@article{cisuc-5940-2020, author={Casaleiro, R. and Paulo Silva and Simões, P. and Boavida, F. and Edmundo Monteiro and Marilia Curado and Tiago Cruz and Nuno Antunes and Marco Vieira and Riccio, G.M. and Verzillo, M.P. and Marek, P. and Goncalves, L. and Bagnato, A. and Valentini, A. and Intonti, B. and Manzo, R. and Posta, V.D. and Zampolini, L. and Rooij, J.v. and Houf, R. and Rios, E. and Iturbe, E. and Gutierrez, I. and Anguita, S. and Gomez, C. and Echevarria, J. and Houf, H. and Nicoletti, L. and Lotti, R. and Natale, D. and Pizzo, L.d. and Pane, F. and Schiavo, F. }, title={Protection and control of personal identifiable information: The PoSeID-on approach}, editor={Henry Stewart Publications 2398-1679 (2019)}, journal={Journal of Data Protection & Privacy}, volume={3}, pages={n/a}, number={2}, year=2020, address={n/a}, } @article{cisuc-6248-2020, author={Paulo Silva and Casaleiro, R. and Simões, P. and Nuno Antunes and Marilia Curado and Edmundo Monteiro }, title={Risk Management and Privacy Violation Detection in the PoSeID-on Data Privacy Platform}, editor={Springer}, journal={SN Computer Science}, volume={1}, number={n/a}, pages={n/a}, year=2020, address={n/a}, } @article{cisuc-5772-2019, author={Alic, A.S. and Almeida, J. and Aloisio, G. and Andrade, N. and Nuno Antunes and Ardagna, D. and Badia, R.M. and Basso, T. and Blanquer, I. and Braz, T. and Brito, A. and Elia, D. and Fiore, S. and Guedes, D. and Lattuada, M. and Lezzi, D. and Maciel, M. and Jr, W.M. and Mestre, D. and Moraes, R. and Morais, F. and Pires, C.E. and Kozievitchi, N.P. and Santos, W.d. and Paulo Silva and Marco Vieira }, title={BIGSEA: A Big Data analytics platform for public transportation information}, editor={Elsevier}, journal={Future Generation Computer Systems}, number={n/a}, pages={n/a}, year=2019, address={n/a}, } @article{cisuc-5886-2019, author={Braga, A.M. and Dahab, R. and Nuno Antunes and Laranjeiro, N. and Marco Vieira }, title={Understanding How to Use Static Analysis Tools for Detecting Cryptography Misuse in Software}, journal={IEEE Transactions on Reliability}, number={n/a}, pages={n/a}, year=2019, address={n/a}, } @article{cisuc-5639-2018, author={Paulo Silva and Basso, T. and Nuno Antunes and Moraes, R. and Marco Vieira and Simões, P. and Edmundo Monteiro }, title={A Europe-Brazil Context for Secure Data Analytics in the Cloud}, journal={IEEE Security & Privacy}, volume={16}, number={6}, pages={52--60}, year=2018, address={n/a}, } @article{cisuc-4998-2016, author={Nuno Antunes and Marco Vieira }, title={Designing vulnerability testing tools for web services: approach, components, and tools}, journal={International Journal of Information Security}, number={n/a}, pages={1--23}, year=2016, address={n/a}, } @article{cisuc-4066-2015, author={Nuno Antunes and Marco Vieira }, title={Assessing and Comparing Vulnerability Detection Tools for Web Services: Benchmarking Approach and Examples}, journal={IEEE Transactions on Services Computing}, number={n/a}, pages={n/a}, year=2015, address={n/a}, } @article{cisuc-3970-2014, author={Nuno Antunes and Marco Vieira }, title={Penetration Testing for Web Services}, editor={IEEE}, journal={IEEE Computer}, volume={47}, number={n/a}, pages={30--36}, year=2014, address={n/a}, } @article{cisuc-2702-2012, author={Nuno Antunes and Marco Vieira }, title={Defending against Web Application