VLDB 2026 Research / reviewers in the wild / expert
Valérie Viet Triem Tong
dblp:44/1997
· DBLP profile ↗
29ranked-venue papers
1as first author
9since 2021 · last 2025
0000-0003-4838-2952ORCID · reported
Domains — the database's venue-derived domains; a paper can count in several
Security and privacy · 13 · 1 first-author · 5 since 2021Computer networks · 7 · 2 since 2021Artificial intelligence and machine learning · 4 · 2 since 2021Software engineering, systems software and programming languages · 3Databases, data management, data science and information retrieval · 2 · 2 since 2021Human-computer interaction and ubiquitous computing · 2Applied, interdisciplinary, general and emerging computing · 2 · 2 since 2021Theory of computation · 1
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2025 | CasinoLimit: An Offensive Dataset Labeled with MITRE ATT&CK TechniquesabstractCybersecurity exercises are a common way to train and evaluate the skills of cybersecurity professionals. These exercises also provide a unique opportunity to generate datasets with realistic attack traces on non-sensitive systems. Nevertheless, the collected logs are unlabeled, and deciding which logs are related to pentesters is a difficult problem. In this paper, we present a novel methodology to label efficiently both system and network logs using MITRE ATT&CK techniques. To demonstrate the effectiveness of our approach, we introduce CasinoLimit, a dataset generated from a pentest exercise that has been played by 114 participants where we collected 540 GB of attack data. We apply our methodology to accurately label these logs with a semiautomatic approach: labels are inferred from the shell sessions and propagated to the network sessions, and eventually corrected by a junior analyst. An expert analyst has manually reviewed all the labels that have been computed to ensure the quality of the labeling process. The results of the pentest exercise are deeply discussed. We show the variability of players’ behaviors and that players can be distinguished by their command line habits. In addition, the high level of granularity of labels coupled with the number of participants enables multiple other applications. With this paper, we release the full dataset and the associated labeling tool, Manatee, which can be used to browse the logs and labels. To support the generalization of our approach, we made it possible to load other datasets with this tool. Sébastien Kilian, Valérie Viet Triem Tong, Jean-François Lalande, Frédéric Majorczyk, Alexandre Sanchez, Natan Talon, Pierre-Victor Besson, Helene Orsini, Pierre Lledo, Pierre-François Gimenez |
RAID | 2 |
| 2024 | SCWAD: Automated Pentesting of Web ApplicationsabstractInternational audience Natan Talon, Valérie Viet Triem Tong, Gilles Guette, Yufei Han 0001, Youssef Laarouchi |
SECRYPT | 2 |
| 2023 | CERBERE: Cybersecurity Exercise for Red and Blue team Entertainment, REproducibilityabstractExperimenting in cybersecurity requires manipulating reliable and realistic data. In particular, labelled data derived from the observation of a complete campaign is rarely available, due to its high sensitivity and the difficulty of accurately labelling datasets. This situation harms the reproducibility of research results and therefore to their impact. In this article, we present the CERBERE project that addresses this issue through a reproducible attack-defense exercise and a labelled dataset usable for research purposes. The attack-defense exercise is first composed of an exercise for red teamers automatically deployed with variable attack scenarios. Second, an exercise for blue teamers can be operated using the system and network logs generated during the attack phase. We provide with this article, the software to rebuild the infrastructure for red teamers. We share a labelled dataset where we spot the ground truth, i.e. the log lines that have been involved in the attacker’s actions. Pierre-Victor Besson, Romain Brisse, Helene Orsini, Natan Talon, Jean-François Lalande, Frédéric Majorczyk, Alexandre Sanchez, Valérie Viet Triem Tong |
IEEE Big Data | 8 |
| 2023 | CVE representation to build attack positions graphsabstractIn cybersecurity, CVEs (Common Vulnerabilities and Exposures) are publicly disclosed hardware or software vulnerabilities. These vulnerabilities are documented and listed in the NVD database maintained by the NIST. Knowledge of the CVEs impacting an information system provides a measure of its level of security. This article points out that these vulnerabilities should be described in greater detail to understand how they could be chained together in a complete attack scenario. This article presents the first proposal for the CAPG format, which is a method for representing a CVE vulnerability, a corresponding exploit, and associated attack positions. Manuel Poisson, Valérie Viet Triem Tong, Gilles Guette, Frédéric Guihéry, Damien Crémilleux |
