systems Technology Panel Symposium on Information Assurance and Cyber Defense. Tallinn, Estonia. November 2010. 

Peter Matthews

V. Koutsoumpas, K. Kontogiannis and P. Matthews. “Dynamic Analysis for the Reconstruction of System Behavior Models”. IEEE 34th Annual Computer Software and Applications Conference Workshops. Seoul, Korea. July 2010.

Maria Velez-Rojas

BEST PAPER AWARD: P. Jagerian, K. Hawkey, A. Sotirakopoulos, M. Velez-Rojas and K. Beznosov. “Heuristics for Evaluating IT Security Management Tools.” Symposium on Usable Privacy and Security. http://cups.cs.cmu.edu/soups/2011/proceedings/a7_Jaferian.pdf

Serge Mankovskii

K. Wong, K. Kontogiannis, S. Mankovskii, H.A. Müller and J. Mylopoulos. “Integrated System Diagnosis and Root Cause Analysis”. Proceedings of the 20th Centers for Advanced Studies Conference (CASCON 2010). Toronto, ON, Canada. November 2010.

L. Huang, X. Ke, K. Wong and S. Mankovskii. “Symptom-Based Problem Determination Using Log Data Abstraction”. Proceedings of the 20th Centers for Advanced Studies Conference (CASCON 2010). Toronto, ON, Canada. November 2010.

Y. Bouzida, L. Logrippo and S. Mankovskii. “Concrete- and abstract-based access control” article in International Journal of Information Security, 10(4):223-238, August 2011.

H. Zawawy, K. Kontogiannis, J. Mylopoulos and S. Mankovskii. “Requirements-Driven Root Cause Analysis Using Markov Logic Networks" 24th International Conference on Advanced Information Systems Engineering (CAiSE'12), 25 – 29 June 2012, Gdańsk, Poland.

Steve Greenspan

S. Laqua, A. Sasse, C. Gates and S. Greenspan. “Making Sense of the Unknown: Knowledge Dissemination in Organizations.” In Proceedings of the Sensemaking Workshop at CHI 2009. Boston, MA, United States. April 2009.

S. Laqua, N. Ogbechie and A. Sasse. “Contextualizing the Blogosphere: A Comparison of Traditional and Novel User Interfaces for the Web”. Human-Computer Interaction Conference (HCI 2007). Lancaster, England, United Kingdom. September 2007.

Steve Versteeg

I. Mueller, J. Han, J.-G. Schneider, and S. Versteeg. “Idea: A Reference Platform for Systematic Information Security Management Tool Support”. In Proceedings of the 3rd International Symposium on Engineering Secure Software and Systems (ESSoS 2011). Madrid, Spain. February 2011.

G. Heward, H. Jun, I. Mueller, J.-G. Schneider and S. Versteeg. “Maximizing QoS through Optimal Monitoring Configurations”. Performance Assessment and Auditing in Service Computing Workshop 2010 as part of the 8th International Conference on Service Oriented Computing (ICSOC'10). San Francisco, CA, United States. December 2010.

G. Heward, H. Jun, I. Mueller, J.-G. Schneider and S. Versteeg. “Optimizing Web Services Monitoring”. 8th International Conference on Service Oriented Computing (ICSOC 2010). San Francisco, CA, United States. December 2010.

T. Phan, J. Han, G. Heward and S. Versteeg. “Propagation of Data Protection Requirements in Multi-Stakeholder Web Services Systems”. In Proceedings of the 11th International Conference on Web Information Systems Engineering (WISE 2010). Hong Kong, China. December 2010.

Victor Muntes-Mulero

Chapter Authors: David Domínguez, Norbert Martínez-Bazán, Victor Muntés-Mulero, Josep-L Larriba Pey. "Graph Data Storage" (Book: Graph Data Management: Techniques and Applications). Author(s)/Editor(s): Sherif Sakr (University of New South Wales, Australia); Eric Pardede (LaTrobe University, Australia), August, 2011, ISBN10: 161350053X. D. Dominguez-Sal, N. Martinez-Bazan, V. Muntes-Mulero, Pere Baleta, J. L. Larriba-Pey. "A Discussion on the Design of Graph Database Benchmarks". In TPC Technology Conference on Performance Evaluation and Benchmarking. (Singapore, September 17, 2010).

Hybrid In-memory and On-disk Tables for Speeding-up Table Accesses. Joan Guisado-Gámez, Antoni Wolski, Calisto Zuzarte, Josep-Lluís Larriba-Pey and Victor Muntés-Mulero. In Proceedings of the 21st Conference on Database and Expert Systems Applications. (Bilbao, Spain, August 30- September 3, 2010).

 

Recent publications by project

Publish/Subscribe Applied to Distributed Resource Scheduling (PADRES)

S. Hu, V. Muthusamy, G. Li, H-A. Jacobsen. “Distributed Automatic Service Composition in Large-Scale Systems”. Distributed Event-Based Systems (DEBS 2008). Rome, Italy. July 2008.

G. Li, S. Hou, H-A. Jacobsen. “Routing of XML and XPath Queries in Data Dissemination Networks”. International Conference on Distributed Computing Systems (ICDCS). Beijing, China. June 2008.

A. Wun, H-A Jacobsen. “A Policy Framework for Content-based Publish/Subscribe Middleware”. ACM Middleware Conference. Newport Beach, CA, United States. November 2007.

Automated Business Process Alignment

V. Koutsoumpas, K. Kontogiannis, P. Matthews. “Dynamic Analysis for the Reconstruction of System Behavior Models”. IEEE 34th Annual Computer Software and Applications Conference Workshops. Seoul, Korea. July 2010.

