Send email Copy Email Address

Email

Address

Kaiserstraße 21
66386 St. Ingbert (Germany)

Awards (selection)

2017: Busy Beaver Award for "Cybersecurity I"

Further Information

Short Bio

Dr. Giancarlo Pellegrino is a tenured Faculty at CISPA Helmholtz Center for Information Security. Before that he was a visiting assistant professor at Stanford University and research group leader at CISPA as part of the CISPA-Stanford Center for Cybersecurity. He got his PhD at Eurecom in Sophia-Antipolis (France) under the supervision of Davide Balzarotti. Until August 2013, Giancarlo was a researcher associate in the Security and Trust group at the SAP research labs.

CV: Last stations

Since 2017
Faculty at CISPA Helmholtz Center for Information Security
Since 2017
Visiting Assistant Professor at Stanford University
2017 - 2018
Visiting Scholar at Stanford University
2015 - 2017
Postdoctoral Researcher at Saarland University

Publications by Giancarlo Pellegrino

Year 2025

Conference / Medium

IEEE Symposium on Security and Privacy (S&P)
Behind the Curtain: How Shared Hosting Providers Respond to Vulnerability Notifications

Conference / Medium

ACM Conference on Computer and Communications Security (CCS)
In the DOM We Trust: Exploring the Hidden Dangers of Reading from the DOM on the Web

Conference / Medium

ACM Internet Measurement Conference (IMC)
Exploration of the Dynamics of Buy and Sale of Social Media Accounts

Conference / Medium

55th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN)
Less is More: Boosting Coverage of Web Crawling through Adversarial Multi-Armed Bandit

Conference / Medium

IEEE European Symposium on Security and Privacy (EuroS&P)
Exploring the Design Space for Security Warnings in Immersive Environments

Conference / Medium

IEEE European Symposium on Security and Privacy (EuroS&P)
CHARON: Polyglot Code Analysis for Detecting Vulnerabilities in Scripting Languages Native Extensions

Conference / Medium

International Conference on Human Factors in Computing Systems (CHI)
Permission Rationales in the Web Ecosystem: An Exploration of Rationale Text and Design Patterns

Conference / Medium

Network and Distributed System Security Symposium (NDSS)
Do (Not) Follow the White Rabbit: Challenging the Myth of Harmless Open Redirection

Year 2024

Conference / Medium

Network and Distributed System Security Symposium (NDSS)
YuraScanner: Leveraging LLMs for Task-driven Web App Scanning

Conference / Medium

Usenix Security Symposium (USENIX-Security)
SSRF vs. Developers: A Study of SSRF-Defenses in PHP Applications