default search action
Cristian-Alexandru Staicu
Person information
- affiliation: CISPA Helmholtz Center for Information Security, Saarbrücken, Germany
- affiliation (PhD 2020): Darmstadt University of Technology, Germany
SPARQL queries
Refine list
refinements active!
zoomed in on ?? of ?? records
view refined list in
export refined list as
2020 – today
- 2024
- [c18]Hossein Hajipour, Ning Yu, Cristian-Alexandru Staicu, Mario Fritz:
SimSCOOD: Systematic Analysis of Out-of-Distribution Generalization in Fine-tuned Source Code Models. NAACL-HLT (Findings) 2024: 1400-1416 - [i8]Masudul Hasan Masud Bhuiyan, Berk Çakar, Ethan H. Burmane, James C. Davis, Cristian-Alexandru Staicu:
SoK: A Literature and Engineering Review of Regular Expression Denial of Service. CoRR abs/2406.11618 (2024) - 2023
- [c17]Jeremy Rack, Cristian-Alexandru Staicu:
Jack-in-the-box: An Empirical Study of JavaScript Bundling on the Web and its Security Implications. CCS 2023: 3198-3212 - [c16]Masudul Hasan Masud Bhuiyan, Adithya Srinivas Parthasarathy, Nikos Vasilakis, Michael Pradel, Cristian-Alexandru Staicu:
SecBench.js: An Executable Security Benchmark Suite for Server-Side JavaScript. ICSE 2023: 1059-1070 - [c15]Abdullah AlHamdan, Cristian-Alexandru Staicu:
SandDriller: A Fully-Automated Approach for Testing Language-Based JavaScript Sandboxes. USENIX Security Symposium 2023: 3457-3474 - [c14]Mikhail Shcherbakov, Musard Balliu, Cristian-Alexandru Staicu:
Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js. USENIX Security Symposium 2023: 5521-5538 - [c13]Cristian-Alexandru Staicu, Sazzadur Rahaman, Ágnes Kiss, Michael Backes:
Bilingual Problems: Studying the Security Risks Incurred by Native Extensions in Scripting Languages. USENIX Security Symposium 2023: 6133-6150 - 2022
- [i7]Mikhail Shcherbakov, Musard Balliu, Cristian-Alexandru Staicu:
Silent Spring: Prototype Pollution Leads to Remote Code Execution in Node.js. CoRR abs/2207.11171 (2022) - [i6]Hossein Hajipour, Ning Yu, Cristian-Alexandru Staicu, Mario Fritz:
SimSCOOD: Systematic Analysis of Out-of-Distribution Behavior of Source Code Models. CoRR abs/2210.04802 (2022) - [i5]Masudul Hasan Masud Bhuiyan, Cristian-Alexandru Staicu:
A Tale of Frozen Clouds: Quantifying the Impact of Algorithmic Complexity Vulnerabilities in Popular Web Servers. CoRR abs/2211.11357 (2022) - 2021
- [c12]Nikos Vasilakis, Cristian-Alexandru Staicu, Grigoris Ntousakis, Konstantinos Kallas, Ben Karel, André DeHon, Michael Pradel:
Preventing Dynamic Library Compromise on Node.js via RWX-Based Privilege Reduction. CCS 2021: 1821-1838 - [c11]Hossein Hajipour, Apratim Bhattacharyya, Cristian-Alexandru Staicu, Mario Fritz:
SampleFix: Learning to Generate Functionally Diverse Fixes. PKDD/ECML Workshops (2) 2021: 119-133 - [i4]Cristian-Alexandru Staicu, Sazzadur Rahaman, Ágnes Kiss, Michael Backes:
Bilingual Problems: Studying the Security Risks Incurred by Native Extensions in Scripting Languages. CoRR abs/2111.11169 (2021) - 2020
- [b1]Cristian-Alexandru Staicu:
Enhancing the Security and Privacy of Full-Stack JavaScript Web Applications. Darmstadt University of Technology, Germany, 2020 - [c10]Cristian-Alexandru Staicu, Martin Toldam Torp, Max Schäfer, Anders Møller, Michael Pradel:
Extracting taint specifications for JavaScript libraries. ICSE 2020: 198-209 - [i3]Nikos Vasilakis, Cristian-Alexandru Staicu, Greg Ntousakis, Konstantinos Kallas, Ben Karel, André DeHon, Michael Pradel:
Mir: Automated Quantifiable Privilege Reduction Against Dynamic Library Compromise in JavaScript. CoRR abs/2011.00253 (2020)
2010 – 2019
- 2019
- [c9]Cristian-Alexandru Staicu, Daniel Schoepe, Musard Balliu, Michael Pradel, Andrei Sabelfeld:
An Empirical Study of Information Flows in Real-World JavaScript. PLAS@CCS 2019: 45-59 - [c8]Cristian-Alexandru Staicu, Michael Pradel:
Leaky Images: Targeted Privacy Attacks in the Web. USENIX Security Symposium 2019: 923-939 - [c7]Markus Zimmermann, Cristian-Alexandru Staicu, Cam Tenny, Michael Pradel:
Small World with High Risks: A Study of Security Threats in the npm Ecosystem. USENIX Security Symposium 2019: 995-1010 - [c6]Philippe Skolka, Cristian-Alexandru Staicu, Michael Pradel:
Anything to Hide? Studying Minified and Obfuscated Code in the Web. WWW 2019: 1735-1746 - [i2]Markus Zimmermann, Cristian-Alexandru Staicu, Cam Tenny, Michael Pradel:
Small World with High Risks: A Study of Security Threats in the npm Ecosystem. CoRR abs/1902.09217 (2019) - [i1]Cristian-Alexandru Staicu, Daniel Schoepe, Musard Balliu, Michael Pradel, Andrei Sabelfeld:
