RAID 2012


Wednesday September 12th

Opening Remarks Auditorium, First Floor

13:00 - 13:30 Speakers: Bruno Crispo and Davide Balzarotti

Keynote Auditorium, First Floor

13:30 - 14:30 The State of Embedded Device Security (Spoiler Alert: It's Bad)
John Viega

Session I (Virtualization) Auditorium, First Floor
Session Chair: Wil Robertson

14:30 - 15:00 Trusted VM Snapshots in Untrusted Cloud Infrastructures
Abhinav Srivastava, Himanshu Raj, Jonathon Giffin, Paul England
15:00 - 15:30 Secure and Robust Monitoring of Virtual Machines through Guest-Assisted Introspection
Martim Carbone, Matthew Conover, Bruce Montague, Wenke Lee
15:30 - 16:00 Assessing the Trustworthiness of Drivers
Shengzhi Zhang and Peng Liu

Session II (Attacks and Defenses) Auditorium, First Floor
Session Chair: Al Valdes

16:30 - 17:00 Industrial Espionage and Targeted Attacks: Understanding the Characteristics of an Escalating Threat
Olivier Thonnard, Leyla Bilge, Gavin O'Gorman, Seán Kiernan, Martin Lee
17:00 - 17:30 Memory Errors: The Past, the Present, and the Future
Victor van der Veen, Nitish dutt-Sharma, Lorenzo Cavallaro, Herbert Bos
17:30 - 18:00 A Memory Access Validation Scheme against Payload Injection Attacks
Dongkyun Ahn and Gyungho Lee

Thursday September 13th

Awards Auditorium, First Floor

09:00 - 09:15 Best Paper Awards (Speaker: Davide Balzarotti)
09:15 - 10:00 Most Influential Paper Award
Probabilistic Alert Correlation - A. Valdes, and K. Skinner (2001)

Session III (Host & Network Security) Auditorium, First Floor
Session Chair: Herbert Bos

10:00 - 10:30 Dione: A Flexible Disk Monitoring and Analysis Framework
Jennifer Mankin and David Kaeli
10:30 - 11:00 AK-PPM: An Authenticated Packet Attribution Scheme for Mobile Ad Hoc Networks
Zhi Xu, Hungyuan Hsu, Xin Chen, Sencun Zhu, and Ali R. Hurson

Session IV (Fraud Detection and Underground Economy) Auditorium, First Floor
Session Chair: Fabian Monrose

11:30 - 12:00 Paying for Piracy? An Analysis of One-Click Hosters' Controversial Reward Schemes
Tobias Lauinger, Engin Kirda, and Pietro Michiardi
12:00 - 12:30 Proactive Discovery of Phishing Related Domain Names
Samuel Marchal, Jérôme François, Radu State, and Thomas Engel
12:30 - 13:00 Evaluating Electricity Theft Detectors in Smart Grid Networks
Daisuke Mashima and Alvaro A. Cardenas

Session V (Web Security) Auditorium, First Floor
Session Chair: Wenke Lee

14:30 - 15:00 PoisonAmplifier: A Guided Approach of Discovering Compromised Websites through Reversing Search Poisoning Attacks
Jialong Zhang, Chao Yang, Zhaoyan Xu, Guofei Gu
15:00 - 15:30 DEMACRO: Defense against Malicious Cross-domain Requests
Sebastian Lekies, Nick Nikiforakis, Walter Tighzert, Frank Piessens, and Martin Johns
15:30 - 16:00 FlashDetect: ActionScript 3 Malware Detection
Timon Van Overveldt, Christopher Kruegel, and Giovanni Vigna

Poster Session Foyer, First Floor

16:30 - 18:00
Poster Abstract: Online Social Networks, a Criminals Multipurpose Toolbox
Shah Mahmood and Yvo Desmedt
Poster Abstract: The Triple-Channel Model: Toward Robust and Efficient Advanced Botnets
Cui Xiang, Shi Jinqiao, Liao Peng, Liu Chaoge
Poster Abstract: Network Security Analysis Method Taking into Account the Usage Information
Wu Jinyu, Yin Lihua, Fang Binxing
Poster Abstract: Automatic Covert Channel Detection in Asbestos System
Shuyuan Jin, Zhi Yang, Xiang Cui
Poster Abstract: EFA for Efficient Regular Expression Matching in NIDS
Dengke Qiao, Tingwen Liu, Yong Sun, and Li Guo
Poster Abstract: Distress Detection
Mark Vella, Sotirios Terzis, Marc Roper
Poster Abstract: Trie Data Structure to Compare Traffic Payload in a Supervised Anomaly Detection System
Jenny Andrea Pinto Sánchez and Luis Javier García Villalba
Poster Abstract: Towards Automated Forensic Event Reconstruction of Malicious Code
Ahmed F. Shosha, Joshua I. James, Chen-Ching Liu and Pavel Gladyshev
Poster Abstract: Accurate Recovery of Functions in a Retargetable Decompiler
Lukáš Ďurfina, Jakub Křoustek, Petr Zemek, and Břetislav Kábele
Poster Abstract: Improvement of an Anagram Based NIDS by Reducing the Storage Space of Bloom Filters
Hugo Villanúa Vega, Jorge Maestre Vidal, Jaime Daniel Mejuía Castro, and Luis Javier García Villalba
Poster Abstract: Concurrency Optimization for NIDS
Jorge Maestre Vidal, Hugo Villanúa Vega, Jaime Daniel Meju─▒a Castro, and Luis Javier García Villalba
Poster Abstract: Malware Detection System by Payload Analysis of Network Traffic
Luis Javier García Villalba, Jaime Daniel Mejuía Castro, Ana Lucila, Sandoval Orozco, and Javier Martínez Puentes

Friday September 14th

Session VI (Intrusion Detection) Auditorium, First Floor
Session Chair: Sal Stolfo

09:00 - 09:30 ALERT-ID: Analyze Logs of the network Element in Real Time for Intrusion Detection
Jie Chu, Zihui Ge, Richard Huber, Ping Ji, Jennifer Yates, Yung-Chao Yu
09:30 - 10:00 A Lone Wolf No More: Supporting Network Intrusion Detection with Real-Time Intelligence
Bernhard Amann, Robin Sommer, Aashish Sharma, and Seth Hall
10:00 - 10:30 GPP-grep: High-Speed Regular Expression Processing Engine on General Purpose Processors
Victor C. Valgenti, Jatin Chhugani, Yan Sun, Nadathur Satish, Min Sik Kim, Changkyu Kim, Pradeep Dubey
10:30 - 11:00 N-gram Against the Machine: On the Feasibility of the N-gram Network Analysis for Binary Protocols
Dina Hadžiosmanović, Lorenzo Simionato, Damiano Bolzoni, Emmanuele Zambon, and Sandro Etalle

Concluding Remarks Auditorium, First Floor

11:00 - 11:15 Speaker: Marc Dacier

