EDBT 2026 Demo / reviewers in the wild / expert
Jorge Cuéllar
dblp:60/5706 · also Jorge Ricardo Cuellar
· DBLP profile ↗
23ranked-venue papers
3as first author
0since 2021 · last 2019
0000-0002-2364-359XORCID · corroborated
Domains — the database's venue-derived domains; a paper can count in several
Security and privacy · 9Software engineering, systems software and programming languages · 6 · 3 first-authorComputer networks · 3Systems, architecture and hardware · 2Theory of computation · 2 · 1 first-authorArtificial intelligence and machine learning · 1Databases, data management, data science and information retrieval · 1Applied, interdisciplinary, general and emerging computing · 1
Expertise — from the expertise taxonomy: the topics of the expert's papers under the CCF categories. A weight counts papers with recency: 1 for a paper about the topic, 0.3 when the topic is its context, halved every five years.
| Network and information security
3 papers |
Privacy and data protection · 44% Authentication and access control · 41% Cryptographic protocols and secure computation · 14% | |
| Computer networks
2 papers |
Internet of things and sensor networks · 100% |
Topics — the 8 heaviest of 10, each with the papers that count most for it
| Topic | Weight | Papers | Last | Evidence papers |
|---|---|---|---|---|
Internet of things and sensor networks
sensor network security |
0.2 | 1 | 2013 | Toward a Statistical Framework for Source Anonymity in Sensor Networks · IEEE Trans. Mob. Comput. 2013 |
Internet of things and sensor networks › sensor network security
source location privacy |
0.2 | 1 | 2013 | Toward a Statistical Framework for Source Anonymity in Sensor Networks · IEEE Trans. Mob. Comput. 2013 |
Privacy and data protection
anonymity |
0.2 | 1 | 2013 | Toward a Statistical Framework for Source Anonymity in Sensor Networks · IEEE Trans. Mob. Comput. 2013 |
Authentication and access control › authentication
authentication protocols |
0.1 | 1 | 2012 | Scalable RFID Systems: A Privacy-Preserving Protocol with Constant-Time Identification · IEEE Trans. Parallel Distributed Syst. 2012 |
Privacy and data protection › privacy-preserving computation › privacy-preserving identity management
privacy-preserving identification |
0.1 | 1 | 2012 | Scalable RFID Systems: A Privacy-Preserving Protocol with Constant-Time Identification · IEEE Trans. Parallel Distributed Syst. 2012 |
Authentication and access control › authentication › authentication protocols
RFID authentication |
0.1 | 1 | 2012 | Scalable RFID Systems: A Privacy-Preserving Protocol with Constant-Time Identification · IEEE Trans. Parallel Distributed Syst. 2012 |
Cryptographic protocols and secure computation
internet security protocols |
0.1 | 1 | 2005 | The AVISPA Tool for the Automated Validation of Internet Security Protocols and Applications · CAV 2005 |
Internet of things and sensor networks
RFID systems |
0.0 | 1 | 2012 | Scalable RFID Systems: A Privacy-Preserving Protocol with Constant-Time Identification · IEEE Trans. Parallel Distributed Syst. 2012 |
Methods — techniques the papers use, named apart from their topics
statistical modeling · 0.3coding theory · 0.3binary hypothesis testing · 0.3symmetric-key cryptography · 0.3
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2019 | Guest Editorial Special Issue on Secure Embedded IoT Devices for Resilient Critical InfrastructuresabstractThe Internet of Things (IoT) creates new technological opportunities for a wide range of systems, such as industrial control systems, smart power grids, vehicular networks (VNs) and intelligent transportation systems, body area networks and healthcare monitoring and control systems and smart homes. At the same time, IoT also increases the threat surface for potential adversaries targeting critical interconnected systems that may depend on embedded IoT systems, such as supervisory control and data acquisition (SCADA) systems. At this point, attackers could take advantage from the incorporation of the paradigm to exploit new security gaps, probably caused by unforeseen interoperability and adaptability problems. Indeed, the deployment of Internet-enabled embedded devices that are distributed over major critical domains may create indirect and nonobvious interconnections with the underlying critical infrastructures (CIs). There is a need to further explore the security issues related to IoT technologies and to assure the resilience of CIs against advanced IoT-enabled attacks. The focus of this special issue is therefore to provide readers with the latest advances in securing the interaction between embedded IoT devices and CIs in order to increase their resilience to advanced IoT-enabled threats. Cristina Alcaraz, Mike Burmester, Jorge Cuéllar, Xinyi Huang 0001, Panayiotis Kotzanikolaou, Mihalis Psarakis |
IEEE Internet Things J. | 3 |
| 2018 | Workflow-Aware Security of Integrated Mobility Services
Prabhakaran Kasinathan, Jorge Cuéllar |
ESORICS (2) | 2 |
| 2018 | Securing the Integrity of Workflows in IoT
Prabhakaran Kasinathan, Jorge Cuéllar |
EWSN | 2 |
| 2015 | Probabilistic receiver-location privacy protection in wireless sensor networks
Ruben Rios, Jorge Cuéllar, Javier López 0001 |
Inf. Sci. | 2 |
| 2014 | Preserving Receiver-Location Privacy in Wireless Sensor Networks
Javier López 0001, Ruben Rios, Jorge Cuéllar |
ISPEC | 3 |
| 2014 | Guest editorial to the Special Issue on Component-Based Software Engineering and Software Architecture
Barbora Buhnova, Antonio Vallecillo, Nenad Medvidovic, Magnus Larsson, Javier López 0001, Jorge Cuéllar |
Sci. Comput. Program. | 6 |
| 2013 | An authentication flaw in browser-based Single Sign-On protocols: Impact and remediations
Alessandro Armando, Roberto Carbone, Luca Compagna, Jorge Cuéllar, Giancarlo Pellegrino, Alessandro Sorniotti |
Comput. Secur. | 4 |
