K.L. Ingham, A. Somayaji, J. Burge, and Stephanie Forrest, "Learning DFA representations of HTTP for protecting web applications." Computer Networks, Vol. 51, No. 5, pp. 1239-1255 (2007). [HTML & PDF]
P. van Oorschot, A. Somayaji, and G. Wurster, "Hardware-assisted circumvention of self-hashing software tamper resistance." IEEE Transactions on Dependable and Secure Computing, Vol. 2, No. 2, pp. 82-92 (2005). [PDF]
S. Hofmeyr, S. Forrest, and A. Somayaji, "Intrusion detection using sequences of system calls." Journal of Computer Security, Vol. 6, No. 3, pp. 151-180 (1998). [PS] [PDF]
S. Forrest, S. Hofmeyr, and A. Somayaji, "Computer immunology" Communications of the ACM, Vol. 40, No. 10, pp. 88-96 (1997). [ACM]
B. Foster, A. Somayaji, "Object-Level Recombination of Commodity Applications." Genetic and Evolutionary Computation Conference (GECCO), Portland, OR (2010). [PDF]
A. Cowperthwaite, A. Somayaji, "The Futility of DNSSec." 5th Annual Symposium on Information Assurance (ASIA'10), Albany, NY (2010). [PDF]
T. Oda, A. Somayaji, "No Web Site Left Behind: Are We Making Web Security Only for the Elite?" Web 2.0 Security and Privacy (W2SP), Berkeley, CA (2010). [PDF]
A Somayaji, Y. Li, H. Inoue, J.M. Fernandez, R. Ford, "Evaluating Security Products with Clinical Trials." 2nd Workshop on Cyber Security Experimentation and Test (CSET '09) Montreal, QC (2009). [PDF]
C. Brown, A. Cowperthwaite, A. Hijazi, and A. Somayaji, "Analysis of the 1999 DARPA/Lincoln Laboratory IDS Evaluation Data with NetADHICT." IEEE Symposium: Computational Intelligence for Security and Defence Applications (CISDA), Ottawa, ON (2009). [PDF]
T. Oda, G. Wurster, P.C. van Oorschot, A. Somayaji, "SOMA: Mutual Approval for Included Content in Web Pages." ACM Computer and Communications Security (CCS'08), Alexandria, VA. Oct. 2008. [PDF]
T. Oda, A. Somayaji, T. White, "Content Provider Conflict on the Modern Web." 3rd Annual Symposium on Information Assurance (ASIA'08), Albany, NY. June 2008. [PDF]
A. Hijazi, H. Inoue, A. Matrawy, P.C. van Oorschot, A. Somayaji, "Discovering Packet Structure through Lightweight Hierarchical Clustering." IEEE International Conference on Communications (ICC'08), Beijing, China. May 2008. [PDF]
H. Inoue, D. Jansens, A. Hijazi, and A. Somayaji, "NetADHICT: A Tool for Understanding Network Traffic." Proceedings of the 21st Large Installation Systems Administration Conference (LISA 2007), The USENIX Association, Berkeley, CA, pp. 39-47 (2007).[PDF]
K. L. Ingham and A. Somayaji, "A Methodology for Designing Accurate Anomaly Detection Systems." IFIP/ACM Latin American Networking Conference (LANC 2007), San Jose, Costa Rica. October 2007. [PDF]
H. Inoue and A. Somayaji, "Lookahead Pairs and Full Sequences: A Tale of Two Anomaly Detection Methods." 2nd Annual Symposium on Information Assurance (academic track of the 10th NYS Cyber Security Conference), Albany, NY. June 2007. Best Paper Award. [PDF]
Y. Li and A. Somayaji, "Securing Email Archives through User Modeling." Proceedings of the 21st Annual Computer Security Applications Conference (ACSAC'05), IEEE Computer Society, pp. 547-556 (2005). [PDF]
E. Hughes and A. Somayaji, "Towards Network Awareness." Proceedings of the 19th Large Installation System Administration Conference (LISA'05), The USENIX Association, Berkeley, CA, pp. 113-124 (2005). [PDF]
J. Thorpe, P. C. van Oorschot, and A. Somayaji, "Pass-thoughts: Authenticating With Our Minds." Proceedings of the 2005 Workshop on New Security, The Association for Computing Machinery, New York, NY (2006). [PDF]
