Systems Security

Contact person: Stefano Zanero

Our research group works on Systems (i.e. applied, as opposed to theoretical) security topics.

One main line of research is focused on intrusion and malware detection. This has been pursued with the use of anomaly detection systems, mainly implemented using learning algorithms. More recently, our focus shifted to automation of malware analysis, in the context of the European research project WOMBAT.

In the context of the European projects WOMBAT and SysSec we are also studying the shifting frontiers of cybercrime, spacing from underground economy, to an in-depth study of phone phishing.

Finally, we work and perform research in the field of digital forensics, with our participation to the research project I-Code, and by participating to the activities of the digital forensics course held by University of Milan.

Recent selected publications:

  • A. Volpatto, F. Maggi and S. Zanero, "Effective multimodel anomaly detection using cooperative negotiation," in Proc. Int. Conf. Decision and Game Theory for Security, pp. 180-191, 2010. doi
  • P. Milani Comparetti, G. Salvaneschi, C. Kolbitsch, E. Kirda, C. Kruegel and S. Zanero, "Identifying Dormant Functionality in Malware Programs," in Proc. IEEE Symp. Security and Privacy, pp. 61-76, 2010. doi
  • F. Maggi, M. Matteucci and S. Zanero, "Detecting Intrusions through System Call Sequence and Argument Analysis," in IEEE Trans. on Dependable and Secure Computing, Vol. 7, No. 4, pp. 381-395, 2010. doi
  • C. Criscione, F. Maggi, G. Salvaneschi and S. Zanero, "Integrated Detection of Attacks Against Browsers, Web Applications and Databases," in Proc. IEEE European Conf. Computer Network Defense, pp. 37-45, 2009. bibtex doi
  • L. Carettoni, C. Merloni and S. Zanero, "Studying Bluetooth Malware Propagation: the BlueBag Project," in IEEE Security & Privacy, Vol. 5, No. 2, pp. 17-25, 2007. doi
