VLDB 2026 Research / reviewers in the wild / expert
Justin Pelletier
dblp:251/4347
· DBLP profile ↗
3ranked-venue papers
0as first author
2since 2021 · last 2024
0000-0002-8330-045XORCID · corroborated
Domains — the database's venue-derived domains; a paper can count in several
Security and privacy · 2 · 2 since 2021Software engineering, systems software and programming languages · 1
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2024 | Hacking Mobile Biometrics with the Photograph of a Fingerprint
Sarah Dill, Joseph Hommel, Justin Kennedy, Vaughn Woerpel, Justin Pelletier |
ICDF2C (1) | 5 |
| 2023 | A Canary in the Voting Booth: Attacks on a Virtual Voting Machine
Michael Madden 0003, Dan Szafaran, Philomena Gray, Justin Pelletier, Ted Selker |
ICDF2C (1) | 4 |
| 2019 | Characterizing Attacker Behavior in a Cybersecurity Penetration Testing CompetitionabstractBackground: Inculcating an attacker mindset (i.e. learning to think like an attacker) is an essential skill for engineers and administrators to improve the overall security of software. Describing the approach that adversaries use to discover and exploit vulnerabilities to infiltrate software systems can help inform such an attacker mindset. Aims: Our goal is to assist developers and administrators in inculcating an attacker mindset by proposing an approach to codify attacker behavior in cybersecurity penetration testing competition. Method: We use an existing multimodal dataset of events captured during the 2018 National Collegiate Penetration Testing Competition (CPTC'18) to characterize the approach a team of attackers used to discover and exploit vulnerabilities. Results: We collected 44 events to characterize the approach that one of the participating teams took to discover and exploit seven vulnerabilities. We used the MITRE ATT&CK™framework to codify the approach in terms of tactics and techniques. Conclusions: We show that characterizing attackers' campaign as a chronological sequence of MITRE ATT&CK™tactics and techniques is feasible. We hope that such a characterization can inform the attacker mindset of engineers and administrators in their pursuit of engineering secure software systems. Nuthan Munaiah, Akond Ashfaque Ur Rahman, Justin Pelletier, Laurie A. Williams, Andrew Meneely |
ESEM | 3 |