Français English
         
 
   
A- / A+ / plug_site_print
Networking and Security Back
Davide BALZAROTTI
Assistant-Professor
BALZAROTTI
Email Davide BALZAROTTI
Phone 04 93 00 81 56
Fax 04 93 00 82 00
Office 027
Resume

Education
- PhD in Computer Engineering from Politecnico di Milano in 2006
-Postdoctoral researcher in computer security at University of California - Santa Barbara (2006 - 2008)

Teaching
He is currently Assistant Professor within the Department of Networking and Security where he teaches software development.

Industrial experience
Before joining EURECOM, Davide spent almost two years in Santa Barbara as a postdoctoral researcher in the Department of Computer Science at UCSB, working in the Computer Security Lab with Professor Giovanni Vigna

and Professor Richard Kemmerer.

In 2007 he participated in the red team involved in testing the capability and security of the voting machines certified for use in the State of Ohio (Project Everest) and he was also a member of the red team in the topto-bottom review of the electronic voting machines certified for use in California.

Major research interests
His research interests include most aspects of system security and in particular the areas of intrusion detection and prevention, binary and malware analysis, reverse engineering, and web security.

Visibility, membership, committee
He has been a program committee member for several international conferences and workshops. He was publication chair for RAID 09.
He was a member of the red team involved in testing the capability and security of the voting machines certified for use in the State of Ohio (Project Everest) and in the top-to-bottom review of the electronic voting machines certified for use in California.

 
 Additional information

Current research topics 

  • Advanced malware analysis, with a particular focus on techniques to identify and classify malicious code that implements countermeasures to avoid automatic analysis.
  • New threats in web security.

 

Selected publications

  • D. Balzarotti, M. Cova, V. Felmetsger, G. Vigna «Multi-Module Vulnerability Analysis of Web-based Applications» Proceedings of the ACM Conference on Computer and Communication Security (ACM CCS) 2007
  • D. Balzarotti, G. Banks, M. Cova, V. Felmetsger, R. Kemmerer, W. Robertson, F. Valeur, G. Vigna «Are Your Votes Really Counted? Testing the Security of Realworld Electronic Voting Systems» International Symposium on Software Testing and Analysis (ISSTA) - Seattle, WA, July 20-24 2008
  • G. Vigna, W. Robertson, and D. Balzarotti «Testing Network-based Intrusion Detection Signatures Using Mutant Exploits» Proceedings of the ACM Conference on Computer and Communication Security (ACM CCS 2004)
  • D. Balzarotti, M. Cova, V. Felmetsger, N. Jovanovic, E. Kirda, C. Kruegel, G. Vigna «Saner: Composing Static and Dynamic Analysis to Validate Sanitization in Web Applications» Proceedings of the 29th IEEE Symposium on Security and Privacy - Oakland, California, May 18-21, 2008.

 

Publications
Eurecom Reference2010
3138 Balduzzi, Marco; Platzer, Christian; Holz, Thorsten; Kirda, Engin; Balzarotti, Davide; Kruegel, Christopher
Abusing social networks for automated user profiling
RAID'2010, 13th International Symposium on Recent Advances in Intrusion Detection, September 15-17, 2010, Ottawa, Canada
Details  BibTeX 
2994 Balduzzi, Marco; Egele, Manuel; Kirda, Engin; Balzarotti, Davide; Kruegel, Christopher
A solution for the automated detection of clickjacking attacks
AsiaCCS 2010, 5th Symposium on Information Computer and Communications Security, April 13-16, 2010, Beijing, China
Details  BibTeX   
3042 Balduzzi, Marco; Platzer, Christian; Holz, Thorsten; Kirda, Engin; Balzarotti, Davide ; Kruegel, Christopher
Abusing social networks for automated user profiling
Research Report RR-10-233
Details  BibTeX   
3022 Balzarotti, Davide; Cova, Marco; Karlberger, Christoph; Kruegel, Christopher; Kirda, Engin; Vigna, Giovanni
Efficient detection of split personalities in malware
NDSS 2010, 17th Annual Network and Distributed System Security Symposium, February 28th-March 3rd, 2010, San Diego, CA, USA
Details  BibTeX   
Eurecom Reference2009
2778 Bayer, Ulrich;Habibi, Imam;Balzarotti, Davide;Kirda, Engin;Kruegel, Christopher
A view on current malware behavior
LEET'09: 2nd USENIX Workshop on Large-Scale Exploits and Emergent Threats, April 21, 2009, Boston, MA, USA
Details  BibTeX   
2782 Bilge, Leyla;Strufe, Thorsten;Balzarotti, Davide;Kirda, Engin
All your contacts are belong to us : automated identity theft attacks on social networks
WWW'09, 18th International World Wide Web Conference, April 20-24, Madrid, Spain , pp 551-560
Details  BibTeX  DOI   
2671 Bilge, Leyla;Strufe, Thorsten;Balzarotti, Davide; Kirda, Engin
All your contacts are belong to us : Automated identity theft attacks on social networks
Raport de recherche 09-224
Details  BibTeX 
Eurecom Reference2008
2521 Balzarotti, Davide; Cova, Marco;Felmetsger, Vika;Jovanovic, Nenad;Kirda, Engin;Krügel, Christopher;Vigna, Giovanni
Saner: composing static and dynamic analysis to validate sanitization in web applications
SP 2008, IEEE Symposium on Security and Privacy, May 18-21, 2008, Oakland, USA , pp 387 - 401
Details  BibTeX  DOI