Chiara Braghin

dblp:02/5915 · DBLP profile ↗
← Back
21ranked-venue papers
16as first author
8since 2021 · last 2026
0000-0002-9756-4675ORCID · verified

Domains — the database's venue-derived domains; a paper can count in several

Software engineering, systems software and programming languages · 10 · 9 first-author · 3 since 2021Theory of computation · 7 · 4 first-author · 2 since 2021Security and privacy · 6 · 5 first-author · 4 since 2021Applied, interdisciplinary, general and emerging computing · 2 · 2 first-author
YearPublicationVenuePosition
2026 Security-by-Design Reference Architecture for Data Governance in Healthcare Digital Twins
Chiara Braghin, Stelvio Cimato, Andrea Marchesini, Fabio Palazzesi, Elvinia Riccobene
SECRYPT (1)1
2025 Using Symbolic Model Execution to Detect Vulnerabilities of Smart Contracts
Chiara Braghin, Giuseppe Del Castillo, Elvinia Riccobene, Simone Valentini
ABZ1
2024 Kant: A Domain-Specific Language for Modeling Security Protocols
Chiara Braghin, Mario Lilli, Elvinia Riccobene, Marian Baba
MODELSWARD1
2024 An ASM-Based Approach for Security Assessment of Ethereum Smart Contracts
Chiara Braghin, Elvinia Riccobene, Simone Valentini
SECRYPT1
2024 A Modeling and Verification Framework for Ethereum Smart Contracts
Simone Valentini, Chiara Braghin, Elvinia Riccobene
ABZ2
2023 A model-based approach for vulnerability analysis of IoT security protocols: The Z-Wave case study
Chiara Braghin, Mario Lilli, Elvinia Riccobene
Comput. Secur.1
2021 Dynamic and Scalable Enforcement of Access Control Policies for Big Data
abstract
The conflict between the need of protecting and sharing data is hampering the spread of big data applications. Security and privacy assurance is required to protect data owners, while data access and sharing are fundamental to implement smart big data solutions. In this context, access control systems can assume a central role in balancing data protection and data sharing. However, existing access control solutions are not general and scalable enough to address the software and technological complexity of big data ecosystems, being unable to support such a dynamic and collaborative environment. In this paper, we propose an access control system that enforces access to data in a distributed, multi-party big data environment. It is based on data annotations and secure data transformations performed at ingestion time. We show the feasibility of our approach in the smart city domain using an Apache-based big data engine.
Marco Anisetti, Claudio A. Ardagna, Chiara Braghin, Ernesto Damiani, Antongiacomo Polimeno, Alessandro Balestrucci
MEDES3
2021 Formal Proof of a Vulnerability in Z-Wave IoT Protocol
Mario Lilli, Chiara Braghin, Elvinia Riccobene
SECRYPT2
2018 Are mHealth Apps Secure? A Case Study
abstract
mHealth applications are becoming increasingly widespread since they have the potential to reduce the cost of health care by favoring self-management of chronic diseases or to improve fitness activities. By their very nature, health applications collect and manage health sensitive data, therefore several concerns exist about how privacy, security, and confidentiality are handled. In this paper, we analyze the security issues of mHealth apps from two different perspectives: first, we highlight the security and privacy requirements on health data defined by data protection laws such as the General Data Protection Regulation (GDPR) in the EU, or the Health Insurance Portability and Accountability Act (HIPAA) in US. Then, we consider the security issues from a technological point of view, discussing how the app may protect user data. However, by analyzing a fitness app, we show that, at the moment, none of the well-known practices to protect data is followed, thus often mHealth apps are insecure.
Chiara Braghin, Stelvio Cimato, Alessio Della Libera
COMPSAC (2)1
2017 Is Pokémon GO Watching You? A Survey on the Privacy-Awareness of Location-Based Apps' Users
abstract