A. Razavi, K. Kontogiannis. “Pattern and Policy Driven Log Analysis for Software Monitoring”. IEEE 32nd Computer Software and Applications Conference (COMPSAC '08). Turku, Finland. July 2008.

Cloning in Industrial Practices (CLIPS)

I. Davis, M. Godfrey. “From Whence It Came: Detecting Source Code Clones by Analyzing Assembler”. Proceedings of the 17th International Working Conference on Reverse Engineering (WCRE 2010). Beverly, MA, United States. October 2010.

C. J. Kapser, M. W. Godfrey. “Cloning Considered Harmful, Considered Harmful”. Proceedings of the 13th Working Conference on Reverse Engineering (WCRE 2006). Benevento, Italy. October 2006.

C. J. Kapser, M. W. Godfrey. “Supporting the Analysis of Clones in Software Systems: A Case Study”. Journal of Software Maintenance and Evolution: Research and Practice, Vol. 18, No. 2. March/April 2006.

R. Al-Ekram, C. J. Kapser, R. Holt, M. W. Godfrey. “Cloning by Accident: An Empirical Study of Source Code Cloning Across Software Systems”. Proceedings of the International Symposium on Empirical Software Engineering (ISESE 2005). Noosa Heads, Australia. November 2005.

Autonomic Computing

F. Zulkernine, W. Powley, P. Martin. “Autonomic Management of Networked Web Services-Based Processes”. Autonomic Computing and Networking (editors M. Denko, L. Yang, Y .Zhang). June 2008.

F. Zulkernine, P. Martin, K. Wilson. “A Middleware Solution to Monitoring Composite Web Service Processes”. International Workshop on Service Intelligence and Computing (SIC). Beijing, China. June 2008.

P. Martin, W. Powley, W. Tian, K. Wilson, J. Zebedee, Z. Xu.“The WSDN of Autonomic Computing: Experiences in Implementing Autonomic Web Services”. In the Proceedings of ICSE Workshops, International Workshop on Software Engineering for Adaptive and Self-Managing Systems (SEAMS 2007), pp. 9-16. Minneapolis, MN, United States. May 2007.

CA Agile Architecture

E. Hadar, G. Silberman. “Agile Architecture Methodology: Long Term Strategy Interleaved with Short Term Tactics”. International Conference on Object Oriented Programming, Systems, Languages and Applications (OOPSLA). Nashville, TN, United States. October 2008.

E. Hadar, I. Hadar. “Collaborative Duet of Friction and Traction: When the Academia Rubber Hits the Industrial Road”. Escaped from the Lab: Crossing the Gap from Invention to Practice” Workshop, International Conference on Object Oriented Programming, Systems, Languages and Applications (OOPSLA). Nashville, TN, United States. October 2008.

Architecture Component Catalog and Repository (ComCat)

U. Frank, D. Heise, H. Kattenstroth. “Use of a Domain Specific Modeling Language for Realizing Versatile Dashboards”. International Conference on Object Oriented Programming, Systems, Languages and Applications (OOPSLA 2009). M. Rossi, J. Gray, J. Sprinkle, J.-P. Tolvanen, editors. Orlando, FL, United States. October 2009.

D. Mancl, E. Hadar, I. Hadar, S. Fraser, B. Opdyke. “Architecture in an Agile World”. Workshop in the Proceedings of the 9th International Conference on Object Oriented Programming, Systems, Languages and Applications (OOPSLA 2009). Orlando, FL, United States. October 2009.

A. Jerbi, E. Hadar, C. Gates, D. Grebenev. “An Access Control Reference Architecture”. Computer Security Architecture Workshop, 15th ACM Conference on Computers and Communication Security. Fairfax, VA, United States. October 2008.

E. Hadar, I. Hadar. “A Discussion on the Concepts of Object, Aggregation and Polymorphism Exemplified by Linked-List Data Structure and Template Design Pattern”. Workshop in the Proceedings of the International Conference on Object Oriented Programming, Systems, Languages and Applications (OOPSLA 2008). Nashville, TN, United States. October 2008.

Enterprise IT Management Modeling Language (EITM-ML)

U. Frank, D. Heise, H. Kattenstroth, H. Schauer. “Designing and Utilizing Business Indicator Systems within Enterprise Models – Outline of a Method”. Modeling Business Information Systems (MoBIS). Saarbrücken, Germany. November 2008.

Flow Visualization (FloVis)  

J. Glanfield, D. Paterson, C. Smith, T. Taylor, S. Brooks, C. Gates, J. McHugh. “FloVis: Leveraging Visualization to Protect Sensitive Network Infrastructure”. NATO Information Systems Technology Panel Symposium on Information Assurance and Cyber Defense. Tallinn, Estonia. November 2010.

S.Brunza, O. McCusker, J. Glanfield, D. Paterson, C. Gates, J. McHugh. “Combining Trust and Behavioral Analysis to Detect Security Threats”. NATO Information Systems Technology Panel Symposium on Information Assurance and Cyber Defense. Tallinn, Estonia. November 2010.

T. Taylor, D. Paterson, J. Glanfield, C. Gates, S. Brooks, J. McHugh. “FloVis: Flow Visualization System”. Cybersecurity Applications and Technologies Conference for Homeland Security (CATCH). Washington, D.C., United States. March 2009.

C. Gates, J. McHugh. “The Contact Surface: A Technique for Exploring Internet Scale Emergent Behaviors”. Detection of Intrusions and Malware and Vulnerability Assessment (DIMVA). Paris, France. July 2008.

T. Taylor, S. Brooks, J. McHugh. “NetBytes Viewer: An Entity-based Netflow Visualization Utility for Identifying Intrusive Behavior”. Workshop on Visualization Computer Security (VizSEC). Sacramento, CA, United States. October 2007.

