ACM Home Page
Author image not provided  Michael E Locasto

No contact information provided yet.


Authors:
Add personal information
  Affiliation history
Bibliometrics: publication history
Publication years2001-2009
Publication count18
Citation Count36
Available for download8
Downloads (6 Weeks)66
Downloads (12 Months)540
SEARCH
ROLE
Arrow RightAuthor only


AUTHOR'S COLLEAGUES
See all colleagues of this author

SUBJECT AREAS
See all subject areas



AUTHOR PROFILE PAGES (BETA)
Project background

BOOKMARK & SHARE


18 search results
 Sort by: 
Page: 1   2    next    >>
Export results as: BibTeX   EndNotes   ACM Ref
2009
1
Helping Students 0wn Their Own Code
Michael E. Locasto
May 2009
IEEE Security and Privacy , Volume 7 Issue 3
Publisher: IEEE Educational Activities Department
Full text available: Publisher SitePublisher Site
Additional Information:full citation, abstract
 Bibliometrics:  Downloads (6 Weeks): n/a,   Downloads (12 Months): n/a,   Citation Count: 0

It's a difficult mental exercise to simultaneously envision how a system could be forced to fail while you're busy designing how it's meant to work. At George Mason University, instructors give their students practice at this skill by requiring them ...

Keywords: Education, security, privacy, attack scripts, coding
 
2008
2
Online Network Forensics for Automatic Repair Validation
Michael E. Locasto, Matthew Burnside, Angelos D. Keromytis
November 2008
IWSEC '08: Proceedings of the 3rd International Workshop on Security: Advances in Information and Computer Security
Publisher: Springer-Verlag
Additional Information:full citation, abstract
 Bibliometrics:  Downloads (6 Weeks): n/a,   Downloads (12 Months): n/a,   Citation Count: 0

Automated intrusion prevention and self-healing software are active areas of security systems research. A major hurdle for the widespread deployment of these systems is that many system administrators lack confidence in the quality of the generated fixes. ...

Keywords: automatic repair validation, software self-healing
 
3
Return Value Predictability Profiles for Self---healing
Michael E. Locasto, Angelos Stavrou, Gabriela F. Cretu, Angelos D. Keromytis, Salvatore J. Stolfo
November 2008
IWSEC '08: Proceedings of the 3rd International Workshop on Security: Advances in Information and Computer Security
Publisher: Springer-Verlag
Additional Information:full citation, abstract
 Bibliometrics:  Downloads (6 Weeks): n/a,   Downloads (12 Months): n/a,   Citation Count: 0

Current embryonic attempts at software self---healing produce mechanisms that are often oblivious to the semantics of the code they supervise. We believe that, in order to help inform runtime repair strategies, such systems require a more detailed analysis ...

Keywords: anonamly detection, behavior profiling, self-healing
 
4
Traps, events, emulation, and enforcement: managing the yin and yang of virtualization-based security
Sergey Bratus, Michael E. Locasto, Ashwin Ramaswamy, Sean W. Smith
October 2008
VMSec '08: Proceedings of the 1st ACM workshop on Virtual machine security
Publisher: ACM
Full text available: PdfPdf (221.17 KB)
Additional Information:full citation, abstract, references, index terms
 Bibliometrics:  Downloads (6 Weeks): 15,   Downloads (12 Months): 222,   Citation Count: 0

We question current trends that attempt to leverage virtualization techniques to achieve security goals. We suggest that the security role of a virtual machine centers on being a policy interpreter rather than a resource provider. These two roles (security ...

Keywords: debugging, security policy, traps, virtualization
 
5
Casting out Demons: Sanitizing Training Data for Anomaly Sensors
Gabriela F. Cretu, Angelos Stavrou, Michael E. Locasto, Salvatore J. Stolfo, Angelos D. Keromytis
May 2008
SP '08: Proceedings of the 2008 IEEE Symposium on Security and Privacy (sp 2008) - Volume 00 , Volume 00
Publisher: IEEE Computer Society
Full text available: Publisher SitePublisher Site
Additional Information:full citation, abstract, index terms
 Bibliometrics:  Downloads (6 Weeks): n/a,   Downloads (12 Months): n/a,   Citation Count: 0

The efficacy of Anomaly Detection (AD) sensors depends heavily on the quality of the data used to train them. Artificial or contrived training data may not provide a realistic view of the deployment environment. Most realistic data sets are dirty; that ...

