Stephen E. McLaughlin



Similar documents
Why we Need Standards for Breaking the Smart Grid

ADAM MACNEIL BATES. Areas of specialization. Current Academic Appointment. Education. Honors & Awards

Multi-vendor Penetration Testing in the Advanced Metering Infrastructure: Future Challenges

ADAM L. DOUPÉ. University of California, Santa Barbara. Advisor: Giovanni Vigna Topic: Black-Box Web Vulnerability Scanners

Juan (Jenn) Du. Homepage: www4.ncsu.edu/ jdu/ Co-advisors: Dr. Xiaohui (Helen) Gu and Dr. Douglas Reeves

9700 South Cass Avenue, Lemont, IL URL: fulin

Fengwei Zhang. Research Interest. Education. Employment History

Marsha B. Keune June 2015

Sharareh Noorbaloochi Department of Psychology New York University 6 Washington Place, 559, New York, NY noorbaloochi@nyu.

Kimberly A. Chism Curriculum Vitae

KAITLIN WOOLLEY 5807 South Woodlawn Avenue Chicago, IL website:

R. Joseph Waddington Curriculum Vitae

Post-Graduation Survey Results 2014 College of Engineering Civil Engineering Bachelor of Science

KEVIN RAYMOND BUTLER

National Bureau for Academic Accreditation And Education Quality Assurance PUBLIC HEALTH

Adam J. Greiner, Ph.D., CPA

Dr. Lodovico Marziale Managing Partner 504ENSICS, LLC

Phone: +1 (405) URL: Research Interests

Scott McElfresh 209 Belmont Circle, Farmville, VA (434)

Yampolskiy, Analysis of Cyber Infrastructure Authentication Failure Vulnerabilities to Inform Security Decisions

Gregory J. Gerard. M.B.A. Management Information Systems, 1991 University of Pittsburgh, Pittsburgh, PA

EDUCATION ACADEMIC AND RESEARCH APPOINTMENTS INDUSTRIAL EXPERIENCE STUDENTS

G. Bradley Bennett, CPA, Ph.D.

June Zhang (Zhong-Ju Zhang)

Department of Political Science Phone: (805) University of California, Santa Barbara Fax: (805)

Curriculum Vitae: Gideon Mazambani

Post Graduation Survey Results 2015 College of Engineering Information Networking Institute INFORMATION NETWORKING Master of Science

Department of Electronic Information Engineering, Beihang Univerisity Specialization: Electrical Engineering, Completion: July 2004

CONSIDERATION OF TRUST LEVELS IN CLOUD ENVIRONMENT

August Emory University, Atlanta, GA Double major: Sociology and Political Science December 2005

Smartphone applications Common Criteria is going Mobile ICCC2012 Paris

Present Position Education Professional Experience

AT&T Device Support Center Holiday Operating Hours (November/December)

Post-Graduation Survey Results 2013 College of Fine Arts School of Design Undergraduate

CURRICULUM VITAE OF NANCY L. MARTIN, PH.D. I. PROFESSIONAL AFFILIATION AND CONTACT INFORMATION

List of Allocation Recipients

CURRICULUM VITAE. Suneel Udpa. B.S., Physics, Bombay University, 1980, graduation with first class.

Adina Crainiceanu. Ph.D. in Computer Science, Cornell University, Ithaca, NY May 2006 Thesis Title: Answering Complex Queries in Peer-to-Peer Systems

DEREK TAI-WEI LIU ACADEMIC EMPLOYMENT EDUCATION WORK IN PROGRESS

APPENDIX B. STATE AGENCY ADDRESSES FOR INTERSTATE UIB CLAIMS

CAROL KRAKER STOCKMAN, Ph.D Castleman Street, Pittsburgh, Pennsylvania / ckstockman@gmail.com

Post-Graduation Survey Results 2014 Dietrich College of Humanities & Social Sciences STATISTICS Bachelor of Science