Human, Organizational and Technological (HOT) Forces in Identity Management

P. Jaferian, K. Hawkey, A. Sotirakopoulos, K. Beznosov. “Heuristics for Evaluating IT Security Management Tools” Published in Proceedings of the 29th International Conference Extended Abstracts on Human Factors in Computing Systems (CHI '11). Vancouver, BC, Canada. May 2011.

P. Jaferian; K. Hawkey; K. Beznosov. “Challenges in Evaluating Complex IT Security Management Systems”. Published in SOUPS Usable Security Experiment Reports (USER) Workshop. Redmond, WA, United States. July 2010.

P. Jaferian, D. Botta, K. Hawkey, K. Beznosov. “A Case Study of Enterprise Identity Management System Adoption in an Insurance Organization”. Published in Proceedings of the 3rd ACM Symposium on Computer Human Interaction for Management of information Technology (CHiMiT '09). Baltimore, MD, United States. November 2009.

R. Werlinger, K. Hawkey, K. Beznosov. “Human, Organizational and Technological Challenges of Implementing IT Security in Organizations”. Human Aspects of Information Security and Assurance (HAISA), pp. 35-48. Plymouth, England, United Kingdom. July 2008.

K. Hawkey, D. Botta, K. Muldner, R. Werlinger, A. Gagne, K. Beznosov. “Human, Organizational and Technological Factors of IT Security”. Poster session of ACM Conference on Human Factors in Computing Systems (CHI). Florence, Italy. April 2008.

Knowledge Dissemination (KnowDis)

S. Laqua, A. Sasse, C. Gates, S. Greenspan. “Making Sense of the Unknown: Knowledge Dissemination in Organizations.” In Proceedings of the Sensemaking Workshop at CHI 2009. Boston, MA, United States. April 2009.

M. Levy, I. Hadar, S. Greenspan, E. Hadar. “Knowledge Management Culture Audit: Capturing Tacit Perceptions and Barriers”. Proceedings of the 14th Americas Conference on Information Systems (AmCIS). Toronto, ON, Canada. August 2008. 

S. Laqua, N. Ogbechie, A. Sasse. “Contextualizing the Blogosphere: A Comparison of Traditional and Novel User Interfaces for the Web”. Human-Computer Interaction Conference (HCI 2007) Lancaster, England, United Kingdom. September 2007.

S. Laqua, G. Patel, A. Sasse. “Personalized Focus-Metaphor Interfaces: An Eye Tracking Study on User Confusion”. Mensch und Computer 2006. Gelsenkirchen, Germany. September 2006.

Knowledge Management Infrastructure (KnowIT)

M. Levy, I. Hadar, S. Greenspan, E. Hadar. “Knowledge Management Culture Audit: Capturing Tacit Perceptions and Barriers”. American Conference on Information Systems (AMCIS). Toronto, ON, Canada. August 2008.

M. Levy, I. Hadar and I. Aviv. “IS Method Design for Knowledge Projects”, 18th Americas Conference on Information Systems (AMCIS) 2012, 9-11 August 2012, Seattle, Washington, USA.

Malware De-Obfuscation  

L. Sun, S. Versteeg, S. Boztas, T. Yann. “Pattern Recognition Techniques for the Classification of Malware Packers”. 15th Australasian Conference on Information Security and Privacy (ACISP2010). Sydney, Australia. July 2010.

L. Sun, T. Ebringer, S. Boztas. "An Automatic Anti-Anti-VMware Technique Applicable for Multi-Stage Packed Malware". 3rd International Conference on Malicious and Unwanted Software (Malware'08). Alexandria, VA, United States. October 2008.

T. Ebringer, L. Sun, S. Boztas. “A Fast Randomness Test that Preserves Local Detail.” Proceedings of the 18th Virus Bulletin International Conference (VB2008). Ottawa, ON, Canada. October 2008.

T. Ebringer. "Anti-Emulation through Time-Lock Puzzles." 2nd International CARO Workshop. Hoofddorp, The Netherlands. May 2008.

L. Sun, T. Ebringer, S. Boztas. "Hump-and-Dump: Efficient Generic Unpacking Using An Ordered Address Execution Histogram." 2nd International CARO Workshop. Hoofddorp, The Netherlands. May 2008.

Malware Detection and Classification

R. Tian, L.M. Batten, R. Islam, S.C. Versteeg. “Differentiating Malware from Cleanware Using Behavioural Analysis.” Fifth IEEE International Conference on Malicious and Unwanted Software (Malware'10). Nancy, France. October 2010.

R. Islam, R. Tian, L.M. Batten, S.C. Versteeg. “Classification of Malware Based on String and Function Feature Selection”. Second Cybercrime and Trustworthy Computing Workshop. Ballarat, Victoria, Australia. July 2010.

R. Tian, L.M. Batten, R. Islam, S.C. Versteeg. “An Automated Classification System Based on the Strings of Trojan and Virus Families”. In Proceedings of the Fourth IEEE International Conference on Malicious and Unwanted Software (Malware'09), Montreal, QC, Canada. October 2009.

R. Tian, L.M. Batten, S.C. Versteeg. “Function Length as a Tool for Malware Classification.” Third IEEE International Conference on Malicious and Unwanted Software (Malware'08). Alexandria, VA, United States. October 2008.

Non-Functional Deployment Requirements (NFDR)

M. Kupfer, I. Hadar. “Understanding and Representing Deployment Requirements for Achieving Non-Functional System Properties”. International Workshop on Non-Functional System Properties in Domain Specific Modeling Languages (NFPinDSML 2008) at MoDELS 2008. Toulouse, France. September 2008.