A. Matrawy, P. C. van Oorschot, and A. Somayaji, "Mitigating Network Denial-of-Service Through Diversity-Based Traffic Management." Applied Cryptography and Network Security (ACNS'05), Springer Science+Business Media, pp. 104-121 (2005). [PDF]
G. Wurster, P. van Oorschot, and A. Somayaji, "A generic attack on checksumming-based software tamper resistance." Proceedings of the IEEE Symposium on Security and Privacy, IEEE Computer Society Press, Los Alamitos, CA, pp. 127-138 (2005). [PDF]
A. Somayaji and S. Forrest, "Automated Response Using System-Call Delays." Proceedings of the 9th USENIX Security Symposium, The USENIX Association, Berkeley, CA (2000). [PS] [PDF]
A. Somayaji, S. Hofmeyr, and S. Forrest, "Principles of a Computer Immune System." Proceedings of the 1997 Workshop on New Security, The Association for Computing Machinery, New York, NY, pp. 75-82 (1997). [PS] [PDF]
S. Forrest, A. Somayaji, and D. H. Ackley, "Building diverse computer systems." In Proceedings of the Sixth Workshop on Hot Topics in Operating Systems, IEEE Computer Society Press, Los Alamitos, CA, pp. 67-72 (1997). [PS] [PDF]
S. Forrest, S. A. Hofmeyr, A. Somayaji, and T. A. Longstaff, "A sense of self for Unix processes." Proceedings of the 1996 IEEE Symposium on Security and Privacy, IEEE Computer Society Press, Los Alamitos, CA, pp. 120-128 (1996). [PS] [PDF]
P. M. Todd, S. W. Wilson, A. B. Somayaji, and H. A. Yanco, "The
blind breeding the blind: adaptive behavior without looking." In
D. Cliff, P. Husbands, J.-A. Meyer, S. W. Wilson (Eds.) From
Animals to Animats 3: Proceedings of the Third International
Conference on Simulation of Adaptive Behavior, MIT Press,
Cambridge, MA, pp. 228-237 (1994). [PS] [PDF]
A. Somayaji, Michael Locasto, Jan Feyereisl, "Panel: The Future of Biologically-Inspired Security: Is There Anything Left to Learn?" Proceedings of the 2007 Workshop on New Security, The Association for Computing Machinery, New York, NY (2008). [PDF]
A. Somayaji, "Immunology, Diversity, and Homeostasis: The Past and Future of Biologically-Inspired Computer Defenses." Information Security Technical Report (ISTR), Vol. 12, No. 4, pp. 228-234 (2007). [PDF]
Anil Somayaji, "How to Win and Evolutionary Arms Race." IEEE Security and Privacy, Vol. 2, No. 6, pp. 70-72 (November-December 2004). [PDF] [copyright notice]
Anil B. Somayaji, Operating System Stability and Security through Process Homeostasis. Ph.D. thesis, University of New Mexico, July 2002. [1-sided PDF] [2-sided PDF]
Carson Brown, A Meta-Scheme for Authentication Using Text Adventures. M.C.S. thesis, Carleton University, December 2010. [PDF]
Alex Cowperthwaite, Trust Models for Remote Hosts. M.C.S. thesis, Carleton University, September 2011. [PDF]
Blair Foster, Object File Program Recombination of Existing Software Programs Using Genetic Algorithms. M.C.S. thesis, Carleton University, February 2011. [PDF]
Evan Hughes, Parsing Streaming Network Protocols. M.C.S. thesis, Carleton University, September 2006. [PDF]
Yiru Li, Toward Email Archive Intrusion Detection. M.C.S. thesis, Carleton University, December 2005. [PDF]
Terri Oda, Simple Security Policy for the Web. Ph.D. thesis, Carleton University, December 2011. [PDF]
Preeti Raman, JaSPIn: JavaScript based Anomaly Detection of Cross-site scripting attacks. M.C.S. thesis, Carleton University, September 2008. [PDF]