JASON L. BROWN. Indiana University, Kelley School of Business

Richard Steele Lee Blissett

XIAOKUI SHU. PERSONAL INFORMATION 2202 Kraft Drive Blacksburg, VA 24060

Nicole M. Lawless DesJardins 1227 University of Oregon, Eugene OR Ph: ,

The Geography of Foreign Students in U.S. Higher Education: Origins and Destinations. Neil G. Ruiz, The Brookings Institution, February 11, 2015

./Steven R. Toaddy CURRICULUM VITAE

Marcus Kirk LUCIANO PRIDA, SR. TERM ASSISTANT PROFESSOR, ACCOUNTING

BEST ANNUITY MARKETS FOR ADVISORS

RUI SUN, Ph.D. RESEARCH INTERESTS: Fiscal Federalism State and Local Government Finance Nonprofit finance Economic Development

Alyssa J. Kersey Department of Brain & Cognitive Sciences (585)

David Richard Tannenbaum

SECUDROID - A Secured Authentication in Android Phones Using 3D Password

Initial Accreditation

Community Cyber Security. Center for Infrastructure Assurance and Security

Kendall O. Bowlin The University of Mississippi


RESEARCH INTERESTS Modeling and Simulation, Complex Systems, Biofabrication, Bioinformatics

Professional CV EDUCATION

Teaching in School of Electronic, Information and Electrical Engineering

EDUCATION DEGREES University of California Ph.D. Information & Computer Science 1990

Jeffery L. Guyse. L. Robin Keller (Chair), R. Duncan Luce and Imran Currim. Decision Analysis and Decision Support Systems Behavioral Decision Making

Best Paper Award, Hawaii International Conference on System Sciences, HICSS-36 (2003)

Curriculum Vitae Richard Thomas Boylan

Ningzhong Li. University of Chicago, Booth School of Business, Chicago, IL MBA, Ph.D. in Accounting 2009

LINNA LI Research Interests Education Appointments

Angela Marie Ross 7000 Fannin, Suite 690 Houston, Texas Phone Curriculum Vitae

21CT, Inc W. Courtyard Drive Austin, Texas USA

How To Teach Insurance At East Carolina University

US News & World Report Best Undergraduate Engineering Programs: Specialty Rankings 2014 Rankings Published in September 2013

SUSANNA GALLANI. Harvard Business School 369 Morgan Hall, Soldiers Field, Boston, MA Phone: (617)

UNIVERSITY OF PITTSBURGH SCHOOL OF MEDICINE MATCH RESULTS FOR 2015

Jacqueline Amber Scherer, M.A.

M.S. in Computer Science

Elizabeth A. Arnold. Academic Experience. Education

VITA. Annie S. McGowan Associate Professor, Accounting

RESEARCH INTERESTS Social Influence; Service Marketing (Consumer Privacy); Digital Marketing (Social Couponing)

Curriculum Vitae RESEARCH INTERESTS EDUCATION. SELECTED PUBLICATION Journal. Current Employment: (August, 2012 )

NAAB-Accredited Architecture Programs in the United States

VITA. Gunna (Janet) Yun, Ph. D.

Teaching and Related Experience

Alabama Commission of Higher Education P. O. Box Montgomery, AL. Alabama

CURRICULUM VITAE. Ph.D. Candidate Kent State University, Department of Geography

2013- Postdoctoral Research Associate - Systems Neurobiology Laboratories, The Salk Institute. La Jolla, CA. Advisor: Edward M. Callaway, Ph.D.

CURRICULUM VITAE. Catherine Lauren Szot August, 2012

Richard Joseph Waddington Curriculum Vitae

Transcription:

Education Stephen E. McLaughlin Computer Science and Engineering Pennsylvania State University Office : 344 IST Building University Park, PA 16802 (814) 867-1773 email: smclaugh@cse.psu.edu The Pennsylvania State University Ph.D. in Computer Science and Engineering Thesis: Specification-based Attacks and Defenses in Sequential Control Systems Advisor: Dr. Patrick McDaniel The Pennsylvania State University M.S. in Computer Science and Engineering Thesis: The Load Leveling Approach to Removing Appliance Features from Home Electricity Usage Profiles Advisor: Dr. Patrick McDaniel The Pennsylvania State University B.S. in Computer Science and Engineering Minor in Mathematics Experience Research Assistant, Systems and Internet Infrastructure Security Lab Penn State University, January 2009 - Present Conducted penetration testing of smart electric meters and specification-based attacks and defenses for networked control systems with results published at CCS, NDSS, and ACSAC. Intern Programmer, Google New York, NY, May 2008 - August 2008 Designed implemented and tested a highly scalable parallel minimum spanning tree algorithm. Research Assistant, Systems and Internet Infrastructure Security Lab Penn State University, March 2007 - April 2008 Designed, prototyped and evaluated novel storage security architectures and published the results at CCS 2008. Intern Programmer, IBM Corp. San Jose, CA, January 2006 - June 2006 Designed and implemented web-services for capacity planning and data center automation.

Publications [ With PDF Links: http://www.cse.psu.edu/~smclaugh/pub.html ] Journal Publications Stephen McLaughlin, Brett Holbert, Ahmed Fawaz, Robin Berthier, and Saman Zonouz A Multi- Sensor Intrusion and Energy Theft Detection Framework for Advanced Metering Infrastructures. IEEE Selected Areas in Communications. To appear. Machigar Ongtang, Stephen McLaughlin, William Enck, and Patrick McDaniel. Semantically Rich Application-Centric Security in Android. Security and Communication Networks, To appear. Kevin Butler, Steve McLaughlin, Thomas Moyer, and Patrick McDaniel. OS Security Architectures Built on Smart Disks. IEEE Security and Privacy, 2010. Conference Publications Stephen McLaughlin, Devin Pohly, Patrick McDaniel, and Saman Zonouz. A Trusted Safety Verifier for Process Controller Code. Proc. ISOC Network and Distributed Systems Security Symposium (NDSS). San Diego, California, USA. February, 2014. Stephen McLaughlin. CPS:Stateful Policy Enforcement for Control System Device Usage. Proc. 29th Annual Computer Security Applications Conference (ACSAC) CPS Track. New Orleans, Louisiana, USA. December, 2013. Devin J. Pohly, Stephen McLaughlin, Patrick McDaniel, and Kevin Butler. Hi-Fi: Collecting High- Fidelity Whole-System Provenance. 28th Annual Computer Security Applications Conference (AC- SAC). Orlando, Florida, USA. December 2012. Stephen McLaughlin, Brett Holbert, Saman Zonouz, and Robin Berthier. AMIDS: A Multi-Sensor Energy Theft Detection Framework for Advanced Metering Infrastructures. Third IEEE International Conference on Smart Grid Communications (SmartGridComm). Tainan City, Taiwan. November 2012. Stephen McLaughlin and Patrick McDaniel. SABOT: Specification-based Payload Generation for Programmable Logic Controllers. 19th ACM Conference on Computer and Communications Security (CCS). Raleigh, NC, USA. October 2012. Weining Yang, Ninghui Li, Yuan Qi, Wahbeh Qardaji, Stephen McLaughlin and Patrick McDaniel. Minimizing Private Data Disclosures in the Smart Grid. 19th ACM Conference on Computer and Communications Security (CCS). Raleigh, NC, USA. October 2012. Stephen McLaughlin, Patrick McDaniel, and William Aiello, Protecting Consumer Privacy from Electric Load Monitoring. 18th ACM Conference on Computer and Communications Security (CCS), Chicago IL, USA. October 2011. Stephen McLaughlin, Dmitry Podkuiko, Sergei Miadzvezhanka, Adam Delozier, and Patrick McDaniel, Multi-vendor Penetration Testing in the Advanced Metering Infrastructure. 26th Annual Computer Security Applications Conference (ACSAC), Austin, TX, USA. December 2010. Kevin Butler, Stephen McLaughlin, and Patrick McDaniel, Kells: A Protection Framework for Portable Data. 26th Annual Computer Security Applications Conference (ACSAC), Austin, TX, USA. December 2010.