PARCA Logging, Monitoring and Diagnostics (PARCA LMD)

D. Barone, L. Peyton, F. Rizzolo, D. Amyot, J. Mylopoulos. “Model Based Support for Managing Organizational Transformation”. 5th International Multidisciplinary Conference on eTechnologies (MCETECH'11). Les Diablerets, Switzerland. January 2011.

D. Barone, E. Yu, J. Won, L. Jiang, J. Mylopoulos. “Enterprise Modeling for Business Intelligence”. 3rd IFIP WG 8.1 Working Conference on the Practice of Enterprise Modeling (PoEM). Delft, The Netherlands. November 2010.

L. Huang, X. Ke, K. Wong, S. Mankovskii. “Symptom-Based Problem Determination Using Log Data Abstraction”. Proceedings of the 20th Centers for Advanced Studies Conference (CASCON 2010). Toronto, ON, Canada. November 2010.

K. Wong, K. Kontogiannis, S. Mankovskii, H.A. Müller, J. Mylopoulos. “Integrated System Diagnosis and Root Cause Analysis. Proceedings of the 20th Centers for Advanced Studies Conference (CASCON 2010). Toronto, ON, Canada. November 2010.

Y. Wang, J. Mylopoulos. “Diagnosing Software Using Statecharts”. Proceedings of the 20th Centers for Advanced Studies Conference (CASCON 2010). Toronto, ON, Canada. November 2010.

C. Chinaraki, Y. Velegrakis, N. Kiyavitskaya, J. Mylopoulos. “A Context-based Model for the Interpretation of Polysemous Terms”. 9th International Conference on Ontologies, Databases and Applications of Semantics (ODBASE 2010). Ayia Napa Cyprus, Greece. October 2010.

S. Nadi, R. Holt, I. Davis, S. Mankovskii. “DRACA: Decision Support for Root Cause Analysis and Change Impact Analysis for CMDBs”. Proceedings of the 19th Centers for Advanced Studies Conference (CASCON 2009). Toronto, ON, Canada. November 2009.

PARCA Runtime Automated Configuration Engineering (PARCA RACE)

S. Nadi, R. Holt, I. Davis, S. Mankovskii. “DRACA: Decision Support for Root Cause Analysis and Change Impact Analysis for CMDBs”. Proceedings of the 19th Centers for Advanced Studies Conference (CASCON 2009). Toronto, ON, Canada. November 2009.

C.R. Holt. “Grokking Software Architecture.” Working Conference on Reverse Engineering (WCRE). Antwerp, Belgium. October 2008.

Quality-Driven Architecture Processes and Methodologies (Q-DAP)

S. Sherman, I. Hadar and M. Levy. “Enhancing Software Architecture Review Process via Knowledge Management”, Proceedings of the Sixteenth Americas Conference on Information Systems, Lima, Peru, August 2010.

S. Sherman, I. Hadar, E. Hadar and J.M. Harrison. “Architecture Documentation for Agile Development”, SATURN, May 16-20, 2011, San Francisco, California

S. Sherman, I. Hadar, E. Hadar and J.M. Harrison. “The Overall Value of Architecture Review in a Large Scale Software Organization”, Proceedings of the 9th International Workshop on Systems/Software Architecture (IWSSA) co-located with the 23rd International Conference on Advanced Information System Engineering (CAISE’11).

I. Hadar and S. Sherman. “Agile vs. Plan-Driven Perceptions of Software Architecture”, 5th International Workshop on Cooperative and Human Aspects of Software Engineering (CHASE) in 34th International Conference on Software Engineering (ICSE) 2012, June 2-9, 2012, Zurich, Switzerland.

S. Sherman and I. Hadar. “Identifying the Need for a Sustainable Architecture Maintenance Process”, 5th International Workshop on Cooperative and Human Aspects of Software Engineering (CHASE) in 34th International Conference on Software Engineering (ICSE) 2012, June 2-9, 2012, Zurich, Switzerland.

Large Scale Testing (Reacto)

C. Hine, J-G Schneider, S. Versteeg. “Reacto: A Runtime for Enterprise System Models.” 25th IEEE/ACM International Conference on Automated Software Engineering (ASE 2010). Antwerp, Belgium. September, 2010.

C. Hine, J-G Schneider, S. Versteeg, J. Han. “Modeling and Validating Enterprise System Protocol Specifications.” In Proceedings of the 21st Australian Software Engineering Conference (ASWEC'10). Auckland, New Zealand. April 2010.

C. Hine, J-G Schneider, J. Han, S. Versteeg. “Scalable Emulation of Enterprise Systems.” 20th Australian Software Engineering Conference (ASWEC'09). Gold Coast, Queensland, Australia. April 2009.

Data Mining Roles and Identities  

D. Zhang, K. Ramamohanarao, S. Versteeg, R. Zhang. "Graph Based Strategies to Role Engineering". In Proceedings of the 6th Cyber Security and Information Intelligence Research Workshop (CSIIRW 2010). Oak Ridge, TN, United States. April 2010.

D. Zhang, R. Kotagiri, S. Versteeg, R. Zhang. "RoleVAT: Visual Assessment of Practical Need for Role Based Access Control". Annual Computer Security Applications Conference (ACSAC 2009). Honolulu, HI, United States. December 2009.

D. Zhang, R. Kotagiri, T. Ebringer, T. Yann. “Permission Set Mining: Discovering Practical and Useful Roles”. In Proceedings of the 2008 Annual Computer Security Applications Conference (ACSAC). Anaheim, CA, United States. December 2008.

D. Zhang, R. Kotagiri, T. Ebringer. "Role Engineering Using Graph Optimisation". In Proceedings of the 12th ACM Symposium on Access control Models and Technologies (SACMAT 2007). ACM Press. Sophia Antipolis, France. June 2007.