Vulnerabilities}, editor={IEEE Computer Society}, journal={Computer}, volume={45}, number={2}, pages={66--72}, year=2012, address={n/a}, } @inproceedings{cisuc-5942-2020, author={Paulo Silva and Godinho, C. and Gonçalves, C. and Nuno Antunes and Marilia Curado }, title={Using Natural Language Processing to Detect Privacy Violations in Online Contracts}, booktitle={The 35th ACM/SIGAPP Symposium on AppliedComputing (SAC ’20)}, year=2020, address={n/a}, } @inproceedings{cisuc-6014-2020, author={Casaleiro, R. and Paulo Silva and Simões, P. and Nuno Antunes and Marilia Curado and Edmundo Monteiro and Boavida, F. }, title={Gestão e Análise de Riscos na Plataforma de Proteção de Dados Pessoais Poseidon}, booktitle={9º Congresso Luso-Moçambicano de Engenharia}, year=2020, address={n/a}, } @inproceedings{cisuc-6258-2020, author={Naghmeh Ivaki and Nuno Antunes }, title={SIDE: Security-aware Integrated Development Environment}, booktitle={The 31st International Symposium on Software Reliability Engineering (ISSRE 2020)}, year=2020, address={n/a}, } @inproceedings{cisuc-5888-2019, author={Cardoso, W. and Martins, E. and Laranjeiro, N. and Nuno Antunes }, title={Combining State and Interface -Based Robustness Testing for OpenStack Components}, booktitle={9th Latin-American Symposium on Dependable Computing (LADC 2019)}, year=2019, address={n/a}, } @inproceedings{cisuc-5937-2019, author={Valentim, I. and Lourenço, Nuno and Nuno Antunes }, title={The Impact of Data Preparation on the Fairness of Software Systems}, booktitle={International Symposium on Software Reliability Engineering (ISSRE 2019)}, year=2019, address={n/a}, } @inproceedings{cisuc-6020-2019, author={José Flora and Nuno Antunes }, title={Studying the Applicability of Intrusion Detection to Multi-Tenant Container Environments}, booktitle={2019 15th European Dependable Computing Conference (EDCC)}, year=2019, address={n/a}, } @inproceedings{cisuc-5640-2018, author={Alic, A.S. and Almeida, J. and Jr, W.M. and Guedes, D. and Santos, W.d. and Blanquer, I. and Fiore, S. and Kozievitchi, N.P. and Andrade, N. and Braz, T. and Brito, A. and Pires, C.E. and Nuno Antunes and Marco Vieira and Paulo Silva and Ardagna, D. and Fonseca, K. and Lezzi, D. and Elia, D. and Moraes, R. and Basso, T. and Cavassin, W.H. }, title={GIS and Data: Three applications to enhance Mobility}, booktitle={GeoInfo 2018}, year=2018, address={n/a}, } @inproceedings{cisuc-5296-2017, author={Ivano Alessandro Elia and Nuno Antunes and Laranjeiro, N. and Marco Vieira }, title={An Analysis of OpenStack Vulnerabilities}, booktitle={13th European Dependable Computing Conference (EDCC)}, year=2017, address={n/a}, } @inproceedings{cisuc-5297-2017, author={Braga, A.M. and Dahab, R. and Nuno Antunes and Laranjeiro, N. and Marco Vieira }, title={Practical Evaluation of Static Code Analysis Tools for Cryptography: Benchmarking Method and Case Study}, booktitle={The IEEE 28th International Symposium on Software Reliability Engineering (ISSRE 2017)}, year=2017, address={n/a}, } @inproceedings{cisuc-5000-2016, author={Milenkoski, A. and Jayaram, K.R. and Nuno Antunes and Marco Vieira and Kounev, S. }, title={Quantifying the Attack Detection Accuracy of Intrusion Detection Systems in Virtualized Environments}, booktitle={International Symposium on Software Reliability Engineering (ISSRE) }, year=2016, address={n/a}, } @inproceedings{cisuc-5002-2016, author={Luís Ventura and Nuno Antunes }, title={Experimental Assessment of NoSQL Databases Dependability}, booktitle={European Dependable Computing Conference (EDCC2016)}, year=2016, address={n/a}, } @inproceedings{cisuc-5025-2016, author={Alves, H. and Fonseca, B. and Nuno Antunes }, title={Software Metrics and Security Vulnerabilities: Dataset and Exploratory Study}, booktitle={12th European Dependable Computing Conference (EDCC), 2016}, year=2016, address={n/a}, } @inproceedings{cisuc-5026-2016, author={Matsunaga, A.P.S. and Nuno Antunes and Moraes, R. }, title={Coverage Metrics and Detection of Injection Vulnerabilities: An Experimental Study}, booktitle={12th European Dependable Computing Conference (EDCC), 2016}, year=2016, address={n/a}, } @inproceedings{cisuc-4511-2015, author={Milenkoski, A. and Payne, B.D. and Nuno Antunes and Marco Vieira and Kounev, S. and Avritzer, A. and Luft, M. }, title={Evaluation of Intrusion Detection Systems in Virtualized Environments Using Attack Injection}, booktitle={18th International Symposium on Research in Attacks, Intrusions and Defenses, RAID 2015}, year=2015, address={n/a}, } @inproceedings{cisuc-4512-2015, author={Nuno Antunes and Marco Vieira }, title={On the Metrics for Benchmarking Vulnerability Detection Tools}, booktitle={Dependable Systems and Networks (DSN), 2015 45th Annual IEEE/IFIP International Conference on}, year=2015, address={n/a}, } @inproceedings{cisuc-4521-2015, author={Carvalho, D. and Nuno Antunes and Milenkoski, A. and Kounev, S. }, title={Challenges of Assessing the Hypercall Interface Robustness (fast abstract)}, booktitle={45th Annual IEEE/IFIP International Conference on Dependable Systems and Networks, DSN 2015}, year=2015, address={n/a}, } @inproceedings{cisuc-4021-2014, author={Areias, C. and Nuno Antunes and Cunha, J.C. }, title={On Applying FMEA to SOAs: A Proposal and Open Challenges}, booktitle={6th International Workshop on Software Engineering for Resilient Systems (SERENE'14)}, year=2014, address={n/a}, } @inproceedings{cisuc-4112-2014, author={Milenkoski, A. and Payne, B.D. and Nuno Antunes and Marco Vieira and Kounev, S. }, title={An Analysis of Hypercall Handler Vulnerabilities }, booktitle={2014 IEEE 25th International Symposium on Software Reliability Engineering (ISSRE)}, year=2014, address={n/a}, } @inproceedings{cisuc-4113-2014, author={Duchi, F. and Nuno Antunes and Ceccarelli, A. and Vella, G. and Rossi, F. and Bondavalli, A. }, title={Cost-Effective Testing for Critical Off-The-Shelf Services}, booktitle={Workshop Paper, 1st International Workshop on DEvelopment, Verification and VAlidation of cRiTical Systems (DEVVARTS2014)}, year=2014, address={n/a}, } @inproceedings{cisuc-4520-2014, author={Basso, T. and Piardi, L. and Moraes, R. and Jino, M. and Nuno Antunes and Marco Vieira }, title={A Framework for Expressing and Enforcing Purpose-Based Privacy Policies}, booktitle={XVI Workshop de Testes e Tolerância a Falhas, WTF 2015}, year=2014, address={n/a}, } @inproceedings{cisuc-3347-2013, author={Nuno Antunes and Marco Vieira }, title={SOA-Scanner: An Integrated Tool to Detect Vulnerabilities in Service-Based Infrastructures}, booktitle={10th IEEE International Conference on Services Computing (SCC 2013)}, year=2013, address={n/a}, } @inproceedings{cisuc-3651-2013, author={Areias, C. and Nuno