Send email Copy Email Address
Research Group

Pellegrino

Application Security

Web application software is by far one of the most critical assets of our digital life. The Application Security (AppSec, in short) research group addresses the pressing challenges of identifying, studying, and solving vulnerabilities in modern web application software, at the application and platform levels. Our current interests include the analysis of new web vulnerabilities, program analysis (static, dynamic, and hybrid) that operates at scale, application of ML/AI to web application security, and the security and privacy of future application software systems, including immersive web applications.

Email

Address

Kaiserstraße 21
66386 St. Ingbert (Germany)

Most Recent Publications

Year 2026

Conference / Medium

GI International Conference on Detection of Intrusions and Malware and Vulnerability Assessment (DIMVA) From Signup to Takedown: An Analysis of Malicious File Distribution in Free Hosting Providers

Conference / Medium

Workshop on Measurements, Attacks, and Defenses for the Web (MADWeb) 2026 Work-in-progress: JAVULIN: Scalable Vulnerability Injection for JavaScript Web Applications

Year 2025

Conference / Medium

IEEE Symposium on Security and Privacy (S&P) Behind the Curtain: How Shared Hosting Providers Respond to Vulnerability Notifications

Conference / Medium

ACM Conference on Computer and Communications Security (CCS) In the DOM We Trust: Exploring the Hidden Dangers of Reading from the DOM on the Web

Conference / Medium

ACM Internet Measurement Conference (IMC) Exploration of the Dynamics of Buy and Sale of Social Media Accounts