Information Security Resources

CoreLabs Information Security Publications

Below is an index of publications, presentations and papers authored by members of the CoreLabs research team. Click on any title to get more information and access the publication on the CoreLabs extranet site

Title Authors Publication Datesort ascending Venue / Publication
Password Security Policies - Lessons Learned from Recent Password Leaks Brian Sutton, Flavio de Cristofaro 11/18/12 OWASP AppSec Latam 2012
Sleepy - are snakes still sleeping Alejandro David Weil 11/17/12 PyCon Argentina 2012
No toca BOTOn: Amazon Web Services desde python Ezequiel Gutesman, Fernando Russ 11/17/12 PyCon Argentina 2012
One firmware to monitor 'em all - HackLu 2012 Andrés Blanco and Matías Eissler 10/25/12 Hack.Lu 2012
VGA Persistent Rootkit Diego Juarez, Nicolás A. Economou 09/23/12 Ekoparty 2012
One firmware to monitor 'em all - EkoParty 2012 Andrés Blanco and Matías Eissler 09/21/12 Ekoparty 2012
One firmware to monitor 'em all Andrés Blanco and Matías Eissler 09/21/12 Ekoparty 2012
HTML5 Heap Sprays, Pwn All The Things Anibal Sacco & Federico Muttis 09/20/12 EuSecWest 2012
Anécdotas de seguridad Ariel Waissbein, Ezequiel Gutesman 09/06/12 Congreso Nacional de Estudiantes de Ingenieria en Sistemas de Informacion (CNEISI) 2012
Unveiling the Network Criminal Infrastructure of TDSS/TDL4 – DGAv14: A case study on a new TDSS/TDL4 variant Manos Antonakakis, Jeremy Demar, Kevin Stevens and David Dagon 09/01/12 Technical Report
An Oblivious Password Cracking Server Aureliano Calvo, Ariel Futoransky, Carlos Sarraute 08/31/12 41th JAIIO
From Throw-Away Traffic to Bots: Detecting the Rise of DGA-Based Malware Manos Antonakakis, Roberto Perdisci, Yacin Nadji, Nikolaos Vasiloglou, Saeed Abu-Nimeh, Wenke Lee and David Dagon 08/08/12 21st USENIX Security Symposium
Uncovering SAP vulnerabilities: reversing and breaking the Diag protocol Martin Gallo 07/29/12 Defcon 20 Conference
POMDPs Make Better Hackers: Accounting for Uncertainty in Penetration Testing Carlos Sarraute, Olivier Buffet, Joerg Hoffmann 07/23/12 Twenty-Sixth Conference on Artificial Intelligence (AAAI-12)
Encounters of the Third Kind between Pen Testing and Automated Planning Carlos Sarraute, Ken Pickering 07/22/12 Workshop on Problem Solving using Classical Planners (CP4PS) at AAAI 2012 Conference.