Rich Service Registry

I. Mueller, J. Han, J.-G. Schneider, S. Versteeg. “Idea: A Reference Platform for Systematic Information Security Management Tool Support”. In Proceedings of the 3rd International Symposium on Engineering Secure Software and Systems (ESSoS 2011). Madrid, Spain. February 2011.

G. Heward, H. Jun, I. Mueller, J.-G. Schneider, S. Versteeg. “Optimizing Web Services Monitoring”. 8th International Conference on Service Oriented Computing (ICSOC 2010). San Francisco, CA, United States. December 2010.

G. Heward, H. Jun, I. Mueller, J.-G. Schneider, S. Versteeg. “Maximizing QoS through Optimal Monitoring Configurations”. Performance Assessment and Auditing in Service Computing Workshop 2010 as part of the 8th International Conference on Service Oriented Computing (ICSOC'10). San Francisco, CA, United States. December 2010.

T. Phan, J. Han, G. Heward, S. Versteeg. “Propagation of Data Protection Requirements in Multi-Stakeholder Web Services Systems”. In Proceedings of the 11th International Conference on Web Information Systems Engineering (WISE 2010). Hong Kong, China. December 2010.

G. Heward, H. Jun, I. Mueller, J.-G. Schneider, S. Versteeg. “Assessing the Performance Impact of Service Monitoring”. In Proceedings of the 21st Australian Software Engineering Conference (ASWEC 2010). Auckland, New Zealand. April 2010.

T. Phan, J. Han, I. Mueller, M. Kapuruge, S. Versteeg. "SOABSE: An Approach to Realizing Business-Oriented Security Requirements with Web Service Security Policies". In Proceedings of the IEEE International Conference on Service-Oriented Computing and Applications (SOCA'09). Taipei, Taiwan. December 2009.

Semantic Policy Validation for Access-Control (SEMPO)

N. Slimani, H. Khambhammettu, K. Adi, L. Logrippo. “UACML: Unified Access Control Modeling Language”. 4th IFIP International Conference on New Technologies, Mobility and Security. Paris, France. February 2011.

A. Riaz Shaikh, K. Adi, L. Logrippo, S. Mankovskii. “Inconsistency Detection Method for Access Control Policies”. IEEE 6th International Conference on Information Assurance and Security (IAS 2010), pp 204-209. Houston, TX, United States. October 2010.

J. Ma, K. Adi, M. Mejri, L. Logrippo. “Risk Analysis in Access Control Systems”. 8th International Conference on Privacy, Security and Trust (PST2010), IEEE Press, pp. 160-166. Ottawa, ON, Canada. August 2010.

J. Ma, K. Adi, L. Logrippo, S. Mankovskii. “Risk Management in Dynamic Role Based Access Control Systems”. IEEE 5th International Conference on Digital Information Management (ICDM 2010), IEEE Press, pp 423-430. Thunder Bay, ON, Canada. July 2010.

A. Riaz Shaikh, K. Adi, L. Logrippo, S. Mankovskii. “Detecting Incompleteness in Access Control Policies Using Data Classification Schemes”. IEEE 5th International Conference on Digital Information Management (ICDM 2010), IEEE Press, pp. 417-422. Thunder Bay, ON, Canada. July 2010.

J. Ma, L. Logrippo, K. Adi, S. Mankovskii. “Risk Analysis in Access Control Systems Based on Trust Theories”. IEEE Workshop on Logics for Intelligent Agents and Multi-Agent Systems, IEEE Computer Society Press, pp. 415-418. Toronto, ON, Canada. April 2010.

Vizilla

T. Taylor, D. Paterson, J. Glanfield, C. Gates, S. Brooks, J. McHugh (2009) “FloVis: Flow Visualization System.” Cybersecurity Applications and Technologies Conference for Homeland Security (CATCH). Washington, DC. March 2009. 

Publications from archived and related projects 

Ferguson D.F., Hadar E, “Optimizing the IT business supply chain utilizing cloud computing”, The 8th International Conference on Emerging Technologies for a Smarter World (CEWIT2011), Hyatt Regency Long Island, Hauppauge, New York, November 2-3, 2011.

Sherman S. Hadar I., Hadar E., Harrison J. , 'The Overall Value of Architecture Review in a Large Scale Software Organization”, 9th international workshop on system/software architecture (IWSSA'11), CAiSE'11, 20-24th June 2011, London, England

Hadar E., “Protecting the physical boundaries of virtual machines in cloud computing”, international conference for cloud computing and service sciences, Noordwijkerhout, The Netherlands 7-9 May, 2011

Hadar E, Hadar I., Danielson D. “Socio Engineering methodology for cloud computing analysis”, international conference for cloud computing and service sciences, Noordwijkerhout, The Netherlands 7-9 May, 2011

A. Siena, G. Armellin, G. Mameli, J. Mylopoulos, A. Perini, A. Susi. "Establishing Regulatory Compliance for Information System Requirements: An Experience Report from the Health Care Domain". 29th International Conference on Conceptual Modeling (ER'10). Vancouver, BC, Canada. November 2010.

N. Ernst, A. Borgida, I. Jureta, J. Mylopoulos, "Reasoning with Optional and Preferred Requirements". 29th International Conference on Conceptual Modeling (ER'10). Vancouver, BC, Canada. November 2010.

F. Dalpiaz, A. Chopra, P. Giorgini, J. Mylopoulos. "Adaptation in Open Systems: Giving Interaction Its Rightful Place". 29th International Conference on Conceptual Modeling (ER'10). Vancouver, BC, Canada. November 2010.

C. Chinaraki, Y. Velegrakis, N. Kiyavitskaya, J. Mylopoulos. “A Context-based Model for the Interpretation of Polysemous Terms”. 9th International Conference on Ontologies, Databases and Applications of Semantics (ODBASE 2010). Ayia Napa Cyprus, Greece. October 2010.

