EDBT 2026 Demo / reviewers in the wild / expert
Michal Król
dblp:157/4436
· DBLP profile ↗
22ranked-venue papers
6as first author
14since 2021 · last 2026
0000-0002-3437-8621ORCID · reported
Domains — the database's venue-derived domains; a paper can count in several
Computer networks · 7 · 1 first-author · 3 since 2021Security and privacy · 7 · 2 first-author · 7 since 2021Applied, interdisciplinary, general and emerging computing · 4 · 1 first-author · 4 since 2021Databases, data management, data science and information retrieval · 3 · 3 since 2021Software engineering, systems software and programming languages · 2 · 1 first-author · 1 since 2021Human-computer interaction and ubiquitous computing · 1 · 1 since 2021
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2026 | PEACE: Privacy-Enhanced Authentication for Cryptocurrency Environments
Stefan Dziembowski, Shahriar Ebrahimi, Pawel Kedzior, Michal Król, Tomasz Lizurej |
SECRYPT (1) | 4 |
| 2026 | Netting Phish in the IPFS Ocean: Real-Time Monitoring and Characterization of Decentralized Phishing CampaignsabstractThe InterPlanetary File System (IPFS) is the largest decentralized content-centric storage network. While its architecture enables resilient, distributed content delivery, it can be abused to host and disseminate malicious content. Public IPFS HTTP gateways further expand this threat surface, enabling attackers to deploy phishing websites and leverage gateway reputation to evade detection. This model can keep content available even after attackers go offline and challenges traditional phishing detection systems. Anas Kastantin, Leonhard Balduf, Onur Ascigil, Saidu Sokoto, Björn Scheuermann 0001, Andrzej Duda, Michal Król, Maciej Korczynski |
WWW | 7 |
| 2026 | Open or Blocked Skies? Community Moderation Practices in BlueskyabstractContent moderation is a major challenge for online platforms. While user-driven blocking is a common tool, its dynamics are usually hidden as moderation data is private. Bluesky makes moderation actions public-by-design, providing an unprecedented opportunity to study a community-driven moderation ecosystem at scale. We leverage this transparency to (1) map the ecosystem of moderation blocking actions across 34 million users, including both individual blocks and the through blocklists, (2) identify the signals that correlate with blocking, and (3) measure the consequences of these actions. We demonstrate that community blocking is widespread, with a volume several orders of magnitude higher than official takedowns, and affects the visibility of more than 90 % of Bluesky content. The blocked accounts represent the most active, popular, toxic, and politically inclined users. However, different blocklists target different types of accounts and behaviors. Finally, blocking does not decrease the popularity and activity of the blocked users and has a limited effect on the social graph. By quantifying its dynamics and trade-offs, our study provides empirical grounding for designing future moderation systems that are transparent, pluralistic, and resistant to centralized control. Taken together, this study provides the first large-scale, quantitative analysis of a community-driven moderation ecosystem, demonstrating how individual and collective interventions influence user behavior. Saidu Sokoto, Leonhard Balduf, Onur Ascigil, Gareth Tyson, Ignacio Castro, Björn Scheuermann 0001, Andrea Baronchelli, Michal Król |
WWW | 8 |
| 2025 | Bootstrapping Social Networks: Lessons from Bluesky Starter PacksabstractMicroblogging is a crucial mode of online communication. However, launching a new microblogging platform remains challenging, largely due to network effects. This has resulted in entrenched (and undesirable) dominance by established players, such as X/Twitter. To overcome these network effects, Bluesky, an emerging microblogging platform, introduced starter packs — curated lists of accounts that users can follow with a single click. We ask if starter packs have the potential to tackle the critical problem of social bootstrapping in new online social networks. We assess whether starter packs have indeed been helpful in supporting Bluesky growth. Our dataset includes 25.05 × 10⁶ users and 335.42 × 10³ starter packs with 1.73 × 10⁶ members, covering the entire lifecycle of Bluesky. We study the usage of these starter packs, their ability to drive network and activity growth, and their potential downsides. We also quantify the benefits of starter packs for members and creators on user visibility and activity while identifying potential challenges. By evaluating starter packs’ effectiveness and limitations, we contribute to the broader discourse on platform growth strategies and competitive innovation in the social media landscape. Leonhard Balduf, Saidu Sokoto, Andrea Baronchelli, Ignacio Castro, Michal Król, Gareth Tyson, George Pavlou, Björn Scheuermann 0001, Onur Ascigil |