After the NSA surveillance revelations in 2013, people became aware of the lack of privacy with respect to the US government. But are users aware that also apps may spy them, collect and even sell their personal data? From their common behavior during their always-connected every day life, it does not seem so: many people use apps that collect and send their browsing habits to third-parties. An example is the Pokémon GO app, a game that in a few months became a worldwide phenomenon, that in its Privacy policy clearly states that the user allows the app to access his emails, address book, location and other very private personal info. In this work, we examined consumers' attitudes and perceptions regarding their privacy by conducting a survey on 208 participants diverse in age, gender and education. Findings suggest that consumers have very low awareness on privacy issues, and that, when downloading apps, they often fail to read the privacy policy, where it is stated who will gather access to their data and which data will be collected by the app.
Chiara Braghin, Marilisa Del Vecchio
COMPSAC (2)1
2012 The binary perfect phylogeny with persistent characters
Paola Bonizzoni, Chiara Braghin, Riccardo Dondi, Gabriella Trucco
Theor. Comput. Sci.2
2011 A model checking-based approach for security policy verification of mobile systems
abstract
Abstract This article describes an approach for the automated verification of mobile systems. Mobile systems are characterized by the explicit notion oflocation(e.g., sites where they run) and the ability to execute at different locations, yielding a number of security issues. To this aim, we formalize mobile systems as Labeled Kripke Structures, encapsulating the notion oflocation netthat describes the hierarchical nesting of the threads constituting the system. Then, we formalize a genericsecurity-policy specification languagethat includes rules for expressing and manipulating the code location. In contrast to many other approaches, our technique supports both access control and information flow specification. We developed a prototype framework for model checking of mobile systems. It works directly on the program code (in contrast to most traditional process-algebraic approaches that can model only limited details of mobile systems) and uses abstraction-refinement techniques, based also on location abstractions, to manage the program state space. We experimented with a number of mobile code benchmarks by verifying various security policies. The experimental results demonstrate the validity of the proposed mobile system modeling and policy specification formalisms and highlight the advantages of the model checking-based approach, which combines the validation of security properties with other checks, such as the validation of buffer overflows.
Chiara Braghin, Natasha Sharygina, Katerina Barone-Adesi
Formal Aspects Comput.1
2008 An Exact Approach for solving the Balanced Minimum Evolution Problem
Roberto Aringhieri, Chiara Braghin, Daniele Catanzaro
CTW2
2008 Information flow security in Boundary Ambients
Chiara Braghin, Agostino Cortesi, Riccardo Focardi
Inf. Comput.1
2007 Automated Verification of Security Policies in Mobile Code
Chiara Braghin, Natasha Sharygina, Katerina Barone-Adesi
IFM1
2006 Role-based access control for a distributed calculus
abstract
Rôle-based access control (RBAC) is increasingly attracting attention because it reduces the complexity and cost of security administration by interposing the notion of rôle in the assignment of permissions to users. In this paper, we present a forma
Chiara Braghin, Daniele Gorla, Vladimiro Sassone
J. Comput. Secur.1
2004 A Distributed Calculus for Ro^le-Based Access Control
Chiara Braghin, Daniele Gorla, Vladimiro Sassone
CSFW1
2004 Nesting analysis of mobile ambients
Chiara Braghin, Agostino Cortesi, Riccardo Focardi, Flaminia L. Luccio, Carla Piazza
Comput. Lang. Syst. Struct.1
2003 BANANA - A Tool for Boundary Ambients Nesting ANAlysis
Chiara Braghin, Agostino Cortesi, Stefano Filippone, Riccardo Focardi, Flaminia L. Luccio, Carla Piazza
TACAS1
2003 Complexity of Nesting Analysis in Mobile Ambients
Chiara Braghin, Agostino Cortesi, Riccardo Focardi, Flaminia L. Luccio, Carla Piazza
VMCAI1
2002 Security boundaries in mobile ambients
Chiara Braghin, Agostino Cortesi, Riccardo Focardi
Comput. Lang. Syst. Struct.1