Publications

More Publications

. SPECTECTOR: Principled detection of speculative information flows. In S&P, 2020.

PDF Code Project arXiv

. Information-Flow Control for Database-backed Applications. In EuroS&P, 2019.

PDF Project

. Synthesis of Probabilistic Privacy Enforcement. In CCS, 2017.

PDF Code Project

. Securing Databases from Probabilistic Inference. In CSF, 2017.

PDF Code Project Extended Version

. Test Execution Checkpointing for Web Applications. In ISSTA, 2017.

PDF Code

. Optimal Security-Aware Query Processing. In VLDB, 2014.

PDF Project

. A Model-Driven Approach for Securing Software Architectures. In Secrypt, 2013.

PDF

. On the Notion of Redundancy in Access Control Policies. In SACMAT, 2013.

PDF

Teaching

Universidad Politécnica de Madrid:

  • Guest lecturer for Seguridad Informatica - Fall 2018

ETH Zurich:

  • TA for Security Engineering — Autumn 2013–2016
  • TA for Information Security — Spring 2015, 2018
  • TA for Design of Digital Circuits — Spring 2017
  • TA for Informatik fur Mathematiker und Physiker — Autumn 2017

Università degli Studi di Bergamo:

  • TA for Object Oriented Programming – Spring 2011–2012

Students:

  • Andrés Sanchéz, Detecting speculative information-flows in large code bases, Bachelor thesis, IMDEA Software Institute, Spring 2019
  • Javier Lopez Alonso, Formal models for speculative execution, Bachelor thesis, IMDEA Software Institute, Spring 2019
  • Andrés Sanchéz, Reasoning about speculative execution attacks, IMDEA Software Institute, Fall 2018
  • Tristan Buchs, Checkpointing-Based Testing, Master thesis, ETH Zurich, Fall 2014
  • Ernst Zachow, Improving the Efficiency of Fuzz Testing Using Checkpointing, Master thesis, ETH Zurich, Fall 2013
  • Marco Lazzari, Systematic Testing of TOR, Master thesis, ETH Zurich, Fall 2013
  • Mohammed Ajil, Strong and Secure Access Control for PostgreSQL, Bachelor thesis, ETH Zurich, Spring 2016

Service

2019 — 49th IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), External reviewer

2018 — 19th Privacy Enhancing Technologies Symposium (PETS), External reviewer

2018 — IEEE Transactions on Information Forensics and Security (TIFS), External reviewer

2017 — ACM Conference on Computer and Communications Security (CCS), External reviewer

2017 — VLDB Journal, External reviewer

2016 — European Symposium on Research in Computer Security (ESORICS), External reviewer

2016 — International Conference on Fundamental Approaches to Software Engineering (FASE), External reviewer

2013 — VLDB Journal, External reviewer

Contact