ICWSM | 5 |
| 2025 | PANDAS: Peer-to-peer, Adaptive Networking Allowing Data Availability Sampling within Ethereum Consensus TimeboundsabstractLayer-2 protocols such as rollups can help address Ethereum's throughput limits. An efficient data availability layer is key for layer-2 support in Ethereum, but broadcast methods do not scale. A promising approach is the selective distribution of layer-2 data and its verification by data availability sampling (DAS). Integrating DAS with Ethereum consensus is, however, a challenge, as data must be shared and sampled within 4 seconds of each consensus slot. Matthieu Pigaglio, Onur Ascigil, Michal Król, Kaleem Peeroo, Sergi Rene, Ramin Sadre, Vladimir Stankovic 0002, Etienne Rivière |
Middleware | 3 |
| 2024 | DISC-NG: Robust Service Discovery in the Ethereum Global NetworkabstractThe Ethereum Global Network (EGN) hosts a complete ecosystem of decentralized services, including blockchains such as Ethereum mainnet but also exchange markets, content delivery networks, and many more. Service discovery is a fundamental mechanism in the EGN, allowing new nodes to look up and connect to other nodes already participating in one of these services. The current service discovery of the EGN, DISCv5, is not scalable and efficient enough to support the current and future needs of the ecosystem. We present DISC-NG, a novel service discovery protocol for the EGN that is scalable, efficient, and secure. DISC-NG leverages the EGN-wide DHT to allow service participation advertisements to meet service discovery requests. DISC-NG compensates the unbalance in service popularity and minimizes the potential for abuse by malicious nodes. We implement DISC-NG in devp2p, the network stack used by the majority of clients connecting to the EGN, as well as in a large-scale simulator. DISC-NG can discover services in the EGN faster than DISCv5 while being more robust to malicious nodes. DISC-NG is now in a staging phase and scheduled for deployment as an improvement to DISCv5. Michal Król, Onur Ascigil, Sergi Rene, Alberto Sonnino, Matthieu Pigaglio, Ramin Sadre, Etienne Rivière |
EuroS&P | 1 |
| 2024 | Looking AT the Blue Skies of BlueskyabstractThe pitfalls of centralized social networks, such as Facebook and Twitter/X, have led to concerns about control, transparency, and accountability. Decentralized social networks have emerged as a result with the goal of empowering users. These decentralized approaches come with their own trade-offs, and therefore multiple architectures exist. In this paper, we conduct the first large-scale analysis of Bluesky, a prominent decentralized microblogging platform. In contrast to alternative approaches (e.g. Mastodon), Bluesky decomposes and opens the key functions of the platform into subcomponents that can be provided by third party stakeholders. We collect a comprehensive dataset covering all the key elements of Bluesky, study user activity and assess the diversity of providers for each sub-components. Leonhard Balduf, Saidu Sokoto, Onur Ascigil, Gareth Tyson, Björn Scheuermann 0001, Maciej Korczynski, Ignacio Castro, Michal Król |
IMC | 8 |
| 2024 | Content Censorship in the InterPlanetary File System
Srivatsan Sridhar, Onur Ascigil, Navin V. Keizer, François Genon, Sébastien Pierre, Yiannis Psaras, Etienne Rivière, Michal Król |
NDSS | 8 |
| 2024 | Guardians of the Galaxy: Content Moderation in the InterPlanetary File System
Saidu Sokoto, Leonhard Balduf, Dennis Trautwein, Yiluo Wei, Gareth Tyson, Ignacio Castro, Onur Ascigil, George Pavlou, Maciej Korczynski, Björn Scheuermann 0001, Michal Król |
USENIX Security Symposium | 11 |
| 2023 | The Cloud Strikes Back: Investigating the Decentralization of IPFSabstractInterplanetary Filesystem (IPFS) is one of the largest peer-to-peer filesystems in operation. The network is the default storage layer for Web3 and is being presented as a solution to the centralization of the web. In this paper, we present a large-scale, multi-modal measurement study of the IPFS network. We analyze the topology, the traffic, the content providers and the entry points from the classical Internet. Our measurements show significant centralization in the IPFS network and a high share of nodes hosted in the cloud. We also shed light on the main stakeholders in the ecosystem. We discuss key challenges that might disrupt continuing efforts to decentralize the Web and highlight multiple properties that are creating pressures toward centralization. Leonhard Balduf, Maciej Korczynski, Onur Ascigil, Navin V. Keizer, George Pavlou, Björn Scheuermann 0001, Michal Król |
IMC | 7 |
