Journals and Papers in International Conferences
- David Matos, Miguel Pardal, Miguel Correia. Sanare: Pluggable Intrusion Recovery for Web Applications. IEEE Transactions on Dependable and Secure Computing (TDSC). Jan 2022. (journal)
- Ibéria Medeiros, Nuno Neves, Miguel Correia. Statically Detecting Vulnerabilities by Processing Programming Languages as Natural Language. IEEE Transactions on Reliability. Jan 2022. (journal)
- Cláudio Martins, Ibéria Medeiros. Generating Quality Threat Intelligence Leveraging OSINT and a Cyber Threat Unified Taxonomy. ACM Transactions on Privacy and Security, Vol. 25-3, No. 19, pages 1-39, Aug 2022. (journal)
- Gustavo Gonzalez-Granadillo, Mario Faiella, Ibéria Medeiros, Rui Azevedo, Susana Gonzalez-Zarzosa. ETIP: An Enriched Threat Intelligence Platform for Improving OSINT Correlation, Analysis, Visualisation and Sharing Capabilities. Journal of Information Security and Applications, Elsevier. Vol. 58., pages 102715, May 2021. (journal)
- Ibéria Medeiros, Miguel Beatriz, Nuno Neves, Miguel Correia. SEPTIC: Detecting Injection Attacks and Vulnerabilities Inside the DBMS. IEEE Transactions on Reliability. Vol. 68, No. 3, pages 1168 - 1188, Sept 2019. (journal)
- João Inácio, Ibéria Medeiros. Effectiveness on C Flaws Checking and Removal (fast abstract). In Proceedings of the 52nd IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Baltimore, Maryland, USA, June 2022. (paper)
- Nuno Neves. Towards Fuzzing Target Lines (fast abstract). In Proceedings of the 52nd IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Baltimore, Maryland, USA, June 2022. (paper)
- Mihail Brinza, Miguel Correia, João Pereira. Virtual Static Security Analyzer for Web Applications. In Proceedings of the 20th IEEE International Conference on Trust, Security and Privacy in Computing and Communications (IEEE TrustCom 2021), Shenyang, China, Aug 2021. (paper)
- João Caseirito, Ibéria Medeiros. Finding Web Application Vulnerabilities with an Ensemble Fuzzing (fast abstract). In Proceedings of the 51st IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), Taipei, Taiwan, June 2021. (paper)
- João Caseirito, Ibéria Medeiros. Improving Web Application Vulnerability Detection Leveraging Ensemble Fuzzing. In Proceedings of the International Conference on Evaluation of Novel Approaches to Software Engineering (ENASE), Online Streaming, April 2021. (paper)
- Alexandra Figueiredo, Tatjana Lide, David Matos and Miguel Correia. MERLIN: Multi-Language Web Vulnerability Detection. In Proceedings of the 19th IEEE International Symposium on Network Computing and Applications (NCA), Nov 2020. (paper)
- Alexandra Figueiredo, Tatjana Lide and Miguel Correia. Multi-Language Web Vulnerability Detection (fast abstract). In Proceedings of the 31st International Symposium on Software Reliability Engineering (ISSRE), Coimbra, Portugal, Oct 2020. (paper)
- Ana Fidalgo, Ibéria Medeiros, Paulo Antunes, Nuno Neves. Towards a Deep Learning Model for Vulnerability Detection on Web Application Variants. In Proceedings of the Workshop on Testing of Configurable and Multi-variant Systems (ToCaMS), Porto, Portugal, Oct 2020. (paper)
- Francisco Araújo, Ibéria Medeiros, Nuno Neves. Generating Tests for the Discovery of Security Flaws in Product Variants. In Proceedings of the International Workshop on Testing Extra-Functional Properties and Quality Characteristics of Software Systems (ITEQS), Porto, Portugal, Oct 2020. (paper)
- Ibéria Medeiros, Nuno Neves. Effect of Coding Styles in Detection of Web Application Vulnerabilities. In Proceedings of the European Dependable Computing Conference (EDCC), Munich, Germany, Sept. 2020. (paper)