Antunes and Cunha, J.C. and Marco Vieira }, title={Towards Runtime V&V for Service Oriented Architectures}, booktitle={Sixth Latin-American Symposium on Dependable Computing}, year=2013, address={n/a}, } @inproceedings{cisuc-3663-2013, author={Basso, T. and Nuno Antunes and Moraes, R. and Marco Vieira }, title={An XML-based Policy Model for Access Control in Web Applications}, booktitle={24th International Conference on Database and Expert Systems Applications (DEXA '13)}, year=2013, address={n/a}, } @inproceedings{cisuc-3664-2013, author={Nuno Antunes and Brancati, F. and Ceccarelli, A. and Bondavalli, A. and Marco Vieira }, title={A Monitoring and Testing Framework for Critical Off-The-Shelf Applications and Services}, booktitle={3rd IEEE International Workshop on Software Certification (WoSoCer2013) co-located with the 24rd IEEE International Symposium on Software Reliability Engineering (ISSRE 2013)}, year=2013, address={n/a}, } @inproceedings{cisuc-3724-2013, author={Milenkoski, A. and Payne, B.D. and Nuno Antunes and Marco Vieira and Kounev, S. }, title={HInjector: Injecting Hypercall Attacks for Evaluating VMI-based Intrusion Detection Systems}, booktitle={Poster Paper, The 2013 Annual Computer Security Applications Conference (ACSAC 2013)}, year=2013, address={n/a}, } @inproceedings{cisuc-3021-2012, author={Nuno Antunes and Marco Vieira }, title={Evaluating and Improving Penetration Testing in WebServices}, booktitle={23rd IEEE International Symposium on Software Reliability Engineering (ISSRE 2012)}, year=2012, address={n/a}, } @inproceedings{cisuc-3329-2012, author={Nuno Antunes and Marco Vieira }, title={Detecting Vulnerabilities in Service Oriented Architectures}, booktitle={IEEE 23rd International Symposium on Software Reliability Engineering – Student Forum (ISSRE 2012)}, year=2012, address={n/a}, } @inproceedings{cisuc-2599-2011, author={Nuno Antunes and Marco Vieira }, title={Enhancing Penetration Testing with Attack Signatures and Interface Monitoring for the Detection of Injection Vulnerabilities in Web Services}, booktitle={IEEE 8th International Conference on Services Computing (SCC 2011)}, year=2011, address={n/a}, } @inproceedings{cisuc-2366-2010, author={Nuno Antunes and Marco Vieira }, title={Benchmarking Vulnerability Detection Tools for Web Services}, booktitle={IEEE International Conference on Web Services (ICWS 2010)}, year=2010, address={n/a}, } @inproceedings{cisuc-2058-2009, author={Nuno Antunes and Laranjeiro, N. and Marco Vieira and Madeira, H. }, title={Effective Detection of SQL/XPath Injection Vulnerabilities in Web Services}, booktitle={IEEE International Conference on Services Computing (SCC 2009)}, year=2009, address={n/a}, } @inproceedings{cisuc-2068-2009, author={Marco Vieira and Nuno Antunes and Madeira, H. }, title={Using Web Security Scanners to Detect Vulnerabilities in Web Services}, booktitle={39th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN 2009)}, year=2009, address={n/a}, } @inproceedings{cisuc-2069-2009, author={Nuno Antunes and Marco Vieira }, title={Detecting SQL Injection Vulnerabilities in Web Services}, booktitle={Fourth Latin-American Symposium on Dependable Computing (LADC 2009)}, year=2009, address={n/a}, } @inproceedings{cisuc-2096-2009, author={Nuno Antunes and Marco Vieira }, title={Comparing the Effectiveness of Penetration Testing and Static