Publication lists and citation counts also available from DBLP and Google Scholar.


2023

An Empirical Study & Evaluation of Modern CAPTCHAs [arXiv report]
Andrew Searles, Yoshimichi Nakatsuka, Ercan Ozturk, Andrew Paverd, Gene Tsudik, Ai Enkoji
USENIX Security Symposium, 2023

Bayesian Estimation of Differential Privacy [arXiv report]
Santiago Zanella-Béguelin, Lukas Wutschitz, Shruti Tople, Ahmed Salem, Victor Rühle, Andrew Paverd, Mohammad Naseri, Boris Köpf, Daniel Jones
International Conference on Machine Learning (ICML), 2023

SoK: Let The Privacy Games Begin! A Unified Treatment of Data Inference Privacy in Machine Learning [arXiv report]
Ahmed Salem, Giovanni Cherubin, David Evans, Boris Köpf, Andrew Paverd, Anshuman Suri, Shruti Tople, Santiago Zanella-Béguelin
IEEE Symposium on Security and Privacy, 2023

VICEROY: GDPR-/CCPA-compliant Enforcement of Verifiable Accountless Consumer Requests [arXiv report]
Scott Jordan, Yoshimichi Nakatsuka, Ercan Ozturk, Andrew Paverd, Gene Tsudik
Network and Distributed System Security Symposium, 2023, Best poster award


2022

Pre-hijacked accounts: An Empirical Study of Security Failures in User Account Creation on the Web [arXiv report, video]
Avinash Sudhodanan, Andrew Paverd
USENIX Security Symposium, 2022
Selected blogs and media: MSRC, Bleeping Computer, The Register, Security Week, Help Net Security, Ghacks, OCCRP, The Daily Swig, Malwarebytes


2021

Grey-box Extraction of Natural Language Models [Open access]
Santiago Zanella-Béguelin, Shruti Tople, Andrew Paverd, Boris Köpf
International Conference on Machine Learning (ICML), 2021

CACTI: Captcha Avoidance via Client-side TEE Integration [arXiv report]
Yoshimichi Nakatsuka, Ercan Ozturk, Andrew Paverd, Gene Tsudik
USENIX Security Symposium, 2021

PDoT: Private DNS-over-TLS with TEE Support [arXiv report, source code]
Yoshimichi Nakatsuka, Andrew Paverd, Gene Tsudik
ACM Digital Threats: Research and Practice, Volume 2, Issue 1, 2021


2020

Analyzing Information Leakage of Updates to Natural Language Models [arXiv report]
Santiago Zanella-Béguelin, Lukas Wutschitz, Shruti Tople, Victor Ruehle, Andrew Paverd, Olga Ohrimenko, Boris Köpf, Marc Brockschmidt
ACM Conference on Computer and Communication Security (CCS), 2020


2019

PDoT: Private DNS-over-TLS with TEE Support [arXiv report, source code]
Yoshimichi Nakatsuka, Andrew Paverd, Gene Tsudik
Annual Computer Security Applications Conference (ACSAC), 2019

S-FaaS: Trustworthy and Accountable Function-as-a-Service using Intel SGX [arXiv report, source code]
Fritz Alder, N. Asokan, Arseny Kurnikov, Andrew Paverd, Michael Steiner
ACM Cloud Computing Security Workshop (CCSW), 2019

Sustainable Security & Safety: Challenges and Opportunities
Andrew Paverd, Marcus Völp, Ferdinand Brasser, Matthias Schunter, N. Asokan, Ahmad-Reza Sadeghi, Paulo Esteves-Veríssimo, Andreas Steininger, Thorsten Holz
4th International Workshop on Security and Dependability of Critical Embedded Real-Time Systems (CERTS), 2019

HardScope: Hardening Embedded Systems Against Data-Oriented Attacks [arXiv report, source code]
Thomas Nyman, Ghada Dessouky, Shaza Zeitouni, Aaro Lehikoinen, Andrew Paverd, N. Asokan, Ahmad-Reza Sadeghi
56th Annual Design Automation Conference (DAC), 2019

Smart Grid Metering Networks: A Survey on Security, Privacy and Open Research Issues [Open access]
Pardeep Kumar, Yun Lin, Guangdong Bai, Andrew Paverd, Jin Song Dong, Andrew Martin
IEEE Communications Surveys and Tutorials, Volume 21, Issue 3, 2019

US10228929B2: Method and apparatus for modifying a computer program in a trusted manner
Fadi Ali El-Moussa, Andrew Paverd


2018

Mitigating Branch-Shadowing Attacks on Intel SGX using Control Flow Randomization [arXiv report, source code]
Shohreh Hosseinzadeh, Hans Liljestrand, Ville Leppänen, Andrew Paverd
3rd Workshop on System Software for Trusted Execution (SysTEX), 2018