An Empirical Study of Information Flows in Real-World JavaScript. CoRR abs/1906.11507 (2019) - 2018
- [c5]Cristian-Alexandru Staicu, Michael Pradel, Benjamin Livshits:
SYNODE: Understanding and Automatically Preventing Injection Attacks on NODE.JS. NDSS 2018 - [c4]Cristian-Alexandru Staicu, Michael Pradel:
Freezing the Web: A Study of ReDoS Vulnerabilities in JavaScript-based Web Servers. USENIX Security Symposium 2018: 361-376 - 2017
- [j1]Esben Andreasen, Liang Gong, Anders Møller, Michael Pradel, Marija Selakovic, Koushik Sen, Cristian-Alexandru Staicu:
A Survey of Dynamic Analysis and Test Generation for JavaScript. ACM Comput. Surv. 50(5): 66:1-66:36 (2017) - [c3]Luca Della Toffola, Cristian-Alexandru Staicu, Michael Pradel:
Saying 'hi!' is not enough: mining inputs for effective test generation. ASE 2017: 44-49 - 2016
- [c2]Hui Liu, Qiurong Liu, Cristian-Alexandru Staicu, Michael Pradel, Yue Luo:
Nomen est omen: exploring and exploiting similarities between argument and parameter names. ICSE 2016: 1063-1073 - [c1]Mariano Ceccato, Paolo Falcarin, Alessandro Cabutto, Yosief Weldezghi Frezghi, Cristian-Alexandru Staicu:
Search Based Clustering for Protecting Software with Diversified Updates. SSBSE 2016: 159-175
Coauthor Index
manage site settings
To protect your privacy, all features that rely on external API calls from your browser are turned off by default. You need to opt-in for them to become active. All settings here will be stored as cookies with your web browser. For more information see our F.A.Q.
Unpaywalled article links
Add open access links from to the list of external document links (if available).
Privacy notice: By enabling the option above, your browser will contact the API of unpaywall.org to load hyperlinks to open access articles. Although we do not have any reason to believe that your call will be tracked, we do not have any control over how the remote server uses your data. So please proceed with care and consider checking the Unpaywall privacy policy.
Archived links via Wayback Machine
For web page which are no longer available, try to retrieve content from the of the Internet Archive (if available).
Privacy notice: By enabling the option above, your browser will contact the API of archive.org to check for archived content of web pages that are no longer available. Although we do not have any reason to believe that your call will be tracked, we do not have any control over how the remote server uses your data. So please proceed with care and consider checking the Internet Archive privacy policy.
Reference lists
Add a list of references from , , and to record detail pages.
load references from crossref.org and opencitations.net
Privacy notice: By enabling the option above, your browser will contact the APIs of crossref.org, opencitations.net, and semanticscholar.org to load article reference information. Although we do not have any reason to believe that your call will be tracked, we do not have any control over how the remote server uses your data. So please proceed with care and consider checking the Crossref privacy policy and the OpenCitations privacy policy, as well as the AI2 Privacy Policy covering Semantic Scholar.
Citation data
Add a list of citing articles from and to record detail pages.
load citations from opencitations.net
Privacy notice: By enabling the option above, your browser will contact the API of opencitations.net and semanticscholar.org to load citation information. Although we do not have any reason to believe that your call will be tracked, we do not have any control over how the remote server uses your data. So please proceed with care and consider checking the OpenCitations privacy policy as well as the AI2 Privacy Policy covering Semantic Scholar.
OpenAlex data
Load additional information about publications from .
Privacy notice: By enabling the option above, your browser will contact the API of openalex.org to load additional information. Although we do not have any reason to believe that your call will be tracked, we do not have any control over how the remote server uses your data. So please proceed with care and consider checking the information given by OpenAlex.
last updated on 2024-10-30 20:31 CET by the dblp team
all metadata released as open data under CC0 1.0 license
see also: Terms of Use | Privacy Policy | Imprint