(Best Paper) Machigar Ongtang, Stephen McLaughlin, William Enck, and Patrick McDaniel, Semantically Rich Application-Centric Security in Android. Proceedings of the 25th Annual Computer Security Applications Conference (ACSAC) Honolulu, HI, USA. December 2009. Albert Tannous, Jonathan Trostle, Mohamed Hassan, Stephen McLaughin, and Trent Jaeger, New Side Channel Attacks Targeting Passwords. Proceedings of the 24th Annual Computer Security Applications Conference (ACSAC), Anahiem, CA, USA. December 2008. Kevin Butler, Stephen McLaughlin, and Patrick McDaniel, Rootkit Resistant Disks. 15th ACM Conference on Computer and Communications Security (CCS), Alexandria, VA, USA. November 2008. Workshop Publications Stephen McLaughlin. On Dynamic Malware Payloads Aimed at Programmable Logic Controllers. 6th USENIX Workshop on Hot Topics in Security, San Francisco, CA. August, 2011. Stephen McLaughlin, Dmitry Podkuiko, Adam Delozier, Sergei Miadzvezhanka, and Patrick McDaniel, Embedded Firmware Diversity for Smart Electric Meters. Proceedings of the 5th USENIX Workshop on Hot Topics in Security (HotSec), Washington, DC. August, 2010. Patrick McDaniel, Kevin Butler, Stephen McLaughlin, Radu Sion, Erez Zadok, and Marianne Winslett, Towards a Secure and Efficient System for End-to-End Provenance. 2nd USENIX Workshop on the Theory and Practice of Provenance (TAPP), San Jose, CA. February, 2010. Stephen McLaughlin, Dmitry Podkuiko, and Patrick McDaniel, Energy Theft in the Advanced Metering Infrastructure. 4th International Workshop on Critical Information Infrastructure Security (CRITIS). Bonn, Germany. September 2009. Kevin Butler, William Enck, Harri Hursti, Stephen McLaughlin, Patrick Traynor, and Patrick Mc- Daniel, Systemic Issues in the Hart InterCivic and Premier Voting Systems: Reflections Following Project EVEREST. 2008 USENIX/ACCURATE Electronic Voting Technology Workshop (EVT), San Jose, CA, USA. July 2008. Kevin Butler, Stephen McLaughlin, and, Patrick McDaniel, Non-Volatile Memory and Disks: Avenues for Policy Architectures. 1st Computer Security Architectures Workshop (CSAW), November 2007. Fairfax, VA, USA. Miscellaneous Patrick McDaniel and Stephen McLaughlin. Structured Security Testing in the Smartgrid. 5th International Symposium on Communications, Control, and Signal Processing. Rome, Italy. May 2012. Energy Theft in the Advanced Metering Infrastructure. 19th USENIX Security Symposium, Washington, DC, USA. August 2010. Poster Presentation. Embedded Firmware Diversity for Smart Electric Meters. 19th USENIX Security Symposium, Washington, DC, USA. August 2010. Poster Presentation. Kevin Butler, Stephen McLaughlin, and Patrick McDaniel, Disk-Enabled Authenticated Encryption. 26th IEEE Symposium on Massive Storage Systems and Technologies (MSST), Lake Tahoe, Nevada. May, 2010. (Short paper) Patrick McDaniel and Stephen McLaughlin, Security and Privacy Challenges in the Smart Grid. IEEE Security & Privacy Magazine, 7(3):75 77, May/June, 2009.

