Send email Copy Email Address
Research Group

Pellegrino

Application Security

Web application software is by far one of the most critical assets of our digital life. The Application Security (AppSec, in short) research group addresses the pressing challenges of identifying, studying, and solving vulnerabilities in modern web application software, at the application and platform levels. Our current interests include the analysis of new web vulnerabilities, program analysis (static, dynamic, and hybrid) that operates at scale, application of ML/AI to web application security, and the security and privacy of future application software systems, including immersive web applications.

Email

Address

Kaiserstraße 21
66386 St. Ingbert (Germany)

Most Recent Publications

Year 2026

Conference / Medium

ACM Conference on Computer and Communications Security (CCS) You Get What You Sample: Evaluating Sampling Strategies for Web Security Measurements

Conference / Medium

ACM Conference on Computer and Communications Security (CCS) A Large-scale Measurement of In-Page Prompt Injections Against LLM Web Agents

Conference / Medium

ACM Conference on Computer and Communications Security (CCS) Omniscience for the Masses: New Threats in the Metaverse's Democratized World Creation

Conference / Medium

GI International Conference on Detection of Intrusions and Malware and Vulnerability Assessment (DIMVA) From Signup to Takedown: An Analysis of Malicious File Distribution in Free Hosting Providers

Conference / Medium

Workshop on Measurements, Attacks, and Defenses for the Web (MADWeb) 2026 Work-in-progress: JAVULIN: Scalable Vulnerability Injection for JavaScript Web Applications