Fabio Massacci
Formazione |
|
|
|
Carriera accademica ed attività didattica |
|
1.1Present Position:
1.2Previous Employments
1.3Professional Appointments
1.4Visiting appointments
|
|
Interessi di ricerca |
|
I illustrate below some of the major milestones in my research with some sample papers. They are not necessarily the most cited; they are the ones that one could actually read to have a comprehensive idea of my research. More details are available in the Research and Teaching Statement. Empirical Security Economics: My current research effort is to empirically validate practical and affordable security solution, albeit they might not be perfect. Often security solutions stop at a mathematical model, we go the last mile (more precisely the last light year) and empirically validate them by running experiments or by performing qualitative studies. Such works often go against the “ethos” of academic security research working to protect us against an all powerful adversary, yet it has an unfettered potential of industry impact (you can better prioritize your finite resources instead fighting an all powerful adversary that doesn’t exist). Three papers illustrate this research, two in flagship computer security venue and one in a top business journal.
Security Requirements Engineering: I started this work in 2003 with N. Zannone and J. Mylopoulos. The key idea is to develop a robut methodology to capture security requirements as first class citizens. Two, very different, ten-years apart, papers illustrate this research: initially I worked on design and formal reasoning capabilities, now understanding what really works in security risk analysis is the other focus in my research that complements it.
Run-time and load-time security enforcement. This research is a mixture of theoretical research on the limit of what can be actually enforced and what can be practically achieved. Out of this research stream started my long standing collaboration with KU Leuven (F. Piessens and Wouter Josen).
Formal Methods for Security: In 1996, half-way through my Phd, I went to Cambridge to work with Robin Milner (one of the inventor of the Hennessy-Milner logic). Alas, Milner had just been elected head of department and suggested I could work with Roger Needham and Larry Paulson who had a joint project on modal logic for security. This “one year long mishap” gave a whole new turn to my research career.
Automated Resoning for Modal Logic: When I started my Phd, reasoning in modal logic was divided in two fields: those that purely manipulate formulas and those that manipulated the corresponding models. I tried to combine both ideas to get something better than both. The tableaux for modal and description logics that I did as single author or with a couple of colleagues revamped the area. Massacci F., "Single Step Tableaux for Modal Logics". Journal of Automated Reasoning, 24(3): 319-364, 2000. In the Handbook of Tableaux Methods (1999) the chapter on modal tableaux by Gorè devotes 30 pages to my CADE paper of the mid 90s (the journal version is the one reported here). In 2014 our works in the area are still cited. My greatest satisfaction is a paper in the volume in memoriam of H. Ganzinger by R. Schmidt and U. Hustadt, the recognized advocates of the scientific competitor of tableaux (translation+resolution). Their paper “First-Order Resolution Methods for Modal Logics” is a survey with 90+ citations. There are only 2 citations for tableaux: the handbook above and one of my papers. I left the field 15 years ago and a citation by a scientific “enemy” to a paper 10 years old is truly “l’honneur des armes”. |
|
Attività di ricerca |
|
1.1.1 Summary of publications (Data on 2019/Aug)
1.1.1 Summary of grants (as PI)
(*) Excluding EIT funding for teaching I&E in security courses 1.1.2 Industrial Impact
1.1.1 Summary of supervised collaborators
1.1.2 Current position of past collaborators
1.1.3 Awards of PhD Students
|
|
Appartenenza a società e comitati scientifici |
|
Member of the AEA, ACM, IEEE, ISACA, Society for Risk Analysis and Chartered engineer. |
|
Premi e riconoscimenti |
|
1.1 Scientific Awards.
|
|
Convegni e conferenze |
|
Has been invited speaker at the security session of MFPS, FCS and Verify-02 ed has kept an invited tutorial at TABLEAUX-98, IJCAI-03, IEEE RE-06 (jointly with N. Zannone and J. Mylopoulos), at ESSLI-05 (with H. koshutanski) at the International School on Foundations of Security Analysis and Design FOSAD-01 and 05. | |
Altre attività |
|
He has been member for 4 years of the European Executive of Service Civil internazionale (International NGO with consultive status at UNESCO and Council of europe and member of the European Youth Forum), he has also been European Treasurer since 1991 till 1994. he has been national treasurer of ICS (Consorzio Italiano di Solidarietà) in 1994. |
|
Note |
|
More information on www.massacci.org |