I. Davis, M. Godfrey. “From Whence It Came: Detecting Source Code Clones by Analyzing Assembler”. Proceedings of the 17th International Working Conference on Reverse Engineering (WCRE 2010). Beverly, MA, United States. October 2010.

Y. Asnar, P. Giorgini, J. Mylopoulos. "Goal-Driven Risk Assessment in Requirements Engineering" article in Requirements Engineering Journal, Springer-Verlag, ISSN: 0947-3602. September 2010.

S. Liaskos, S. McIlraith, S. Sohrabi, J. Mylopoulos. "Integrating Preferences into Goal Models for Requirements Engineering". 19th International IEEE Conference on Requirements Engineering (RE'10), ranked among the 5 top papers of RE'10. Sydney, Australia. September 2010.

I. Jureta, A. Borgida, N. Ernst, J. Mylopoulos. "Techne: Towards a New Generation of Requirements Modeling Languages with Goals, Preferences and Inconsistency Handling". 19th International IEEE Conference on Requirements Engineering (RE'10). Sydney, Australia. September 2010.

V. Kantere, M. Manoubi, I. Kiringa, T. Sellis, J. Mylopoulos  "Peer Coordination Through Distributed Triggers". 36th Conference on Very Large Databases (VLDB'10), pages 1561-1564 (demo paper). Singapore. September 2010.

J. Ma, K. Adi, M. Mejri, L. Logrippo. “Risk Analysis in Access Control Systems”. 8th International Conference on Privacy, Security and Trust (PST2010), IEEE Press, pp. 160-166. Ottawa, ON, Canada. August 2010.

P. Jaferian; K. Hawkey; K. Beznosov. “Challenges in Evaluating Complex IT Security Management Systems”. Published in SOUPS Usable Security Experiment Reports (USER) Workshop. Redmond, WA, United States. July 2010.

L. Sun, S. Versteeg, S. Boztas, T. Yann. “Pattern Recognition Techniques for the Classification of Malware Packers”. 15th Australasian Conference on Information Security and Privacy (ACISP2010). Sydney, Australia. July 2010.

P. Jaferian, D. Botta, K. Hawkey, K. Beznosov. “A Case Study of Enterprise Identity Management System Adoption in an Insurance Organization”. Published in Proceedings of the 3rd ACM Symposium on Computer Human Interaction for Management of information Technology (CHiMiT '09). Baltimore, MD, United States. November 2009.

D. Mancl, E. Hadar, I. Hadar, S. Fraser, B. Opdyke. “Architecture in an Agile World”. Workshop in the Proceedings of the 9th International Conference on Object Oriented Programming, Systems, Languages and Applications (OOPSLA 2009). Orlando, FL, United States. October 2009.

U. Frank, D. Heise, H. Kattenstroth. “Use of a Domain Specific Modeling Language for Realizing Versatile Dashboards”. International Conference on Object Oriented Programming, Systems, Languages and Applications (OOPSLA 2009). M. Rossi, J. Gray, J. Sprinkle, J.-P. Tolvanen, editors. Orlando, FL, United States. October 2009.

T. Phan, J. Han, J-G Schneider and K. Wilson (2008), Quality-Driven Business Policy Specification and Refinement for Service-Oriented Systems, In 6th International Conference on Service Oriented Computing (ICSOC'08), Sydney, Australia, December 2008

D. Zhang, R. Kotagiri, T. Ebringer, T. Yann. “Permission Set Mining: Discovering Practical and Useful Roles”. In Proceedings of the 2008 Annual Computer Security Applications Conference (ACSAC). Anaheim, CA, United States. December 2008.

U. Frank, D. Heise, H. Kattenstroth, H. Schauer. “Designing and Utilizing Business Indicator Systems within Enterprise Models – Outline of a Method”. Modeling Business Information Systems (MoBIS). Saarbrücken, Germany. November 2008.

C.R. Holt. “Grokking Software Architecture.” Working Conference on Reverse Engineering (WCRE). Antwerp, Belgium. October 2008.

T. Ebringer, L. Sun, S. Boztas. “A Fast Randomness Test that Preserves Local Detail.” Proceedings of the 18th Virus Bulletin International Conference (VB2008). Ottawa, ON, Canada. October 2008.

L. Sun, T. Ebringer, S. Boztas. "An Automatic Anti-Anti-VMware Technique Applicable for Multi-Stage Packed Malware". 3rd International Conference on Malicious and Unwanted Software (Malware'08). Alexandria, VA, United States. October 2008.

E. Hadar, G. Silberman. “Agile Architecture Methodology: Long Term Strategy Interleaved with Short Term Tactics”. International Conference on Object Oriented Programming, Systems, Languages and Applications (OOPSLA 2008). Nashville, TN, United States. October 2008.

M. Kupfer, I. Hadar. “Understanding and Representing Deployment Requirements for Achieving Non-Functional System Properties”. International Workshop on Non-functional System Properties in Domain Specific Modeling Languages, affiliated with MoDELS 2008. Toulouse, France. September 2008.

 Q. Zhu, L. Lin, H.M Kienle, H.A Müller. “Characterizing Maintainability Concerns in Autonomic Element Design”. In Proceedings of the 24th IEEE International Conference on Software Maintenance (ICSM 2008), IEEE Computer Society, 10 pages. Beijing, China. September 2008.

H.M Kienle, H.A Müller. "Research Challenges in Management and Compliance of Policies on the Web". 10th IEEE International Symposium on Web Site Evolution (WSE 2008), IEEE Computer Society Press. Beijing, China. September 2008.