IEEE Big Data | 2 |
| 2023 | BAGUETTE: Hunting for Evidence of Malicious Behavior in Dynamic Analysis ReportsabstractInternational audience Vincent Raulin, Pierre-François Gimenez, Yufei Han 0001, Valérie Viet Triem Tong |
SECRYPT | 4 |
| 2022 | Debiasing Android Malware Datasets: How Can I Trust Your Results If Your Dataset Is Biased?abstractAndroid security has received a lot of attention over the last decade, especially malware investigation. Researchers attempt to highlight applications’ security-relevant characteristics to better understand malware and effectively distinguish malware from benign applications. The accuracy and the completeness of their proposals are evaluated experimentally on malware and goodware datasets. Thus, the quality of these datasets is of critical importance: if the datasets are outdated or not representative of the studied population, the conclusions may be flawed. We specify different types of experimental scenarios. Some of them require unlabeled but representative datasets of the entire population. Others require datasets labeled with valuable characteristics that may be difficult to compute, such as malware datasets. We discuss the irregularities of datasets used in experiments, questioning the validity of the performances reported in the literature. This article focuses on providing guidelines for designing debiased datasets. First, we propose guidelines for building representative datasets from unlabeled ones. Second, we propose and experiment a debiasing algorithm that, given a biased labeled dataset and a target representative dataset, builds a representative and labeled dataset. Finally, from the previous debiased datasets, we produce datasets for experiments on Android malware detection or classification with machine learning algorithms. Experiments show that debiased datasets perfom better when classifying with machine learning algorithms. Tomás Concepción Miranda, Pierre-François Gimenez, Jean-François Lalande, Valérie Viet Triem Tong, Pierre Wilke |
IEEE Trans. Inf. Forensics Secur. | 4 |
| 2022 | PWNJUTSU: A Dataset and a Semantics-Driven Approach to Retrace Attack CampaignsabstractIdentifying patterns in the modus operandi of attackers is an essential requirement in the study of Advanced Persistent Threats. Previous studies have been hampered by the lack of accurate, relevant, and representative datasets of current threats. System logs and network traffic captured during attacks on real companies’ information systems are the best data sources to build such datasets. Unfortunately, for apparent reasons of companies’ reputation, privacy, and security, such data is seldom available. This article proposes an alternative approach to such issues involved with collecting data. It first presents a formal model of an attacker’s tactical progression during their network propagation phase. Such a progression is expressed according to the attacker’s state, called muSE, which specifies their propagation area, collected secrets, and knowledge of the environment. The new model wields the operational semantics of attack techniques proposed in this article. The semantics formally define a transition relation between attackers’ states. Hence, it can be used to describe an entire attack scenario. This formalization allows the ability to describe the PWNJUTSU experiment unequivocally. In this experiment, 22 Red Teamers attacked the vulnerable infrastructure to compromise machines and steal secret flags. Each Red Teamer operated on a dedicated instance. Sensors captured system logs and network traffic on each of these instances. This article’s second contribution is the public release of the PWNJUTSU dataset. Aimad Berady, Mathieu Jaume, Valérie Viet Triem Tong, Gilles Guette |
IEEE Trans. Netw. Serv. Manag. | 3 |
| 2021 | Accurate Measurement of the Energy Consumption of Security Functions
Benoît Fournier, Valérie Viet Triem Tong, Gilles Guette |
SECRYPT | 2 |
| 2021 | From TTP to IoC: Advanced Persistent Graphs for Threat HuntingabstractDefenders fighting against Advanced Persistent Threats need to discover the propagation area of an adversary as quickly as possible. This discovery takes place through a phase of an incident response operation called Threat Hunting, where defenders track down attackers within the compromised network. In this article, we propose a formal model that dissects and abstracts elements of an attack, from both attacker and defender perspectives. This model leads to the construction of two persistent graphs on a common set of objects and components allowing for (1) an omniscient actor to compare, for both defender and attacker, the gap in knowledge and perceptions; (2) the attacker to become aware of the traces left on the targeted network; (3) the defender to improve the quality of Threat Hunting by identifying false-positives and adapting logging policy to be oriented for investigations. In this article, we challenge this model using an attack campaign mimicking APT29, a real-world threat, in a scenario designed by the MITRE Corporation. We measure the quality of the defensive architecture experimentally and then determine the most effective strategy to exploit data collected by the defender in order to extract actionable Cyber Threat Intelligence, and finally unveil the attacker. Aimad Berady, Mathieu Jaume, Valérie Viet Triem Tong, Gilles Guette |