| 2023 | Don't Get Hijacked: Prevalence, Mitigation, and Impact of Non-Secure DNS Dynamic UpdatesabstractDNS dynamic updates represent an inherently vulnerable mechanism deliberately granting the potential for any host to dynamically modify DNS zone files. Consequently, this feature exposes domains to various security risks such as domain hijacking, compromise of domain control validation, and man-in-the-middle attacks. Originally devised without the implementation of authentication mechanisms, non-secure DNS updates were widely adopted in DNS software, subsequently leaving domains susceptible to a novel form of attack termed zone poisoning. In order to gauge the extent of this issue, our analysis encompassed over 353 million domain names, revealing the presence of 381,965 domains that openly accepted unsolicited DNS updates. We then undertook a comprehensive three-phase campaign involving the notification of Computer Security Incident Response Teams (CSIRTs). Following extensive discussions spanning six months, we observed substantial remediation, with nearly 54% of nameservers and 98% of vulnerable domains addressing the issue. This outcome serves as evidence that engaging with CSIRTs can prove to be an effective approach for reporting security vulnerabilities. Moreover, our notifications had a lasting impact, as evidenced by the sustained low prevalence of vulnerable domains. Yevheniya Nosyk, Maciej Korczynski, Carlos Gañán, Michal Król, Qasim Lone, Andrzej Duda |
TrustCom | 4 |
| 2021 | Shard scheduler: object placement and migration in sharded account-based blockchainsabstractWe propose Shard Scheduler, a system for object placement and migration in account-based sharded blockchains. Our system calculates optimal placement and decides on object migrations across shards. It supports complex multi-account transactions caused by smart contracts. Placement and migration decisions made by Shard Scheduler are fully deterministic, verifiable, and can be made part of the consensus protocol. Shard Scheduler reduces the number of costly cross-shard transactions, ensures balanced load distribution and maximizes the number of processed transactions for the blockchain as a whole. To this end, it leverages a novel incentive model motivating miners to maximize the global throughput of the entire blockchain rather than the throughput of a specific shard. In our simulations, Shard Scheduler can reduce the number of costly cross-shard transactions by half while ensuring equal load and increasing throughput more than 2 fold when using 60 shards. We also implement and evaluate Shard Scheduler on Chainspace, more than doubling its throughput and reducing user-perceived latency by 70% when using 10 shards. Michal Król, Onur Ascigil, Sergi Rene, Alberto Sonnino, Mustafa Al-Bassam, Etienne Rivière |
AFT | 1 |
| 2021 | EL PASSO: Efficient and Lightweight Privacy-preserving Single Sign OnabstractAbstract Anonymous credentials are a solid foundation for privacy-preserving Single Sign-On (SSO). They enable unlinkable authentication across domains and allow users to prove their identity without revealing more than necessary. Unfortunately, anonymous credentials schemes remain difficult to use and complex to deploy. They require installation and use of complex software at the user side, suffer from poor performance, and do not support security features that are now common, such as two-factor authentication, secret recovery, or support for multiple devices. In contrast, Open ID Connect (OIDC), the de facto standard for SSO is widely deployed and used despite its lack of concern for users’ privacy. We present EL PASSO, a privacy-preserving SSO system based on anonymous credentials that does not trade security for usability, and can be incrementally deployed at scale alongside Open ID Connect with no significant changes to end-user operations. EL PASSO client-side operations leverage a WebAssembly module that can be downloaded on the fly and cached by users’ browsers, requiring no prior software installation or specific hardware. We develop automated procedures for managing cryptographic material, supporting multi-device support, secret recovery, and privacy-preserving two-factor authentication using only the built-in features of common Web browsers. Our implementation using PS Signatures achieves 39x to 180x lower computational cost than previous anonymous credentials schemes, similar or lower sign-on latency than Open ID Connect and is amenable for use on mobile devices. Zhiyi Zhang 0001, Michal Król, Alberto Sonnino, Lixia Zhang 0001, Etienne Rivière |
Proc. Priv. Enhancing Technol. | 2 |
| 2021 | Proof-of-Prestige: A Useful Work Reward System for Unverifiable Tasks
Michal Król, Alberto Sonnino, Mustafa Al-Bassam, Argyrios G. Tasiopoulos, Etienne Rivière, Ioannis Psaras |
ACM Trans. Internet Techn. | 1 |