R. Werlinger, K. Hawkey, K. Beznosov. “Human, Organizational and Technological Challenges of Implementing IT Security in Organizations”. Human Aspects of Information Security and Assurance (HAISA), pp. 35-48. Plymouth, England, United Kingdom. July 2008.

A. Razavi, K. Kontogiannis. “Pattern and Policy Driven Log Analysis for Software Monitoring”. IEEE 32nd Computer Software and Applications Conference (COMPSAC '08). Turku, Finland. July 2008. 

S. Hu, V. Muthusamy, G. Li, H-A. Jacobsen. “Distributed Automatic Service Composition in Large-Scale Systems”. Distributed Event-Based Systems (DEBS 2008). Rome, Italy. July 2008.

G. Li, S. Hou, H-A. Jacobsen. “Routing of XML and XPath Queries in Data Dissemination Networks”. International Conference on Distributed Computing Systems (ICDCS). Beijing, China. June 2008.

F. Zulkernine, W. Powley, P. Martin. “Autonomic Management of Networked Web Services-Based Processes”. Autonomic Computing and Networking (editors M. Denko, L. Yang, Y .Zhang). June 2008.

F. Zulkernine, P. Martin, K. Wilson. “A Middleware Solution to Monitoring Composite Web Service Processes”. International Workshop on Service Intelligence and Computing (SIC). Beijing, China. June 2008.

H.A. Müller, M. Pezzè, M. Shaw. "Visibility of Control in Adaptive System". In Proceedings of the 3rd ACM/IEEE International ICSE Workshop on Software Engineering for Adaptive and Self-Managing Systems (SEAMS 2008), Workshop at 30th IEEE/ACM International Conference on Software Engineering (ICSE 2008). ACM Press. Leipzig, Germany. May 2008.

R. Dawson, R. Desmarais, H.M. Kienle, H.A. Müller. "Monitoring in Adaptive Systems Using Reflection". In Proceedings of the 3rd ACM/IEEE International ICSE Workshop on Software Engineering for Adaptive and Self-Managing Systems (SEAMS 2008), Workshop at 30th IEEE/ACM International Conference on Software Engineering (ICSE 2008). ACM Press. Leipzig, Germany.  May 2008.

B.H.C. Cheng, R. de Lemos, H. Giese, P. Inverardi, J. Magee, J. Andersson, B. Becker, N. Bencomo, Y. Brun, B. Cukic, J. Di Marzo Serugendo, S. Dustdar, A. Finkelstein, C. Gacek, K. Geihs, V. Grassi, G. Karsai, H.M. Kienle, J. Kramer, S. Malek, R. Mirandola, H.A. Müller, S. Park, M. Tichy, M. Tivoli, D. Weyns, J. Whittle. “A Research Roadmap: Software Engineering for Self-Adaptive Systems”. Schloss Dagstuhl Seminar 08031 Report on Software Engineering for Self-Adaptive Systems, 12 pages. Wadern, Germany. Presented at ACM/IEEE International ICSE Workshop on Software Engineering for Adaptive and Self-Managing Systems (SEAMS 2008), ACM. New York, NY, United States. May 2008.

T. Ebringer. "Anti-Emulation through Time-Lock Puzzles." 2nd International CARO Workshop. Hoofddorp, The Netherlands. May 2008.

L. Sun, T. Ebringer, S. Boztas. "Hump-and-Dump: Efficient Generic Unpacking Using An Ordered Address Execution Histogram." 2nd International CARO Workshop. Hoofddorp, The Netherlands. May 2008.

K. Hawkey, D. Botta, K. Muldner, R. Werlinger, A. Gagne, K. Beznosov. “Human, Organizational and Technological Factors of IT Security”. Poster session of ACM Conference on Human Factors in Computing Systems (CHI). Florence, Italy. April 2008.

Giese, H., Brun, Y., Di Marzo Serugendo, J., Gacek, Kienle, H.M., Müller, H.A., Pezzè, M., Shaw, M.: A Engineering Self-Adaptive and Self-Managing Systems (2008); to appear in LNCS.

P. Giorgini, J. Mylopoulos, A. Perini, A. Susi. "The Tropos Methodology and Software Development Environment" book chapter in Social Modeling for Requirements Engineering, MIT Press, ISBN: 978-0-262-24055-0, 2010, 405-424.  E. Yu, P. Giorgini, N. Maiden, J. Mylopoulos, editors.

E. Colombo, J. Mylopoulos. "Requirements Analysis for Run-Time Service Compositions" book chapter in Social Modeling for Requirements Engineering, MIT Press, ISBN: 978-0-262-24055-0, 2010, 485-516. E. Yu, P. Giorgini, N. Maiden, J. Mylopoulos, editors.

P. Giorgini, J. Mylopoulos, R., Sebastiani. "Goal Modelling and Reasoning in Tropos" book chapter in Social Modeling for Requirements Engineering, MIT Press, ISBN: 978-0-262-24055-0, 2010, 645-668. E. Yu, P. Giorgini, N. Maiden, J. Mylopoulos, editors.

T. Phan, J. Han, J.-G. Schneider, T. Ebringer and T. Rogers (2008), A Survey of Policy-Based Management Approaches for Service Oriented Systems. 19th Australian Conference on Software Engineering (ASWEC 2008), pp. 392-401

Y. Wang, S. McIlraith, Y. Yu, J. Mylopoulos. “An Automated Approach for Monitoring and Diagnosing Requirements”. 22nd IEEE/ACM International Conference on Automated Software Engineering (ASE’07) Best Paper Award. Atlanta, GA, United States. November 2007.