Keys in the Clouds: Auditable Multi-device Access to Cryptographic Credentials [arXiv report, source code]
Arseny Kurnikov, Andrew Paverd, Mohammad Mannan, N. Asokan
3rd Workshop on Security, Privacy, and Identity Management in the Cloud (SECPID), 2018

Migrating SGX Enclaves with Persistent State [arXiv report, source code]
Fritz Alder, Arseny Kurnikov, Andrew Paverd, N. Asokan
48th IEEE/IFIP International Conference on Dependable Systems and Networks (DSN), 2018

SafeKeeper: Protecting Web Passwords Using Trusted Execution Environments [arXiv report, source code]
Klaudia Krawiecka, Arseny Kurnikov, Andrew Paverd, Mohammad Mannan, N. Asokan
The Web Conference (WWW), 2018, Featured on The Morning Paper - May 22, 2018

Demo: Using SafeKeeper to Protect Web Passwords
Arseny Kurnikov, Klaudia Krawiecka, Andrew Paverd, Mohammad Mannan, N. Asokan
The Web Conference (WWW): Demo Track, 2018

Towards Linux Kernel Memory Safety [arXiv report]
Elena Reshetova, Hans Liljestrand, Andrew Paverd, N. Asokan
Software: Practice and Experience, Volume 48, Issue 12, 2018

OmniShare: Encrypted Cloud Storage for the Multi-Device Era [arXiv report, source code]
Andrew Paverd, Sandeep Tamrakar, Hoang Long Nguyen, Praveen Pendyala, Duc Thien Nguyen, Elizabeth Stobert, Tommi Gröndahl, N. Asokan, Ahmad-Reza Sadeghi
IEEE Internet Computing, Volume 22, Issue 4, July 2018.

US10049017B2: Method and system for byzantine fault-tolerance replicating of data on a plurality of servers
Ghassan Karame, Wenting Li, Jian Liu, N. Asokan, Andrew Paverd


2017

Formal Analysis of V2X Revocation Protocols [arXiv report]
Jorden Whitefield, Liqun Chen, Frank Kargl, Andrew Paverd, Steve Schneider, Helen Treharne, Stephan Wesemeyer
13th International Workshop on Security and Trust Management (STM), 2017

LO-FAT: Low-Overhead Control Flow ATtestation in Hardware [arXiv report]
Ghada Dessouky, Shaza Zeitouni, Thomas Nyman, Andrew Paverd, Lucas Davi, Patrick Koeberl, N. Asokan, Ahmad-Reza Sadeghi
54th Annual Design Automation Conference (DAC), 2017

The Circle Game: Scalable Private Membership Test Using Trusted Hardware [arXiv report]
Sandeep Tamrakar, Jian Liu, Andrew Paverd, Jan-Erik Ekberg, Benny Pinkas, N. Asokan
ACM Asia Conference on Computer and Communications Security (ASIACCS), 2017 Honourable Mention
Finalist in the CSAW Europe 2017 Applied Research Competition

Security in Automotive Networks: Lightweight Authentication and Authorization [arXiv report]
Philipp Mundhenk, Andrew Paverd, Artur Mrowca, Sebastian Steinhorst, Martin Lukasiewycz, Suhaib A. Fahmy, Samarjit Chakraborty
ACM Transactions on Design Automation of Electronic Systems (TODAES), Volume 22, Issue 2, 2017, ACM TODAES Best Paper Award

Auditable De-anonymization in V2X Communication
Masoud Naderpour, Tommi Meskanen, Andrew Paverd, Valtteri Niemi
Journal of ICT Standardization, Volume 5, Issue 1, 2017

A Framework for Application Partitioning using Trusted Execution Environments
Ahmad Atamli, Andrew Paverd, Giuseppe Petracca, Andrew Martin
Concurrency and Computation: Practice and Experience, Volume 29, Issue 23, 2017


2016

Protecting Password Databases using Trusted Hardware [open access]
Klaudia Krawiecka, Andrew Paverd, N. Asokan
1st Workshop on System Software for Trusted Execution (SysTEX), 2016

Exploring the use of Intel SGX for Secure Many-Party Applications [open access]
Kubilay Ahmet Küçük, Andrew Paverd, Andrew Martin, N. Asokan, Andrew Simpson, Robin Ankele
1st Workshop on System Software for Trusted Execution (SysTEX), 2016

C-FLAT: Control-Flow Attestation for Embedded Systems Software [arXiv report, source code]
Tigist Abera, N. Asokan, Lucas Davi, Jan-Erik Ekberg, Thomas Nyman, Andrew Paverd, Ahmad-Reza Sadeghi, Gene Tsudik
ACM SIGSAC Conference on Computer and Communications Security (CCS), 2016