IEEE Trans. Netw. Serv. Manag. | 3 |
| 2019 | Teaching Android Mobile SecurityabstractAt present, computer science studies generally offer courses addressing mobile development and they use mobile technologies for illustrating theoretical concepts such as operating system, design patterns, and compilation because Android and iOS use a large variety of technologies for developing applications. Teaching courses on security is also becoming an important concern for academics, and the use of mobile platforms (such as Android) as supporting material is becoming a reasonable option. In this paper, we intend to bridge a gap in the literature by reversing this paradigm: Android is not only an opportunity to learn security concepts but requires strong pedagogical efforts for covering all the aspects of mobile security. Thus, we propose teaching Android mobile security through a two-dimensional approach. The first dimension addresses the cognitive process of the Bloom taxonomy, and the second dimension addresses the technical layers of the architecture of the Android operating system. We describe a set of comprehensive security laboratory courses covering various concepts, ranging from the application development perspective to a deep investigation of the Android Open Source Project and its interaction with the Linux kernel. We evaluated this approach, and our results verify that the designed security labs impart the required knowledge to the students. Jean-François Lalande, Valérie Viet Triem Tong, Pierre Graux, Guillaume Hiet, Wojciech Mazurczyk, Habiba Chaoui, Pascal Berthomé |
SIGCSE | 2 |
| 2019 | SEER4US, Secured Energy Efficient Routing for UAV SwarmsabstractThis article introduces SEER4US a secured routing protocol designed for UAV swarm networks. SEER4US is the first protocol providing integrity of routing messages and authentication of their sender with low energy consumption for battery preservation. SEER4US prevents the UAV swarms from usual routing attacks enabled when routing messages are modified or replayed by nodes external to the swarm. SEER4US is an extension of the pro-active routing protocol OLSR designed for mobile ad-hoc networks. SEER4US is also inspired from TESLA, a protocol designed for stream signature allowing authentication of stream messages sender. After specifying SEER4US, we evaluate here the energy requirements of this protocol and we show that the use of lightweight cryptography allows a significant energy saving compared to traditional cryptographic schemes. Benoît Fournier, Gilles Guette, Valérie Viet Triem Tong, Jean-Louis Lanet |
WiMob | 3 |
| 2017 | Information Flows at OS Level Unmask Sophisticated Android MalwareabstractInternational audience Valérie Viet Triem Tong, Aurélien Trulla, Mourad Leslous, Jean-François Lalande |
SECRYPT | 1 |
| 2017 | Information Flow Tracking for Linux Handling Concurrent System Calls and Shared Memory
Laurent Georget, Mathieu Jaume, Guillaume Piolle, Frédéric Tronel, Valérie Viet Triem Tong |
SEFM | 5 |
| 2015 | Detection and Identification of Android Malware Based on Information Flow MonitoringabstractInformation flow monitoring has been mostly used to detect privacy leaks. In a previous work, we showed that they can also be used to characterize Android malware behaviours and in the current one we show that these flows can also be used to detect and identify Android malware. The characterization consists in computing automatically System Flow Graphs that describe how a malware disseminates its data in the system. In the current work, we propose a method that uses these SFG-based malware profile to detect the execution of Android malware by monitoring the information flows they cause in the system. We evaluated our method by monitoring the execution of 39 malware samples and 70 non malicious applications. Our results show that our approach detected the execution of all the malware samples and did not raise any false alerts for the 70 non malicious applications. Radoniaina Andriatsimandefitra, Valérie Viet Triem Tong |
CSCloud | 2 |
