We were at FC'12 earlier this month, in Bonaire. I presented our MVP paper in the main conference and was a panelist on a WECSR panel entitled "It's Not Stealing If You Need It: On the ethics of performing research using public data of illicit origin". Carlton Davis from the Polytechnique de Montreal presented our paper, Methodology for a Field Study of Anti-Malware Software, at the USEC workshop. In between conference activities, I got to do some scuba diving - how can you be in one of the top … [Read more...] about FC update
Conference
USEC paper
Our short paper, Methodology for a Field Study of Anti-Malware Software, will be presented at the Workshop on Usable Security (USEC) held with Financial Cryptography and Data Security (FC) in February 2012. This work done in collaboration with Fanny Lalonde Levesque, Carlton Davis, José Fernandez at the Polytechnique de Montreal and Anil Somayaji from Carleton. … [Read more...] about USEC paper
WECSR 2012 panel
I will be a member of a panel at the Workshop on Ethics in Computer Security Research (WECSR) held with FC 2012 in February. We will be discussing the ethics of performing research using public data of illicit origin. … [Read more...] about WECSR 2012 panel
FC short paper accepted
We are happy to announce that our short paper, The MVP Web-based Authentication Framework, has been accepted for publication at Financial Cryptography 2011. … [Read more...] about FC short paper accepted
ACSAC 2011
We are happy to announce that we will be presenting several research projects at ACSAC 2011: Max Hlywa, a member of our usable security group, will be presenting a full paper entitled: Facing the Facts about Image Type in Recognition-Based Graphical Passwords by Hlywa, Patrick, and Biddle. And we have two posters presenting some of our very recent work: AuctionHero: a game to model security in context by Chiasson, Modi, and Biddle User-Choice Patterns in PassTiles Graphical Passwords by … [Read more...] about ACSAC 2011
E-Learn 2011
I will be attending E-Learn in October where I will present a brief paper on the initial design of our Auction Hero game to teach about online computer security, work done in collaboration with Manas Modi and Robert Biddle. While at the conference, I will also lead a roundtable discussion on uses of e-learning technologies for teaching computer security. … [Read more...] about E-Learn 2011
SOUPS 2011
We've just returned from another successful SOUPS conference. It was once again held at CMU this year and it was a mix of old and new, with parts of the conference held in their new Computer Science building and other parts held in familiar locations that we all know to be part of SOUPS. Robert and I held a tutorial on experimental design and statistics using R. We were happy for our ISSNet friends at UBC who won this year's Best Paper award for their work on Heuristics for IT security … [Read more...] about SOUPS 2011
ISSNet Summer School in Calgary
Last week was the ISSNet summer school, held at the University of Calgary this year. A day and a half was dedicated to information visualization. Sheelagh Carpendale gave a general introduction to the field of visualization and Robert Biddle presented about security visualizations in particular. Hands-on activities had everything testing their drawing skills as they came up with potential visualizations for datasets. … [Read more...] about ISSNet Summer School in Calgary
GRAND 2011 Conference
We've recently returned from beautiful Vancouver for the 2nd Annual GRAND Conference. We are part of projects on "Usable Privacy and Security for New Media Environments" and "Digital Games for Learning and Training". It was an opportunity to discuss on-going projects, get feedback from others in different disciplines, talk about research priorities, and plan for the next year. … [Read more...] about GRAND 2011 Conference
ISSNet Annual Workshop
We spent a week in Toronto for the ISSNet Annual Workshop. We heard updates on recent work on research projects in all three themes (Network-oriented Security, Software Systems-oriented Security, Human-oriented Security) and had plenty of opportunity to catch up and discuss research with members from other Universities and industry partners. Students presented posters of their on-going research projects. Invited talks by Nart Villeneuve from Trend Micro and by N. Asokan and Valtteri Niemi from … [Read more...] about ISSNet Annual Workshop