T. Phan, J. Han, J.-G. Schneider, T. Ebringer and T. Rogers (2007). Policy-Based Service Registration and Discovery. In Proceedings of the 2007 International Conference on Cooperative Information Systems (CoopIS 2007) (Lecture Notes in Computer Science, Vol. 4803), pages 417-426, Vilamoura, Portugal, November 2007

A. Wun, H-A Jacobsen. “A Policy Framework for Content-based Publish/Subscribe Middleware”. ACM Middleware Conference. Newport Beach, CA, United States. November 2007.

T. Taylor, S. Brooks, J. McHugh. “NetBytes Viewer: An Entity-based Netflow Visualization Utility for Identifying Intrusive Behavior”. Workshop on Visualization Computer Security (VizSEC). Sacramento, CA, United States. October 2007.

Q. Zhu, D. Dawson, A. Agrawal, H.A. Müller. “Leveraging Conceptual Models of Trust in Automated Systems to Promote ‘Appropriate Trust’ in Autonomic Systems”. In Proceedings of the IEEE Pacific Rim Conference on Communications, Computers and Signal Processing (PACRIM 2007). Victoria, BC, Canada. August 2007.

Z. Xu, P. Martin, W. Powley, and F. Zulkernine. "Reputation-Enhanced QoS-based Web Services Discovery". In Proceedings of the 5th IEEE International Conference on Web Services (ICWS '07), pp. 249-256. Salt Lake City, UT, United States. July 2007.

D. Zhang, R. Kotagiri, T. Ebringer. "Role Engineering Using Graph Optimisation". In Proceedings of the 12th ACM Symposium on Access control Models and Technologies (SACMAT 2007). ACM Press. Sophia Antipolis, France. June 2007.

F. Zulkernine, P. Martin. "Conceptual Framework for a Comprehensive Service Management Middleware". In Proceedings of the 2nd International IEEE Workshop on Service Oriented Architectures in Converging Networked Environments (SOCNE '07) in conjunction with AINA 2007, Vol. 1, pp. 995-1000. Niagara Falls, ON, Canada. May 2007.

K. Kontogiannis, G.A. Lewis, D.B. Smith, M. Litoiu, H.A. Müller, S. Schuster, E. Stroulia. “The Landscape of Service-Oriented Systems: A Research Perspective”. In Proceedings of the International Workshop on Systems Development in SOA Environments (SDSOA 2007), Workshop at the 29th IEEE/ACM International Conference on Software Engineering (ICSE 2007). Minneapolis, MN, United States. May 2007.

B. Cheng, R. de Lemos, S. Fickas, D. Garlan, M. Litoiu, J. Magee, H.A. Müller, R. Taylor, editors. Proceedings International Workshop on Software Engineering for Adaptive and Self-Managing Systems (SEAMS 2007), Workshop at 29th IEEE/ACM International Conference on Software Engineering (ICSE 2007), IEEE CS Press, 170 pages. Minneapolis, MN, United States. May 2007.

S. Neti, H.A. Müller. “Quality Criteria and an Analysis Framework for Self-healing Systems”. In Proceedings of the International Workshop on Software Engineering for Adaptive and Self-Managing Systems (SEAMS 2007), Workshop at 29th IEEE/ACM International Conference on Software Engineering (ICSE 2007). Minneapolis, MN, United States. May 2007.

R. Desmarais, H.A. Müller. “A Proposal for an Autonomic Grid Management System”. In Proceedings of the International Workshop on Software Engineering for Adaptive and Self-Managing Systems (SEAMS 2007), Workshop at 29th IEEE/ACM International Conference on Software Engineering (ICSE 2007). Minneapolis, MN, United States. May 2007.

P. Martin, W. Powley, W. Tian, K. Wilson, J. Zebedee, Z. Xu.“The WSDN of Autonomic Computing: Experiences in Implementing Autonomic Web Services”. In the Proceedings of ICSE Workshops, International Workshop on Software Engineering for Adaptive and Self-Managing Systems (SEAMS 2007), pp. 9-16. Minneapolis, MN, United States. May 2007.

S. Neti. “Quality Criteria and Analysis Framework for Self-Healing Systems”. M.Sc. Thesis, 92 pages. Department of Computer Science, University of Victoria. April 2007.

S. Sinclair, S.W. Smith, S. Trudeau, M.E. Johnson, A. Portera. “Information Risk in Financial Institutions: Field Study and Research Roadmap.” FinanceCom 2007. Springer-Verlag Lecture Notes in Business Information Processing, pp. 165-180, 2008. Montreal, QC, Canada.

A. Lapouchnian, Y. Yu, S. Liaskos, J. Mylopoulos. “Requirements-Driven Design of Autonomic Application Software”. IBM CASCON Conference. Toronto, ON, Canada. October 2006.

C. J. Kapser, M. W. Godfrey. “Cloning Considered Harmful, Considered Harmful”. Proceedings of the 13th Working Conference on Reverse Engineering (WCRE 2006). Benevento, Italy. October 2006.

S. Laqua, G. Patel, A. Sasse. “Personalized Focus-Metaphor Interfaces: An Eye Tracking Study on User Confusion”. Mensch und Computer 2006. Gelsenkirchen, Germany. September 2006.

C. J. Kapser, M. W. Godfrey. “Supporting the Analysis of Clones in Software Systems: A Case Study”. Journal of Software Maintenance and Evolution: Research and Practice, Vol. 18, No. 2. March/April 2006.

R. Al-Ekram, C. J. Kapser, R. Holt, M. W. Godfrey. “Cloning by Accident: An Empirical Study of Source Code Cloning Across Software Systems”. Proceedings of the International Symposium on Empirical Software Engineering (ISESE 2005). Noosa Heads, Australia. November 2005.

C. J. Kapser, M. W. Godfrey. “Improved Tool Support for the Investigation of Duplication in Software”. Proceedings of the 21st IEEE International Conference on Software Maintenance (ICSM 2005). Budapest, Hungary. September 2005.