| 2020 | PASTRAMI: Privacy-preserving, Auditable, Scalable & Trustworthy Auctions for Multiple ItemsabstractDecentralised cloud computing platforms enable individuals to offer and rent resources in a peer-to-peer fashion. They must assign resources from multiple sellers to multiple buyers and derive prices that match the interests and capacities of both parties. The assignment process must be decentralised, fair and transparent, but also protect the privacy of buyers. Michal Król, Alberto Sonnino, Argyrios G. Tasiopoulos, Ioannis Psaras, Etienne Rivière |
Middleware | 1 |
| 2019 | DEEM: Enabling Microservices via DEvice Edge MarketsabstractNative applications running over handheld devices have an irreplaceable role in users' daily activities. That said, recent studies show that users download on average zero new applications on monthly basis, which suggests that new apps can face discoverability issues. In this work, we aim for a web-based, download/installation-free access to native application features through microservices (μ Services)that are shared between user devices in a peer-to-peer (P2P)manner. Such a P2P approach is self-scalable and requires no investment for μ Service deployment, unlike mobile edge computing or Data Centre. We introduce DEEM, a DEvice Edge Market design that enables device-hosted μServices to end-users. In DEEM, μ Service-based markets act as rendezvous points between available μ Service instances and clients. DEEM ensures the i) assignment of instances to the users that value them the most, in terms of QoS gain, and ii) devices' income maximisation. Our evaluation on synthetic settings demonstrates DEEM's capability in exploiting the pool of device instances for improving the application QoS in terms of latency. Argyrios G. Tasiopoulos, Onur Ascigil, Sergi Rene, Michal Król, Ioannis Psaras, George Pavlou |
WOWMOM | 4 |
| 2017 | Wireless Sensor Networks and Multi-UAV systems for natural disaster management
Milan Erdelj, Michal Król, Enrico Natalizio |
Comput. Networks | 2 |
| 2017 | Trickle-D: High Fairness and Low Transmission Load With Dynamic RedundancyabstractEmbedded devices of the Internet of Things form the so-called low-power and lossy networks. In these networks, nodes are constrained in terms of energy, memory, and processing. Links are lossy and exhibit a transient behavior. From the point of view of energy expenditure, governing control overhead emission is crucial and is the role of the Trickle algorithm. We address Trickle's fairness problem to evenly distribute the transmission load across the network, while keeping the total message count low. First, we analytically analyze two underlying causes of unfairness in Trickle networks: 1) desynchronization among nodes and 2) nonuniform topologies. Based on our analysis, we propose a first algorithm whose performance and parameters we study in an emulated environment. From this feedback, we design a second algorithm Trickle-D that adapts the redundancy parameter to achieve high fairness while keeping the transmission load low. We validate Trickle-D in real-life conditions using a large scale experimental testbed. Trickle-D requires minimal changes to Trickle, zero user input, emits 17.7% less messages than state-of-the-art and 37.2% less messages than state-of-practice, while guaranteeing high fairness across the network. Malisa Vucinic, Michal Król, Baptiste Jonglez, Titouan Coladon, Bernard Tourancheau |
IEEE Internet Things J. | 2 |
| 2016 | WEAVE: Efficient Geographical Routing in Large-Scale Networks
Michal Król, Eryk Schiller, Franck Rousseau, Andrzej Duda |
EWSN | 1 |
| 2016 | Zone Poisoning: The How and Where of Non-Secure DNS Dynamic Updates
Maciej Korczynski, Michal Król, Michel van Eeten |
Internet Measurement Conference | 2 |
| 2015 | Featurecast: Lightweight Data-Centric Communications for Wireless Sensor Networks
Michal Król, Franck Rousseau, Andrzej Duda |
EWSN | 1 |
| 2015 | Low overhead loop-free routing in wireless sensor networksabstractWe consider the crucial problem of routing in wireless sensor networks. Routing protocols need to deal with topology changes while keeping the routing overhead low, especially the number of broadcasts, to save energy. In this paper, we consider the problem of building and adapting default routes for convergecast and host routes for downward traffic. We first propose a local repair scheme that allows arbitrarily long periods for rebuilding the tree/DODAG of default routes. Second, we design a scheme for preventing packet forwarding along routing loops, which may occur in the combination of broken host routes and default routes. We achieve this goal without adding an additional header to packets. The two schemes along with on-demand host route construction provides a complete routing solution that addresses many of the shortcomings of RPL. We validate the proposed schemes with Cooja emulations and an experimental evaluation on a real-world sensor network testbed. Henry-Joseph Audéoud, Michal Król, Martin Heusse, Andrzej Duda |
WiMob | 2 |