All Stories

  1. A Causal Framework for Explainable Access Control: [Work in Progress Paper]
  2. Towards Explainable Access Control [BlueSky Paper]
  3. WiP: Enhancing the Comprehension of XACML Policies
  4. A Bargaining-Game Framework for Multi-Party Access Control
  5. Cognition in Social Engineering Empirical Research: a Systematic Literature Review
  6. A Comprehensive Study on Third-Party User Tracking in Mobile Applications
  7. Towards Obfuscation of Programmable Logic Controllers
  8. Mitigating Privilege Misuse in Access Control through Anomaly Detection
  9. HoneyICS: A High-interaction Physics-aware Honeynet for Industrial Control Systems
  10. Privacy-Preserving Multi-Party Access Control for Third-Party UAV Services
  11. Data Sharing in Social Networks
  12. The Influence of Human Factors on the Intention to Report Phishing Emails
  13. Towards A High-interaction Physics-aware Honeynet for Industrial Control Systems
  14. Poster: A Flexible Relationship-Based Access Control Policy Generator
  15. PICO
  16. Privacy-preserving policy evaluation in multi-party access control
  17. Combining Text and Visual Features to Improve the Identification of Cloned Webpages for Early Phishing Detection
  18. Testing the effectiveness of tailored phishing techniques in industry and academia
  19. Survey on Access Control for Community-Centered Collaborative Systems
  20. Behavior analysis in the medical sector
  21. Formal analysis of XACML policies using SMT
  22. Role Mining with Missing Values
  23. A severity-based quantification of data leakages in database systems
  24. A Hybrid Framework for Data Loss Prevention and Detection
  25. A Policy Framework for Data Fusion and Derived Data Control
  26. Risk-based Analysis of Business Process Executions
  27. An Authorization Service for Collaborative Situation Awareness
  28. Collaborative Access Decisions: Why Has My Decision Not Been Enforced?
  29. Data Governance and Transparency for Collaborative Systems
  30. Constructing Probable Explanations of Nonconformity: A Data-Aware and History-Based Approach
  31. An anomaly analysis framework for database systems
  32. Flow-based reputation with uncertainty: evidence-based subjective logic
  33. Preventing Information Inference in Access Control
  34. On Missing Attributes in Access Control
  35. SAFAX – An Extensible Authorization Service for Cloud Environments
  36. Pre-Distribution of Certificates for Pseudonymous Broadcast Authentication in VANET
  37. History-Based Construction of Alignments for Conformance Checking: Formalization and Implementation
  38. Analysis of XACML Policies with SMT
  39. Understanding Computer Security
  40. A reference model for reputation systems
  41. CollAC: Collaborative access control
  42. Data minimisation in communication protocols: a formal analysis framework and application to identity management
  43. Conviviality-driven access control policy
  44. Data Leakage Quantification
  45. Reduction of access control decisions
  46. Are On-Line Personae Really Unlinkable?
  47. Privacy Implications of Privacy Settings and Tagging in Facebook
  48. POSTER
  49. Controlling Break-the-Glass through Alignment
  50. Data reliability in home healthcare services
  51. Privacy-Aware Web Service Composition and Ranking
  52. A SEMANTIC SECURITY FRAMEWORK FOR SYSTEMS OF SYSTEMS
  53. The POLIPO Security Framework
  54. PERSONA - A Personalized Data Protection Framework
  55. Symbolic Privacy Analysis through Linkability and Detectability
  56. Privacy Analysis of User Behavior Using Alignments
  57. Privacy-Aware Web Service Composition and Ranking
  58. POSTER: TRIPLEX
  59. Policy Administration in Tag-Based Authorization
  60. Formal Modelling of (De)Pseudonymisation: A Case Study in Health Care Privacy
  61. GEM: A distributed goal evaluation algorithm for trust management
  62. Enforcing Access Control in Virtual Organizations Using Hierarchical Attribute-Based Encryption
  63. FLOW-BASED REPUTATION: MORE THAN JUST RANKING
  64. Impact of ICT on Home Healthcare
  65. Measuring Privacy Compliance Using Fitness Metrics
  66. Requirements engineering within a large-scale security-oriented research project: lessons learned
  67. Measuring Privacy Compliance with Process Specifications