- Ibéria Medeiros, Nuno Neves. Impact of Coding Styles on Behaviours of Static Analysis Tools for Web Applications (fast abstract). In Proceedings of the 50th IEEE/IFIP International Conference on Dependable Systems and Networks (DSN'20), Valencia, Spain, June 2020. (paper)
- Ricardo Morgado, Ibéria Medeiros, Nuno Neves. Towards Web Application Security by Automated Code Correction. In Proceedings of the International Conference on Evaluation of Novel Approaches to Software Engineering (ENASE), Prague, Czech Republic, May 2020. (paper)
Papers in National Conferences
- Francisco Araújo, Ibéria Medeiros, Nuno Neves. Geração de Testes de Software para Verificação de Faltas e Funcionalidades. Simpósio de Informática, INForum 2019, Guimarães, Portugal, Sept. 2019. (paper)
- Paulo Antunes, Ibéria Medeiros, Nuno Neves. Remoção Automática de Vulnerabilidades usando Análise Estática de Código Direcionada. Simpósio de Informática, INForum 2018, Coimbra, Portugal, Sept. 2018. (paper)
Master Thesis
- João Inácio. Automatic Removal of Flaws in Embedded System Software, Master in Information Security, Departamento de Informática, Faculdade de Ciências da Universidade de Lisboa, May 2022. Advisors: Ibéria Medeiros.
- Nuno Durão. Discovery of Web Attacks by Inspecting HTTPS Network Traffic with Machine Learning and Similarity Search, Master in Information Security, Departamento de Informática, Faculdade de Ciências da Universidade de Lisboa, May 2022. Advisors: Ibéria Medeiros, Vinicius Cogo.
- João Caseirito. Attacking Web Applications for Dynamic Discovering of Vulnerabilities, Master in Information Security, Departamento de Informática, Faculdade de Ciências da Universidade de Lisboa, February 2022. Advisors: Ibéria Medeiros.
- Miguel Moreira. Imposição de Segurança em Aplicações Web a partir de Linguagem Intermédia, Master in Informatics Engineering, Departamento de Informática, Faculdade de Ciências da Universidade de Lisboa, July 2021. Advisors: Francisco Martins, Ibéria Medeiros.
- Mihail Brinza. Virtual Static Security Analyzer for Web Applications, Master in Information Systems and Software Engineering, Departamento de Engenharia Informática, Instituto Superior Técnico, December 2020. Advisors: Miguel Correia, João Pereira.
- Ana Fidalgo. Detecting Web Vulnerabilities in an Intermediate Language Resorting of Machine Learning Techniques, Master in Data Science, Departamento de Informática, Faculdade de Ciências da Universidade de Lisboa, November 2020. Advisors: Ibéria Medeiros, Nuno Neves.
- Alexandra Figueiredo. MERLIN: Multi-Language Web Vulnerability Detection, Master in Information Systems and Software Engineering, Departamento de Engenharia Informática, Instituto Superior Técnico, November 2020. Advisors: Miguel Correia.
- Bruno Lourenço. Vulnerabilities Detection at Runtime and Continuous Auditing, Master in Information Security, Departamento de Informática, Faculdade de Ciências da Universidade de Lisboa, April 2020. Advisors: Ibéria Medeiros, Nuno Neves.
- Ricardo Morgado. Invalidating web applications attacks by employing the right secure code, Master in Informatics, Departamento de Informática, Faculdade de Ciências da Universidade de Lisboa, September 2019. Advisors: Ibéria Medeiros, Nuno Neves.
- Francisco Araújo. Generating software tests to check for flaws and functionalities, Master in Informatics Engineering, Departamento de Informática, Faculdade de Ciências da Universidade de Lisboa, September 2019. Advisors: Nuno Neves, Ibéria Medeiros.
- Paulo Antunes, Monitoring Web Applications for Vulnerability Discovery and Removal Under Attack, Master in Informatics Engineering, Departamento de Informática, Faculdade de Ciências da Universidade de Lisboa, October 2018. Advisors: Nuno Neves, Ibéria Medeiros.