| 2013 | Toward a Statistical Framework for Source Anonymity in Sensor NetworksabstractIn certain applications, the locations of events reported by a sensor network need to remain anonymous. That is, unauthorized observers must be unable to detect the origin of such events by analyzing the network traffic. Known as the source anonymity problem, this problem has emerged as an important topic in the security of wireless sensor networks, with variety of techniques based on different adversarial assumptions being proposed. In this work, we present a new framework for modeling, analyzing, and evaluating anonymity in sensor networks. The novelty of the proposed framework is twofold: first, it introduces the notion of "interval indistinguishability” and provides a quantitative measure to model anonymity in wireless sensor networks; second, it maps source anonymity to the statistical problem of binary hypothesis testing with nuisance parameters. We then analyze existing solutions for designing anonymous sensor networks using the proposed model. We show how mapping source anonymity to binary hypothesis testing with nuisance parameters leads to converting the problem of exposing private source information into searching for an appropriate data transformation that removes or minimize the effect of the nuisance information. By doing so, we transform the problem from analyzing real-valued sample points to binary codes, which opens the door for coding theory to be incorporated into the study of anonymous sensor networks. Finally, we discuss how existing solutions can be modified to improve their anonymity. Basel Alomair, Andrew Clark 0001, Jorge Cuéllar, Radha Poovendran |
IEEE Trans. Mob. Comput. | 3 |
| 2012 | Robust Probabilistic Fake Packet Injection for Receiver-Location Privacy in WSN
Ruben Rios, Jorge Cuéllar, Javier López 0001 |
ESORICS | 2 |
| 2012 | The AVANTSSAR Platform for the Automated Validation of Trust and Security of Service-Oriented Architectures
Alessandro Armando, Wihem Arsac, Tigran Avanesov, Michele Barletta, Alberto Calvi, Alessandro Cappai, Roberto Carbone, Yannick Chevalier, Luca Compagna, Jorge Cuéllar, Gabriel Erzse, Simone Frau, Marius Minea, Sebastian Mödersheim, David von Oheimb, Giancarlo Pellegrino, Serena Elisa Ponta, Marco Rocchetto, Michaël Rusinowitch, Muhammad Torabi Dashti, Mathieu Turuani, Luca Viganò 0001 |
TACAS | 10 |
| 2012 | PrefaceabstractThis series of Workshops is organized by ERCIM (European Research Consortium in Informatics and Mathematics) Working Group on Security and Trust Management, that was established in 2005 to foster collaborative work on all theoretical and practical aspects of security, trust and privacy in ICT within the European research community and to increase co-operation of the research community with the European industry.The four articles in this Special Issue were selected from the 17 papers that were accepted for presentation at the Workshop, out of 40 submissions.The articles cover representative topics of STM, such as access control, privacy, security and trust policies, or formal methods.The paper "Scalable automated symbolic analysis of administrative role-based access control policies by SMT solving" by Armando and Ranise considers the problem of automatically analysing administrative role based access control (ARBAC) policies.Such analyses are extremely useful to understand the subtle implications of complex combinations of authorizations, and more generally to ensure that ARBAC systems are scalable and can evolve gracefully.Authors isolate a new class of properties (user-role reachability) for ARBAC policies and leverage state-of-the-art SMT solvers to check automatically their validity.Finally, the strength of their approach is demonstrated through extensive experimental evaluation.In their paper "Stateful authorization logic -proof theory and a case study", Garg and Pfenning embark on the proof-theoretical study of logics for stateful authorization policies; that is, policies that depend on externally controlled conditions.They introduce an expressive logic, called BL, for reasoning about stateful authorization policies.The expressiveness of the logic is achieved through the adoption of a modal connective that allows delegation, and through an explicit modeling of time.Thanks to a careful design that crisply separates between the validity of state predicates and BL judgments, the authors provide an elegant treatment of the meta-theory of BL, and prove that it enjoys admissibility of cut, an essential property that entails consistency.The BL logic is empirically validated through a detailed case study of the US authorization policies for accessing to sensitive intelligence information.The paper "Modeling and preventing inferences from sensitive value distributions in data release" by Bezzi, De Capitani di Vimercati, Foresti, Livraga, Samarati and Sassi considers the following setting: assume a database contains many entries, each of which in its own is considered non-sensitive and can be declassified, but some Gilles Barthe, Jorge Cuéllar, Javier López 0001, Alexander Pretschner |
J. Comput. Secur. | 2 |
| 2012 | Scalable RFID Systems: A Privacy-Preserving Protocol with Constant-Time IdentificationabstractIn RFID literature, most “privacy-preserving” protocols require the reader to search all tags in the system in order to identify a single tag. In another class of protocols, the search complexity is reduced to be logarithmic in the number of tags, but it comes with two major drawbacks: it requires a large communication overhead over the fragile wireless channel, and the compromise of a tag in the system reveals secret information about other, uncompromised, tags in the same system. In this work, we take a different approach to address time complexity of private identification in large-scale RFID systems. We utilize the special architecture of RFID systems to propose a symmetric-key privacy-preserving authentication protocol for RFID systems with constant-time identification. Instead of increasing communication overhead, the existence of a large storage device in RFID systems, the database, is utilized for improving the time efficiency of tag identification. Basel Alomair, Andrew Clark 0001, Jorge Cuéllar, Radha Poovendran |
IEEE Trans. Parallel Distributed Syst. | 3 |
| 2011 | From Multiple Credentials to Browser-Based Single Sign-On: Are We More Secure?