| 2015 | Kayrebt: An activity diagram extraction and visualization toolset designed for the Linux codebaseabstractWe present Extractor and Viewer, two tools from the Kayrebt toolset. The former is a plugin for the Gnu Compiler Collection (GCC) which builds pseudo-UML2 activity diagrams from C source code. It is specifically designed to handle the Linux kernel, a large and complex codebase. Use cases for this tool are numerous. The diagrams extracted from the C source code can be used to get a better insight of the control or data flow inside a program, or to evaluate the complexity of a function at a glance. Kayrebt::Viewer is a GUI designed for visualizing and navigating between the diagrams to explore source code. Laurent Georget, Frédéric Tronel, Valérie Viet Triem Tong |
VISSOFT | 3 |
| 2014 | Capturing Android Malware Behaviour Using System Flow Graph
Radoniaina Andriatsimandefitra, Valérie Viet Triem Tong |
NSS | 2 |
| 2013 | A privacy preserving distributed reputation mechanismabstractReputation systems allow to estimate the trustworthiness of entities based on their past behavior. Electronic commerce, peer-to-peer routing and collaborative environments, just to cite a few, highly benefit from using reputation systems. To guarantee an accurate estimation, reputation systems typically rely on a central authority, on the identification and authentication of all the participants, or both. In this paper, we go a step further by presenting a distributed reputation mechanism which is robust against malicious behaviors and that preserves the privacy of its clients. Guaranteed error bounds on the estimation are provided. Emmanuelle Anceaume, Gilles Guette, Paul Lajoie-Mazenc, Nicolas Prigent, Valérie Viet Triem Tong |
ICC | 5 |
| 2012 | Designing information flow policies for Android's operating systemabstractA mobile phone evolves as a data repository where the pieces of data have different owners and may thus be protected by different security policies. These pieces of data are used on an open environment controlled by a non-specialist user: the owner of the mobile phone. However, previous research projects have studied dynamic monitoring of information flows in a system. We believe that the results of these projects are well adapted for protecting information on an embedded system as a mobile phone. Nevertheless the difficulties to define the information flow policy that govern the information flow monitor is an obstacle for the usability of such an approach by a wide audience. In this paper we detail step by step the construction of a precise information flow policy for the Android operating system. Our main objective is to answer the following questions: in practice, how much sensitive information can be monitored on a real system? What information it is desirable to monitor on a mobile phone? What is the induced execution overhead for applications? Can we propose a default information flow policy? Radoniaina Andriatsimandefitra, Stephane Geller, Valérie Viet Triem Tong |
ICC | 3 |
| 2011 | Information Flow Control for Intrusion Detection Derived from MAC PolicyabstractMost of today's MAC implementations can be turned into permissive mode, where no enforcement is performed but alerts are raised instead. This behavior is very close to an anomaly IDS except that the system is configured through a MAC policy. MAC implementations such as SELinux and AppArmor come with a default policy including real life and practical rules ready to be used as is or as a basis for a custom policy. In this paper, we first propose an extension of an IDS based on information flow control. We address issues concerning programs execution and improve its expressiveness in terms of security policy. This extended model can be configured to reach a wide variety of different security goals. Particularly, it allows for information flow checking based on users and/or programs dependent policy rules. Furthermore, suspicious modification of binary programs can be detected to avoid malware execution. We also propose an algorithm for deriving an AppArmor MAC policy into an information flow policy, and thus get the advantage of having a ready to use policy offering good security. We finally show a practical example of deriving such a policy in order to configure our IDS. Stephane Geller, Christophe Hauser, Frédéric Tronel, Valérie Viet Triem Tong |
ICC | 4 |
| 2010 | Liability in software engineering: overview of the LISE approach and illustration on a case studyabstractLISE is a multidisciplinary project involving lawyers and computer scientists with the aim to put forward a set of methods and tools to (1) define software liability in a precise and unambiguous way and (2) establish such liability in case of incident. This paper provides an overview of the overall approach taken in the project based on a case study. The case study illustrates a situation where, in order to reduce legal uncertainties, the parties to a contract wish to include in the agreement specific clauses to define as precisely as possible the share of liabilities between them for the main types of failures of the system. Daniel Le Métayer, Manuel Maarek, Valérie Viet Triem Tong, Eduardo Mazza, Marie-Laure Potet, Nicolas Craipeau, Stéphane Frénot, Ronan Hardouin |
