Follow
Serena Elisa Ponta
Serena Elisa Ponta
SAP Security Research
Verified email at sap.com
Title
Cited by
Cited by
Year
The AVANTSSAR platform for the automated validation of trust and security of service-oriented architectures
A Armando, W Arsac, T Avanesov, M Barletta, A Calvi, A Cappai, ...
Tools and Algorithms for the Construction and Analysis of Systems: 18th …, 2012
1312012
Impact assessment for vulnerabilities in open-source software libraries
H Plate, SE Ponta, A Sabetta
2015 IEEE International Conference on Software Maintenance and Evolution …, 2015
852015
Vulnerable open source dependencies: Counting those that matter
I Pashchenko, H Plate, SE Ponta, A Sabetta, F Massacci
Proceedings of the 12th ACM/IEEE International Symposium on Empirical …, 2018
712018
A manually-curated dataset of fixes to vulnerabilities of open-source software
SE Ponta, H Plate, A Sabetta, M Bezzi, C Dangremont
2019 IEEE/ACM 16th International Conference on Mining Software Repositories …, 2019
692019
Beyond Metadata: Code-centric and Usage-based Analysis of Known Vulnerabilities in Open-source Software
SE Ponta, H Plate, A Sabetta
672018
Model checking of security-sensitive business processes
A Armando, SE Ponta
Formal Aspects in Security and Trust: 6th International Workshop, FAST 2009 …, 2010
632010
Security validation of business processes via model-checking
W Arsac, L Compagna, G Pellegrino, SE Ponta
Engineering Secure Software and Systems: Third International Symposium …, 2011
622011
Detection, assessment and mitigation of vulnerabilities in open source dependencies
SE Ponta, H Plate, A Sabetta
Empirical Software Engineering 25 (5), 3175-3215, 2020
422020
Vuln4real: A methodology for counting actually vulnerable dependencies
I Pashchenko, H Plate, SE Ponta, A Sabetta, F Massacci
IEEE Transactions on Software Engineering 48 (5), 1592-1609, 2020
242020
Code-based vulnerability detection in node. js applications: How far are we?
B Chinthanet, SE Ponta, H Plate, A Sabetta, RG Kula, T Ishio, ...
Proceedings of the 35th IEEE/ACM International Conference on Automated …, 2020
202020
Assessing vulnerability impact using call graphs
H Plate, S Ponta, A Sabetta
US Patent 9,792,200, 2017
202017
Model checking authorization requirements in business processes
A Armando, SE Ponta
Computers & Security 40, 1-22, 2014
202014
Prioritization of software patches
H Plate, S Ponta, A Sabetta
US Patent 9,959,111, 2018
162018
Multi-context exploit test management
A Sabetta, L Compagna, S Ponta, S Dashevskyi, D Dos Santos, ...
US Patent 9,811,668, 2017
162017
Aegis: automatic enforcement of security policies in workflow-driven web applications
L Compagna, DR dos Santos, SE Ponta, S Ranise
Proceedings of the Seventh ACM on Conference on Data and Application …, 2017
152017
Cerberus: Automated synthesis of enforcement mechanisms for security-sensitive business processes
L Compagna, DR Dos Santos, SE Ponta, S Ranise
Tools and Algorithms for the Construction and Analysis of Systems: 22nd …, 2016
152016
An action-based approach to the formal specification and automatic analysis of business processes under authorization constraints
A Armando, E Giunchiglia, M Maratea, SE Ponta
Journal of Computer and System Sciences 78 (1), 119-141, 2012
132012
Software patch evaluator
H Plate, S Ponta, A Sabetta
US Patent 9,880,832, 2018
122018
Formal Specification and Automatic Analysis of Business Processes under Authorization Constraints: An Action-Based Approach.
A Armando, E Giunchiglia, SE Ponta
TrustBus 5695, 63-72, 2009
122009
Secure and compliant execution of processes
S Ponta, L Compagna, D Dos Santos, S Ranise
US Patent App. 15/097,304, 2017
112017
The system can't perform the operation now. Try again later.
Articles 1–20