whoami

M.Graziano

emdel

Following the white rabbit...

$ cat about.txt

Security research leader at JPMorgan Chase. Previously technical leader at Cisco Talos. Ph.D. from Eurecom, advised by Davide Balzarotti.

Over 10 years of experience spanning academia and industry, developing automation, detection, and proactive security systems, with extensive experience in reverse engineering advanced threats. Presented research at leading academic and hacking conferences.

Malware Analysis Advanced Threats Memory Forensics Reverse Engineering Virtualization Exploitation Binary Analysis
$ tail -f news.log
$ grep -r "published" papers/ | sort -r
2023 · ACSAC
From Attachments to SEO: Click Here to Learn More about Clickbait PDFs!
Giada Stivala, Sahar Abdelnabi, Andrea Mengascini, Mariano Graziano, Mario Fritz, Giancarlo Pellegrino
39th Annual Computer Security Applications Conference — Austin, TX
2022 · USENIX Security
How Machine Learning Is Solving the Binary Function Similarity Problem
Andrea Marcelli, Mariano Graziano, Xabier Ugarte-Pedrero, Yanick Fratantonio, Mohamad Mansouri, Davide Balzarotti
31st USENIX Security Symposium — Boston, MA
2022 · Forensic Science International
The evidence beyond the wall: Memory forensics in SGX environments
Flavio Toffalini, Andrea Oliveri, Mariano Graziano, Jianying Zhou, Davide Balzarotti
Forensic Science International: Digital Investigation
2021 · RAID
Lost in the Loader: The Many Faces of the Windows PE File Format
Dario Nisi, Mariano Graziano, Yanick Fratantonio, Davide Balzarotti
24th International Symposium on Research in Attacks, Intrusions and Defenses — San Sebastian
2021 · IEEE S&P
Survivalism: Systematic Analysis of Windows Malware Living-Off-The-Land
Frederick Barr-Smith, Xabier Ugarte-Pedrero, Mariano Graziano, Riccardo Spolaor, Ivan Martinovic
42nd IEEE Symposium on Security and Privacy — San Francisco, CA
2021 · ACNS
SnakeGX: a sneaky attack against SGX Enclaves
Flavio Toffalini, Mariano Graziano, Mauro Conti, Jianying Zhou
19th Conference on Applied Cryptography and Network Security — Kamakura
2019 · ACM TOPS
A Close Look at a Daily Dataset of Malware Samples
Xabier Ugarte-Pedrero, Mariano Graziano, Davide Balzarotti
ACM Transactions on Privacy and Security
2018 · IEEE S&P
Understanding Linux Malware
Emanuele Cozzi, Mariano Graziano, Yanick Fratantonio, Davide Balzarotti
39th IEEE Symposium on Security & Privacy — San Francisco, CA
2016 · USENIX Security
Micro-Virtualization Memory Tracing to Detect and Prevent Spraying Attacks
Stefano Cristalli, Mattia Pagnozzi, Mariano Graziano, Andrea Lanzi, Davide Balzarotti
25th USENIX Security Symposium — Austin, TX
2016 · DIMVA
Subverting Operating System Properties through Evolutionary DKOM Attacks
Mariano Graziano, Lorenzo Flore, Andrea Lanzi, Davide Balzarotti
13th Conference on Detection of Intrusions and Malware & Vulnerability Assessment — San Sebastian
2016 · DSN
Measuring the Role of Greylisting and Nolisting in Fighting Spam
Fabio Pagani, Matteo De Astis, Mariano Graziano, Andrea Lanzi, Davide Balzarotti
46th Annual International Conference on Dependable Systems and Networks — Toulouse
2016 · ASIACCS
ROPMEMU: A Framework for the Analysis of Complex Code-Reuse Attacks
Mariano Graziano, Davide Balzarotti, Alain Zidouemba
11th Asia Conference on Computer and Communications Security — Xi'an
2015 · USENIX Security
Needles in a Haystack: Mining Information from Public Dynamic Analysis Sandboxes for Malware Intelligence
Mariano Graziano, Davide Canali, Leyla Bilge, Andrea Lanzi, Davide Balzarotti
24th USENIX Security Symposium — Washington DC
2014 · WOOT
Through the Looking-Glass, and What Eve Found There
Luca Bruno, Mariano Graziano, Davide Balzarotti, Aurelien Francillon
8th USENIX Workshop on Offensive Technologies — San Diego, CA
2013 · RAID
Hypervisor Memory Forensics
Mariano Graziano, Andrea Lanzi, Davide Balzarotti
16th International Symposium on Research in Attacks, Intrusions and Defenses — St. Lucia
2012 · ACSAC
Towards Network Containment in Malware Analysis Systems
Mariano Graziano, Corrado Leita, Davide Balzarotti
28th Annual Computer Security Applications Conference — Orlando, FL
$ ls talks/ | wc -l && ls talks/
2019 · Venice, Italy
Fishing phishing attempts
VII Venice AppSec Conference
2019 · Copenhagen, Denmark
Catch of the day
CARO 2019
2018 · Montreal, Canada
Modern Linux Malware Exposed
Recon 2018
2017 · Montreal, Canada
BASS Automated Signature Synthesizer
Recon 2017
2016 · Moscow, Russia
Dissecting complex code-reuse attacks with ROPMEMU
Zeronights 2016
2016 · Beijing, China
Graffiti: the spraying attacks slayer
Tensec 2016
2016 · Bologna, Italy
Make DKOM attacks great again
HackInBo 2016
2015 · Lille, France
Memory Forensics: A Volatility Primer
Security Day 2015 — Lille 1 University
2014 · Las Vegas, USA
Through the Looking-Glass, and What Eve Found There
DEF CON 22
2013 · Kuala Lumpur, Malaysia
Under the Hood: How Actaeon Unveils Your Hypervisor
Hack In The Box
2013 · Prague, Czech Republic
Hypervisors Memory Forensics
SANS DFIR EU Summit
2012 · Pescara, Italy
Beware of Hypervisor: Understanding ring -1
MOCA 2012
$ git log --oneline --all | grep author:emdel
ROPMEMU author Framework for the analysis of complex code-reuse attacks
Actaeon author Hypervisor memory forensics — winner of the Volatility Plugin Contest 2013
Viper collaborator Binary analysis and management framework
HardenTools co-author Utility to disable a number of risky Windows features
$ cat awards.txt