ICSE (1) | 3 |
| 2009 | Specification of Anonymity as a Secrecy Property in the ADM Logic - Homomorphic-Based Voting ProtocolsabstractNowadays, it is a well-known fact that only formal methods can provide a proof that a given system meets its requirements. Their use become mandatory for critical systems such as electronic voting which must satisfy several and complex properties (receipt-freeness, verifiability). Among these properties, anonymity is probably the most desirable one. Formally, this property was mainly specified using the concept of indistinguishability which implies complex definitions (in terms of equivalence relations). In this paper, we give an alternative and simpler specification of anonymity property in the ADM logic. We specify anonymity as a secrecy property which represents the oldest and most understood property of security protocols. Our specification is specific to homomorphic-based voting schemes since in this case, voter's anonymity rely on the secrecy of his vote. Mehdi Talbi, Valérie Viet Triem Tong, Adel Bouhoula |
ARES | 2 |
| 2009 | An Efficient Distributed PKI for Structured P2P NetworksabstractIn decentralized P2P networks, many security mechanisms still rely on a central authority. This centralization creates a single point of failure and does not comply with the P2P principles. We previously proposed a distributed PKI for P2P networks which allows to push security mechanisms to the edges of the network but relies on unaffordable maintenance operations using byzantine agreements. In this paper, we address this shortcoming and propose efficient maintenance operations without any agreements. Our improvements allow a real deployment of this P2P PKI. François Lesueur, Ludovic Mé, Valérie Viet Triem Tong |
Peer-to-Peer Computing | 3 |
| 2009 | Blare Tools: A Policy-Based Intrusion Detection System Automatically Set by the Security Policy
Laurent George 0002, Valérie Viet Triem Tong, Ludovic Mé |
RAID | 2 |
| 2009 | Policy-based intrusion detection in web applications by monitoring Java information flowsabstractThis article focuses on intrusion detection in systems using Web applications and COTS. We present a solution that combines policy-based intrusion detection and information flow control. We describe JBlare, an inline Java monitor that tracks inter-method flows in Java applications. This monitor collaborates with Blare, a monitor that tracks information flow in the whole system at the OS-level. The combination of these two detectors constitutes a policy-based Intrusion Detection System that can address a wide range of attacks. Guillaume Hiet, Valérie Viet Triem Tong, Ludovic Mé, Benjamin Morin |
Int. J. Inf. Comput. Secur. | 2 |
| 2008 | Policy-based intrusion detection in Web applications by monitoring Java information flowsabstractThis article focuses on intrusion detection in systems using Web applications and COTS. We present a solution that combines policy-based intrusion detection and information flow control. We describe JBlare, an inline Java monitor that tracks inter-method flows in Java applications. This monitor collaborates with Blare, a monitor that tracks information flow in the whole system at the OS-level. The combination of these two detectors constitutes a policy-based Intrusion Detection System that can address a wide range of attacks. Guillaume Hiet, Valérie Viet Triem Tong, Ludovic Mé, Benjamin Morin |
CRiSIS | 2 |
| 2008 | Specification of Electronic Voting Protocol Properties Using ADM Logic: FOO Case Study
Mehdi Talbi, Benjamin Morin, Valérie Viet Triem Tong, Adel Bouhoula |
ICICS | 3 |
| 2008 | A sybilproof distributed identity management for P2P networksabstractStructured P2P networks are vulnerable to the sybil attack. In this attack, a misbehaving person generates a huge number of node identifiers and possibly chooses some of them in order to disrupt availability or integrity in the P2P network. In order to circumvent this attack, one person should be able to obtain only a limited set of identifiers and should not be able to choose them. Moreover, due to the distributed architecture of P2P networks, this limitation should not be managed by a centralized system. In this paper, we propose such a sybilproof distributed identity management system which is based on invitations, and thus rely on social relationships between users. François Lesueur, Ludovic Mé, Valérie Viet Triem Tong |
ISCC | 3 |
| 2004 | Reachability Analysis over Term Rewriting Systems
Guillaume Feuillade, Thomas Genet, Valérie Viet Triem Tong |
J. Autom. Reason. | 3 |
| 2001 | Reachability Analysis of Term Rewriting Systems with Timbuk
Thomas Genet, Valérie Viet Triem Tong |
LPAR | 2 |