  68. Security Risk Management by Qualitative Vulnerability Analysis
  69. A Security Framework for Systems of Systems
  70. Formal Privacy Analysis of Communication Protocols for Identity Management
  71. Engineering Secure Software and Systems
  72. Purpose Control: Did You Process the Data for the Intended Purpose?
  73. Modeling Identity-Related Properties and Their Privacy Strength
  74. Organizational Patterns for Security and Dependability
  75. A Flexible Architecture for Privacy-Aware Trust Management
  76. Engineering and verifying agent-oriented requirements augmented by business constraints with $${\mathcal{B}}$$ -Tropos
  77. Engineering Secure Software and Systems
  78. Security Requirements Engineering: The SI* Modeling Language and the Secure Tropos Methodology
  79. A vulnerability-centric requirements engineering framework: analyzing security attacks, countermeasures, and requirements based on vulnerabilities
  80. THE SI* MODELING FRAMEWORK: METAMODEL AND APPLICATIONS
  81. S&D Pattern Deployment at Organizational Level: A Prototype for Remote Healthcare System
  82. POLIPO: Policies & OntoLogies for Interoperability, Portability, and autOnomy
  83. Towards the development of privacy-aware systems
  84. Engineering Secure Software and Systems
  85. Goal-Equivalent Secure Business Process Re-engineering
  86. A Modeling Ontology for Integrating Vulnerabilities into Security Requirements Conceptual Foundations
  87. Reputation-Based Ontology Alignment for Autonomy and Interoperability in Distributed Access Control
  88. How to integrate legal requirements into a requirements engineering methodology for the development of security and privacy patterns
  89. Why Eliciting and Managing Legal Requirements Is Hard
  90. Requirements model generation to support requirements elicitation: the Secure Tropos experience
  91. Risk as Dependability Metrics for the Evaluation of Business Solutions: A Model-driven Approach
  92. ${\cal B}$ -Tropos
  93. Perceived risk assessment
  94. An evaluation of business solutions in manufacturing enterprises
  95. Computer-aided Support for Secure Tropos
  96. FROM HIPPOCRATIC DATABASES TO SECURE TROPOS: A COMPUTER-AIDED RE-ENGINEERING APPROACH
  97. From Trust to Dependability through Risk Analysis
  98. How to capture, model, and verify the knowledge of legal, security, and privacy experts
  99. Detecting Conflicts of Interest
  100. Requirements engineering for trust management: model, methodology, and reasoning
  101. Hierarchical hippocratic databases with minimal disclosure for virtual organizations
  102. Privacy Is Linking Permission to Purpose
  103. Creating Objects in the Flexible Authorization Framework
  104. Designing Security Requirements Models Through Planning
  105. Using a security requirements engineering methodology in practice: The compliance with the Italian data protection legislation
  106. Modeling Social and Individual Trust in Requirements Engineering Methodologies
  107. Minimal Disclosure in Hierarchical Hippocratic Databases with Delegation
  108. Security and Trust Requirements Engineering
  109. Maintaining privacy on derived objects
  110. Modeling security requirements through ownership, permission and delegation
  111. ST-tool: a CASE tool for security requirements engineering
  112. ST-Tool: A CASE Tool for Modeling and Analyzing Trust Requirements
  113. Requirements Engineering Meets Trust Management
  114. Filling the Gap between Requirements Engineering and Public Key/Trust Management Infrastructures
  115. An Ontology for Secure Socio-Technical Systems
  116. An Ontology for Secure Socio-Technical Systems
  117. Formal Analysis of BPMN Via a Translation into COWS
  118. Reasoning About Risk in Agent’s Deliberation Process: A Jadex Implementation
  119. Privacy-Aware Web Service Composition and Ranking
  120. Organizational Patterns for Security and Dependability
  121. A Model-Driven Approach for the Specification and Analysis of Access Control Policies
  122. Modelling Security and Trust with Secure Tropos
  123. Modelling Security and Trust with Secure Tropos
  124. Modelling Security and Trust with Secure Tropos
  125. Modelling Security and Trust with Secure Tropos