Note: authors in italicized items are listed in alphabetical order
Selected Publications
- Towards remotely verifiable software integrity in resource-constrained IoT devices, IEEE ComMag, 2024.
- ACFA: Secure Runtime Auditing & Guaranteed Device Healing via Active Control Flow Attestation, USENIX Security, 2023.
- ASAP: Reconciling Asynchronous Real-Time Operations and Proofs of Execution in Simple Embedded Systems, DAC, 2022.
- On the TOCTOU Problem in Remote Attestation, CCS, 2021.
- APEX: A Verified Architecture for Proofs of Execution on Remote Devices Under Full Software Compromise, USENIX Security, 2020.
- Towards Automated Augmentation and Instrumentation of Legacy Cryptographic Executables, ACNS, 2020.
- VRASED: A Verified Hardware/Software Co-Design for Remote Attestation, USENIX Security, 2019.
- HYDRA: HYbrid Design for Remote Attestation (Using a Formally Verified Microkernel), WiSEC 2017.
Full Publications
Journals
- Ivan De Oliveira Nunes, Sashidhar Jakkamsetti, Norrathep Rattanavipanon, and Gene Tsudik, Towards remotely verifiable software integrity in resource-constrained IoT devices. IEEE Communications Magazine, 2024.
- Norrathep Rattanavipanon, Donlapark Ponnoprat, Hideya Ochiai, Kuljaree Tantayakul, Touchai Angchuan, and Sinchai Kamolphiwong, Detecting Anomalous LAN Activities under Differential Privacy, Hindawi Security and Communication Networks, 2022.
- N. Asokan, Thomas Nyman, Norrathep Rattanavipanon, Ahmad-Reza Sadeghi, and Gene Tsudik, ASSURED: Architecture for Secure Software Update of Realistic Embedded Devices, IEEE Transactions on Computer-Aided Design of Integrated Circuits and Systems (TCAD), Volume 37, Issue 11, 2018. [slides][code]
- Xavier Carpent, Norrathep Rattanavipanon, and Gene Tsudik. Remote Attestation via Self-Measurement, ACM Transactions on Design Automation of Electronic Systems (TODAES), Volume 24, Issue 1, 2018.
Conferences
- Ivan De Oliveira Nunes, Seoyeon Hwang, Sashidhar Jakkamsetti, Norrathep Rattanavipanon, and Gene Tsudik, PARseL: Towards a Verified Root-of-Trust over seL4, ICCAD, 2023.
- Adam Caulfield, Norrathep Rattanavipanon, and Ivan De Oliveira Nunes, ACFA: Secure Runtime Auditing & Guaranteed Device Healing via Active Control Flow Attestation, USENIX Security, 2023.
- Nattawat Songsom, Warodom Werapun, Jakapan Suaboot, and Norrathep Rattanavipanon, The SWC-based Security Analysis Tool for Smart Contract Vulnerability Detection, INCIT, 2022.
- Adam Caulfield, Norrathep Rattanavipanon, and Ivan De Oliveira Nunes, ASAP: Reconciling Asynchronous Real-Time Operations and Proofs of Execution in Simple Embedded Systems, DAC, 2022.
- Ivan De Oliveira Nunes, Sashidhar Jakkamsetti, Norrathep Rattanavipanon, and Gene Tsudik, On the TOCTOU Problem in Remote Attestation, CCS, 2021.
- Norrathep Rattanavipanon, Donlapark Ponnoprat, Hideya Ochiai, Kuljaree Tantayakul, Touchai Angchuan, and Sinchai Kamolphiwong, Releasing ARP Data with Differential Privacy Guarantees For LAN Anomaly Detection, ECTI-CON 2021.
- Karim Eldefrawy, Michael Locasto, Norrathep Rattanavipanon, and Hassen Saidi, Towards Automated Augmentation and Instrumentation of Legacy Cryptographic Executables, Applied Cryptography and Network Security (ACNS), 2020. [code]
- Ivan De Oliveira Nunes, Karim Eldefrawy, Norrathep Rattanavipanon, and Gene Tsudik, APEX: A Verified Architecture for Proofs of Execution on Remote Devices Under Full Software Compromise, USENIX Security, 2020. [code]
- Ivan De Oliveira Nunes, Karim Eldefrawy, Norrathep Rattanavipanon, and Gene Tsudik, PURE: Using Verified Remote Attestation to Obtain Proofs of Update, Reset and Erasure in Low-End Embedded Systems, IEEE/ACM ICCAD, 2019. [code]
- Ivan De Oliveira Nunes, Karim Eldefrawy, Norrathep Rattanavipanon, Michael Steiner, and Gene Tsudik, VRASED: A Verified Hardware/Software Co-Design for Remote Attestation, USENIX Security, 2019. [code] [CSAW Finalist!]
- Ivan De Oliveira Nunes, Ghada Dessouky, Ahmad Ibrahim, Norrathep Rattanavipanon, Ahmad-Reza Sadeghi and Gene Tsudik, Towards Systematic Design of Collective Remote Attestation Protocols IEEE ICDCS, 2019.
- N. Asokan, Thomas Nyman, Norrathep Rattanavipanon, Ahmad-Reza Sadeghi, and Gene Tsudik, ASSURED: Architecture for Secure Software Update of Realistic Embedded Devices, EMSOFT, 2018. [slides][code]
- Xavier Carpent, Karim Eldefrawy, Norrathep Rattanavipanon, Ahmad-Reza Sadeghi, and Gene Tsudik, Invited: Reconciling Remote Attestation and Safety-Critical Operation on Simple IoT Devices, DAC, 2018.
- Xavier Carpent, Karim Eldefrawy, Norrathep Rattanavipanon, and Gene Tsudik, Temporal Consistency of Integrity-Ensuring Computations and Applications to Embedded Systems Security, ACM ASIACCS, 2018. [slides]
- Xavier Carpent, Norrathep Rattanavipanon, and Gene Tsudik, Remote Attestation of IoT Devices via SMARM: Shuffled Measurements Against Roving Malware, IEEE HOST, 2018. [slides][code]
- Xavier Carpent, Norrathep Rattanavipanon, and Gene Tsudik, ERASMUS: Efficient Remote Attestation via Self-Measurement for Unattended Settings, DATE, 2018.
- Karim Eldefrawy, Norrathep Rattanavipanon and Gene Tsudik, HYDRA: HYbrid Design for Remote Attestation (Using a Formally Verified Microkernel), ACM WiSEC 2017. [slides][code]
- Xavier Carpent, Karim Eldefrawy, Norrathep Rattanavipanon, and Gene Tsudik, LIghtweight Swarm Attestation: A Tale of Two LISAs, ACM ASIACCS, 2017. [slides]
Workshops & Posters
- Karim Eldefrawy, Norrathep Rattanavipanon, and Gene Tsudik, FUsing Hybrid Remote Attestation with a Formally Verified Microkernel: Lessons Learned, IEEE DSN Workshop 2017. [slides]
- Alessandro Finamore, James Newman, Diego Perino, Norrathep Rattanavipanon, Claudio Soriente, and Narseo Vallina-Rodriguez, Characterising users experience and critical path in mobile applications, ACM IMC, 2017 (poster).
- Xavier Carpent, Karim ElDefrawy, Norrathep Rattanavipanon, and Gene Tsudik, LIghtweight Swarm Attestation: A Tale of Two LISAs, NDSS, 2017 (poster).