Publications
"SeAAS - A Reference Architecture for Security Services in SOA",
Journal of Universal Computer Science, 2010.
"Architectural Patterns for Model Driven Security in SOA",
Communications and Multimedia Security - CMS 2010, Linz, Austria, 05/2010.
"A Load Time Policy Checker for Open Multi-application Smart Cards",
Policy symposium 2011, Pisa, 2011.
"Load Time Security Verification",
ICISS: Springer- Verlag, 2011.
"Enhancing Argumentation with Risk Assessment for Achieving Good-Enough Security",
Requirements Engineering Journal , Submitted.
"Risk and argument: A risk-based argumentation method for practical security",
19th IEEE International Requirements Engineering Conference, Trento, Italy, IEEE, pp. 239-248, August 29 2011.
Abstract
"Vérification et Test pour des systèmes évolutifs",
AFADL'12, Congrès Approches Formelles dans l'Assistance au Développement de Logiciels, Grenoble, France, pp. 150–164, 2012.
"UML/OCL based impact analysis to test evolvin critical software",
ETAI'11, Society for Electronics, Telecommunications, Automatics and Informatics 10-th Int. Conf., Ohrid, Macedonia, 2011.
"Model-Based Security Verification and Testing for Smart-cards",
6th Intl. Conf. on Availability, Reliability and Security (ARES 2011), Vienna, Austria, 2011.
"Selective Test Generation Method for Evolving Critical Systems",
REGRESSION'11, 1st Int. Workshop on Regression Testing - co-located with ICST'2011, Berlin, Germany, IEEE Computer Society Press, pp. 125–134, 2011.
"Verifiable control flow properties for Java bytecode",
FAST 2011: Springer Berlin / Heidelberg, to appear, 2011.
"On-Device Control Flow Verification for Java Programs",
Proc. of ESSoS’11, ACM/IEEE 3rd International Symposium on Engineering Secure Software and Systems, 2011.
"Evolutionary risk analysis: Expert judgement",
Computer safety, reliability, and security (SAFECOMP), Italy, Springer, 09/2011.
"Managing Evolution of Service Centric Systems by Test Models",
The Tenth IASTED International Conference on Software Engineering, Innsbruck, Austria, ACTA Press, 02/2011.
Abstract
"Evolution of Security Requirements Tests for Service-Centric Systems",
International Symposium on Engineering Secure Software and Systems, Madrid, Spain, Springer-Verlag, 02/2011.
Abstract
"State-based Evolution Management of Risk-based System Tests for Service-centric Systems.",
Emerging Technologies for the Evolution and Maintenance of Software Models.: IGI Global, pp. 298-318., 2012.
"Security Testing by Telling TestStories",
Modellierung 2010, Klagenfurt, Austria, 03/2010.
"SecureChange al via L’Università di Trento è in prima linea",
Sole 24 ore, 03/2011.
"Managing Changes with Legacy Security Engineering Processes",
ISI: Springer-Verlag, 2011.
"Supporting Software Evolution for Open Smart Cards by Security-by-Contract",
Dependability and Computer Engineering: Concepts for Software-Intensive Systems: IGI , 2011.
"Can We Support Applications' Evolution in Multi-Application Smart Cards by Security-by-Contract?",
Security and Privacy of Pervasive Systems and Small Devices, Passau, Germany, Springer, Submitted.
"Test Generation using Symbolic Animation of Models",
Model-Based Testing for Embedded Systems: CRC Press, pp. ***–***, 2010.
Accepted manuscript. To appear
"Guest Editors' Introduction: Evolving Critical Systems",
IEEE Computer , vol. 43, issue 5, pp. 6, 2010.
"Are your sites down? Requirements-driven self-tuning for the survivability of Web systems",
Requirements Engineering Conference (RE), 2011 19th IEEE International, pp. 219 -228, 29 2011-sept. 2.
Abstract
SeAAS – Introduction and Empirical Performance Evaluation,
, no. QE-2011-24: QE, 2011.