Applying the Trustworthy Remote Entity to Privacy-Preserving Multiparty Computation: Requirements and Criteria for Large-Scale Applications [open access]
Robin Ankele, Kubilay Ahmet Kücük, Andrew Martin, Andrew Simpson, Andrew Paverd
IEEE International Conference on Advanced and Trusted Computing (ATC), 2016

Invited - Things, trouble, trust: on building trust in IoT systems
Tigist Abera, N. Asokan, Lucas Davi, Farinaz Koushanfar, Andrew Paverd, Ahmad-Reza Sadeghi, Gene Tsudik
53rd Annual Design Automation Conference (DAC), 2016


2015

OmniShare: Securely Accessing Encrypted Cloud Storage from Multiple Authorized Devices [source code]
Andrew Paverd, Sandeep Tamrakar, Hoang Long Nguyen, Praveen Kumar Pendyala, Thien Duc Nguyen, Elizabeth Stobert, Tommi Gröndahl, N. Asokan, Ahmad-Reza Sadeghi
arXiv preprint arXiv:1511.02119, 2015

Enhancing Communication Privacy Using Trustworthy Remote Entities
Andrew Paverd
DPhil Thesis, University of Oxford, United Kingdom, 2015


2014

Privacy-Enhanced Bi-Directional Communication in the Smart Grid using Trusted Computing [open access]
Andrew Paverd, Andrew Martin, Ian Brown
IEEE International Conference on Smart Grid Communications (SmartGridComm), 2014

Characteristic-based security analysis of personal networks [open access]
Andrew Paverd, Fadi El-Moussa, Ian Brown
ACM International Joint Conference on Pervasive and Ubiquitous Computing (UbiComp): Adjunct Publication, 2014

Security and Privacy in Smart Grid Demand Response Systems [open access]
Andrew Paverd, Andrew Martin, Ian Brown
2nd EIT ICT Labs Workshop on Smart Grid Security (SmartGridSec), 2014

Modelling and Automatically Analysing Privacy Properties for Honest-But-Curious Adversaries
Andrew Paverd, Andrew Martin, Ian Brown
University of Oxford, 2014

Poster: Enhancing Privacy in Location-Based Services Using Trustworthy Remote Entities
Andrew Paverd
7th ACM Conference on Security and Privacy in Wireless and Mobile Networks (WiSec), 2014

Poster: Trustworthy and Secure Service-Oriented Architecture for the Internet of Things [arXiv report]
Ahmad Atamli, Andrew Paverd, Andrew Martin
International Conference on the Internet of Things (IoT), 2014


2013

EINS PRIME - Perception and Realisation of Information privacy using Measurements and Ethnography
Adriana Wilde, Andrew Paverd, Oliver Gasser, Moira McGregor
Towards Meaningful Perspectives on Online Consent Workshop at Digital Economy Conference, 2013

Towards Enhancing Web Application Security Using Trusted Execution
Cornelius Namiluko, Andrew Paverd, Tulio De Souza
Workshop on Web Applications and Secure Hardware (WASH), 2013

Student Research Abstract: Trustworthy Remote Entities in the Smart Grid
Andrew Paverd
ACM Symposium on Applied Computing (SAC), 2013. ACM Student Research Contest International Finalist


2012

Hardware Security for Device Authentication in the Smart Grid [open access]
Andrew Paverd, Andrew Martin
1st EIT ICT Labs Workshop on Smart Grid Security (SmartGridSec), 2012

Personal PKI for the Smart Device Era [open access]
John Lyle, Andrew Paverd, Justin King-Lacroix, Andrea Atzeni, Habib Virji, Ivan Flechais, Shamal Faily
European PKI Workshop (EuroPKI), 2012

Enhanced Mobile Computing Using Cloud Resources
Andrew Paverd
M.Sc. Eng Dissertation, University of Cape Town, South Africa, June 2012


2011

Towards a Framework for Enhanced Mobile Computing Using Cloud Resources
Andrew Paverd, Michael Inggs, Simon Winberg
Southern Africa Telecommunications Networks and Applications Conference (SATNAC), 2011

Mobile Device-Based Cellular Network Coverage Analysis Using Crowd Sourcing
Daniel Mankowitz, Andrew Paverd
IEEE EUROCON, 2011. IEEE Student Research Competition Runner-Up


2010

Mobile Device-Based Cellular Network Coverage Analysis Using Crowd Sourcing
Andrew Paverd and Daniel Mankowitz
B.Sc. Eng (Electrical) Dissertation, University of the Witwatersrand, Johannesburg, South Africa, 2010