Securing Embedded and IoT Systems with SPMP-based Virtualization

Sandro Pinto, José Martins, Tilen Nedanovski, Manuel Rodríguez, Ziga Putrle, Matjaz Breskvar, RISC-V Summit Europe 2024

Cyber-physical metropolitan area digital substations test bench for evaluating intrusion detection systems

Sanchez-Acevedo et al., "Cyber-physical metropolitan area digital substations test bench for evaluating intrusion detection systems", 2024 6th Global Power, Energy and Communication Conference (GPECOM), Budapest, Hungary, 2024, pp. 718-723

PUF-based Authentication in IoT against Strong Physical Adversary using Zero-Knowledge Proofs

Yoon, Seungyong et al. “PUF-based Authentication Scheme for IoT Devices.” 2020 International Conference on Information and Communication Technology Convergence (ICTC) (2020): 1792-1794.

CROSSCON: Cross-platform Open Security Stack for Connected Devices

Bruno Crispo, Marco Roveri (Uni. Trento); Sandro Pinto, Tiago Gomes (Uni. Minho); Aljosa Pasic (ATOS); Akos Milankovich (S-LAB); David Puron, Ainara Garcia, (Barbara IoT); Ziga Putrle, (Beyond ´ Semiconductor); Peter Ten (Uni Wuerzburg); Malvina Catalano (Cysec), White Paper

The Nonce-nce of Web Security: an Investigation of CSP Nonces Reuse

Golinelli, M., Bonomi, F., Crispo, B. (2024). The Nonce-nce of Web Security: An Investigation of CSP Nonces Reuse. In: Katsikas, S., et al. Computer Security. ESORICS 2023 International Workshops. ESORICS 2023.

HSP-V: Hypervisor-less Static Partitioning for RISC-V COTS Platforms

J. Sousa, J. Martins, T. Gomes and S. Pinto, "HSP-V: Hypervisor-Less Static Partitioning for RISC-V COTS Platforms," in IEEE Access, vol. 12, pp. 71131-71144, 2024

One for All and All for One: GNN-based Control-Flow Attestation for Embedded Devices

M. Chilese, R. Mitev, M. Orenbach, R. Thorburn, A. Atamli and A. -R. Sadeghi, "One for All and All for One: GNN-based Control-Flow Attestation for Embedded Devices," 2024 IEEE Symposium on Security and Privacy (SP), San Francisco, CA, USA, 2024, pp.

WhisperFuzz: White-Box Fuzzing for Detecting and Locating Timing Vulnerabilities in Processors

Borkar et al., WhisperFuzz: white-box fuzzing for detecting and locating timing vulnerabilities in processors. In Proceedings of the 33rd USENIX Conference on Security Symposium (SEC '24). USENIX Association, USA, Article 301, 5377–5394.

Lost and Found in Speculation: Hybrid Speculative Vulnerability Detection

Mohamadreza Rostami, Shaza Zeitouni, Rahul Kande, Chen Chen, Pouya Mahmoody, Jeyavijayan Rajendran, and Ahmad-Reza Sadeghi. 2024. Lost and Found in Speculation: Hybrid Speculative Vulnerability Detection. In Proceedings of the 61st ACM/IEEE Design Automation Conference (DAC '24).

CROSSCON: Interoperable IoT Security Stack for Embedded Connected Devices

Tiago Gomes, Sandro Pinto, embedded world Conference 2024