 
6
The Hidden Difficulties of Watching and Rebuilding Networks
Michael E. Locasto, Angelos Stavrou
March 2008
IEEE Security and Privacy , Volume 6 Issue 2
Publisher: IEEE Educational Activities Department
Full text available: Publisher SitePublisher Site
Additional Information:full citation, abstract, index terms
 Bibliometrics:  Downloads (6 Weeks): n/a,   Downloads (12 Months): n/a,   Citation Count: 0

Network protection can be difficult even for experienced IT staff and security researchers. In this installment of Secure Systems, the authors focus on two areas of network defense that are particularly troublesome to manage: network intrusion recovery ...

Keywords: network defense, network intrusion recovery, network monitoring, Secure Systems
 
7
Integrity postures for software self-defense
Michael E. Locasto / Angelos D. Keromytis
January 2008
Integrity postures for software self-defense
Publisher: Columbia University
Additional Information:full citation, abstract
 Bibliometrics:  Downloads (6 Weeks): n/a,   Downloads (12 Months): n/a,   Citation Count: 0

Software currently lacks the capability to respond intelligently and automatically to attacks in a way that preserves both its availability and its integrity. This problem is exacerbated by the occurrence of attacks that exploit previously unknown vulnerabilities ...

 
2007
8
On the infeasibility of modeling polymorphic shellcode
Yingbo Song, Michael E. Locasto, Angelos Stavrou, Angelos D. Keromytis, Salvatore J. Stolfo
October 2007
CCS '07: Proceedings of the 14th ACM conference on Computer and communications security
Publisher: ACM
Full text available: PdfPdf (543.93 KB)
Additional Information:full citation, abstract, references, index terms
 Bibliometrics:  Downloads (6 Weeks): 33,   Downloads (12 Months): 135,   Citation Count: 3

Polymorphic malcode remains a troubling threat. The ability formal code to automatically transform into semantically equivalent variants frustrates attempts to rapidly construct a single, simple, easily verifiable representation. We present a quantitative ...

Keywords: polymorphism, shellcode, signature generation, statistical models
 
9
From STEM to SEAD: speculative execution for automated defense
Michael E. Locasto, Angelos Stavrou, Gabriela F. Cretu, Angelos D. Keromytis
June 2007
ATC'07: 2007 USENIX Annual Technical Conference on Proceedings of the USENIX Annual Technical Conference
Publisher: USENIX Association
Additional Information:full citation, abstract, references, index terms
 Bibliometrics:  Downloads (6 Weeks): n/a,   Downloads (12 Months): n/a,   Citation Count: 3

Most computer defense systems crash the process that they protect as part of their response to an attack. Although recent research explores the feasibility of self-healing to automatically recover from an attack, self-healing faces some obstacles before ...

 
10
ShieldGen: Automatic Data Patch Generation for Unknown Vulnerabilities with Informed Probing
Weidong Cui, Marcus Peinado, Helen J. Wang, Michael E. Locasto
May 2007
SP '07: Proceedings of the 2007 IEEE Symposium on Security and Privacy
Publisher: IEEE Computer Society
Full text available: Publisher SitePublisher Site
Additional Information:full citation, abstract, index terms
 Bibliometrics:  Downloads (6 Weeks): n/a,   Downloads (12 Months): n/a,   Citation Count: 7

In this paper, we present ShieldGen, a system for automatically generating a data patch or a vulnerability signature for an unknown vulnerability, given a zero-day attack instance. The key novelty in our work is that we leverage knowledge of the data ...

 
  Page: 1   2    next    >>