Code Analysis on the Detection of SQL Injection Vulnerabilities in Web Services}, booktitle={IEEE 15th Pacific Rim International Symposium on Dependable Computing (PRDC'09)}, year=2009, address={n/a}, } @inbook{cisuc-5193-2017, author={Laranjeiro, N. and Pereira, G. and Soydemir, S.N. and Barbosa, R. and Jorge Bernardino and Areias, C. and Nuno Antunes and Cunha, J.C. and Marco Vieira and Madeira, H. }, title={Robustness and Fault Injection for the Validation of Critical Systems}, chapter={12}, publisher={River Publishers}, booktitle={Certifications of Critical Systems – The CECRIS Experience}, pages={247--274}, year=2017, address={n/a}, } @inbook{cisuc-3341-2013, author={Nuno Antunes and Marco Vieira }, title={Security Testing in SOAs: Techniques and Tools}, chapter={3.2}, publisher={Springer Milan}, booktitle={Innovative technologies for dependable OTS-based critical systems}, volume={1}, edition={1}, pages={159--174}, year=2013, address={n/a}, } @inbook{cisuc-3661-2013, author={Marco Vieira and Nuno Antunes }, title={Introduction to Software Security Concepts}, chapter={0.3}, publisher={Springer Milan}, booktitle={Innovative technologies for dependable OTS-based critical systems}, volume={1}, edition={1}, pages={29--38}, year=2013, address={n/a}, } @inbook{cisuc-3662-2013, author={Napolitano, A. and Carrozza, G. and Nuno Antunes and Joao Duraes }, title={Survey on Software Faults Injection in Java Applications}, chapter={2.2}, publisher={Springer Milan}, booktitle={Innovative technologies for dependable OTS-based critical systems}, volume={1}, edition={1}, pages={101--114}, year=2013, address={n/a}, } @inbook{cisuc-3022-2012, author={Micskei, Z. and Majzik, I. and Madeira, H. and Marco Vieira and Nuno Antunes and Avritzer, A. }, pages={n/a}, title={Robustness Testing Techniques and Tools}, publisher={Springer}, booktitle={Resilience Assessment and Evaluation of Computing Systems}, year=2012, address={n/a}, } @inbook{cisuc-2559-2011, author={Rodrigues, D. and Estrella, J. and Nuno Antunes and Mónaco, F. and Branco, K. and Marco Vieira }, pages={n/a}, title={Engineering Secure Web Services}, editor={Valeria Cardellini, Emiliano Casalicchio, Kalinka Castelo Branco, Julio Cezar Estrella, Francisco Jose Monaco}, publisher={IGI-Global}, booktitle={Performance and Dependability in Service Computing: Concepts, Techniques and Research Directions}, year=2011, address={n/a}, } @inbook{cisuc-2560-2011, author={Nuno Antunes and Marco Vieira }, pages={n/a}, title={Detecting Vulnerabilities in Web Services: Can Developers Rely on Existing Tools?}, editor={Valeria Cardellini, Emiliano Casalicchio, Kalinka Castelo Branco, Julio Cezar Estrella, Francisco Jose Monaco}, publisher={IGI-Global}, booktitle={Performance and Dependability in Service Computing: Concepts, Techniques and Research Directions}, year=2011, address={n/a}, } @techreport{cisuc-3885-2014, author={Milenkoski, A. and Marco Vieira and Payne, B.D. and Nuno Antunes and Kounev, S. }, title={Technical Information on Vulnerabilities of Hypercall Handlers}, number={SPEC-RG-2014-001 v.1.0}, year=2014, address={n/a}, } @techreport{cisuc-3490-2013, author={Milenkoski, A. and Kounev, S. and Avritzer, A. and Nuno Antunes and Marco Vieira }, title={On Benchmarking Intrusion Detection Systems in Virtualized Environments}, number={SPEC-RG-2013-002 v.1.0}, year=2013, address={n/a}, }