Alessandro Armando, Roberto Carbone, Luca Compagna, Jorge Cuéllar, Giancarlo Pellegrino, Alessandro Sorniotti |
SEC | 4 |
| 2010 | Scalable RFID systems: a privacy-preserving protocol with constant-time identificationabstractIn RFID literature, most “privacy-preserving” protocols require the reader to search all tags in the system in order to identify a single tag. In another class of protocols, the search complexity is reduced to be logarithmic in the number of tags, but it comes with two major drawbacks: it requires a large communication overhead over the fragile wireless channel, and the compromise of a tag in the system reveals secret information about other, uncompromised, tags in the same system. In this work, we take a different approach to address time-complexity of private identification in large-scale RFID systems. We utilize the special architecture of RFID systems to propose the first symmetric-key privacy-preserving authentication protocol for RFID systems with constant-time identification. Instead of increasing communication overhead, the existence of a large storage device in RFID systems, the database, is utilized for improving the time efficiency of tag identification. Basel Alomair, Andrew Clark 0001, Jorge Cuéllar, Radha Poovendran |
DSN | 3 |
| 2010 | Statistical Framework for Source Anonymity in Sensor NetworksabstractIn this work, we investigate the security of anonymous wireless sensor networks. To lay down the foundations of a formal framework, we develop a new model for analyzing and evaluating anonymity in sensor networks. The novelty of the proposed model is twofold: first, it introduces the notion of ``interval indistinguishability" that is stronger than existing notions; second, it provides a quantitative measure to evaluate anonymity in sensor networks. The significance of the proposed model is that it captures a source of information leakage that cannot be captured using existing models. By analyzing current anonymous designs under the proposed model, we expose the source of information leakage that is undetectable by existing models and quantify the anonymity of current designs. Finally, we show how the proposed model can lead to a general and intuitive direction for improving the anonymity of current designs. Basel Alomair, Andrew Clark 0001, Jorge Cuéllar, Radha Poovendran |
GLOBECOM | 3 |
| 2007 | Electronic Distribution of Airplane Software and the Impact of Information Security on Airplane Safety
Richard Robinson, Scott Lintelman, Krishna Sampigethaya, Radha Poovendran, David von Oheimb, Jens-Uwe Bußer, Jorge Cuéllar |
SAFECOMP | 8 |
| 2007 | SoSyM Special Section on Software Engineering and Formal Methods
Jorge Cuéllar, Zhiming Liu 0001 |
Softw. Syst. Model. | 1 |
| 2006 | Designing and Verifying Core Protocols for Location Privacy
David von Oheimb, Jorge Cuéllar |
ISC | 2 |
| 2006 | Automated Reasoning for Security Protocol Analysis
Alessandro Armando, David A. Basin, Jorge Cuéllar, Michaël Rusinowitch, Luca Viganò 0001 |
J. Autom. Reason. | 3 |
| 2005 | The AVISPA Tool for the Automated Validation of Internet Security Protocols and Applications
Alessandro Armando, David A. Basin, Yohan Boichut, Yannick Chevalier, Luca Compagna, Jorge Cuéllar, Paul Hankes Drielsma, Pierre-Cyrille Héam, Olga Kouchnarenko, Jacopo Mantovani, Sebastian Mödersheim, David von Oheimb, Michaël Rusinowitch, Judson Santiago, Mathieu Turuani, Luca Viganò 0001, Laurent Vigneron |
CAV | 6 |
| 2000 | Foreword
Jorge Cuéllar, Stefania Gnesi, Diego Latella |
Sci. Comput. Program. | 1 |
| 1998 | Formal Methods in an Industrial Environment
Jorge Cuéllar |
CAV | 1 |
| 1995 | Development of Safety-Critical Real-Time Systems
Hans Rischel, Jorge Cuéllar, Simon Mørk, Anders P. Ravn, Isolde Wildgruber |
SOFSEM | 2 |