Stephen McLaughlin, 18th USENIX Security Symposium Conference Summaries. USENIX ;login Magazine, December 2009. Stephen McLaughlin and Patrick McDaniel, Utility Grid Automation Risk Management. Clean Technology, Houston, TX, USA, May, 2009. Poster Presentation. Patrick McDaniel, Kevin Butler, William Enck, Harri Hursti, Stephen McLaughlin, Patrick Traynor, Matt Blaze, Adam Aviv, Pavol Cerny, Sandy Clark, Eric Cronin, Gaurav Shah, Micah Sherr, Giovanni Vigna, Richard Kemmerer, David Balzarotti, Greg Banks, Marco Cova, Viktoria Felmetsger, William Robertson, Fredrik Valeur, Joseph Lorenzo Hall, and Laura Quilter, EVEREST: Evaluation and Validation of Election-Related Equipment, Standards and Testing. December 2007 Presentations Computer Science Depart- Specification-based Attacks and Defenses in Sequential Control Systems. ment, Stony Brook University. Stony Brook, NY, USA. April 1, 2014. Specification-based Attacks and Defenses in Sequential Control Systems. ment, Johns Hopkins University. Baltimore, MD, USA. March 27, 2014. Computer Science Depart- Specification-based Attacks and Defenses in Sequential Control Systems. Narus Inc. Sunnyvale, CA, USA. March 13, 2014. A Trusted Safety Verifier for Process Controller Code. The ISOC Network and Distributed Systems Security Symposium (NDSS). San Diego, CA, USA. February 24, 2014. Stateful Policy Enforcement for Control System Device Usage. 29th Annual Computer Security Applications Conference (ACSAC). New Orleans, LA, USA. December 11, 2013. Securing the Future Smart Grid: Where do We Go Next (Panel). 29th Annual Computer Security Applications Conference (ACSAC). New Orleans, LA, USA. December, 2013. Smart Electric Meters: Architectures, Vulnerabilities, and Mitigations. The 2013 Trusted Infrastructure Workshop. Pennsylvania State University. June 5, 2013. SABOT: Specification-based Payload Generation for Programmable Logic Controllers. 19th ACM Conference on Computer and Communications Security (CCS). Raleigh, NC, USA. October 2012. Why We Need Standards for Breaking the Smart Grid. Conference. Boise, ID, USA. August 30, 2012. The 2012 Western Energy Policy Research Protecting Consumer Privacy from Electric Load Monitoring. 18th ACM Conference on Computer and Communications Security (CCS). Chicago, IL, USA. October 2011. Multi-vendor Penentration Testing in the Advanced Metering Infrastructure: Challenges for Regulation., Carnegie Mellon Electricity Industry Center. Pittsburgh, PA. August 31, 2011. On Dynamic Malware Payloads Aimed at Programmable Logic Controllers. The 6th USENIX Workshop on Hot Topics in Security (HotSec), San Francisco, CA. August 9, 2011. Why We Need Standards for Breaking the Smart Grid. The 2011 Technology Management and Policy Graduate Consortium, Penn State University, University Park, PA. June 27, 2011.

Identifying (and Addressing) Security and Privacy Issues in Smart Electric Meters, Los Alamos National Laboratory, Los Alamos, NM. February 15, 2011. Multi-vendor Penentration Testing in the Advanced Metering Infrastructure. The 26th Annual Computer Security Applications Conference, Austin, TX. December 8, 2010. Multi-vendor Penetration Testing in the Advanced Metering Infrastructure: Future Challenges. DI- MACS Workshop on Algorithmic Decision Theory for the Smart Grid, Piscataway, NJ. October 26, 2010. Embedded Firmware Diversity for Smart Electric Meters. Proceedings of the 5th USENIX Workshop on Hot Topics in Security (HotSec 2010), Washington, DC. August, 2010. Energy Theft in the Advanced Metering Infrastructure. 4th International Workshop on Critical Information Infrastructure Security (CRITIS 2009). Bonn, Germany. September 2009. Teaching CSE 598e: Critical Infrastructure Security - Prepared entire curriculum and gave lectures. CSE 543: Graduate Level Computer Security - Gave lectures on operating systems security and authentication protocols. CSE 443: Undergraduate Level Computer Security - Gave lectures on operating systems security and authentication protocols. Awards and Scholarships Recipient Outstanding Research Assistant Award in CSE, 2013 Recipient ACM CCS Student Travel Grant, 2012 Recipient Diefenderfer Graduate Fellowship in the College of Engineering from August 2012 - May 2014 Recipient ACM CCS Student Travel Grant, 2011 Recipient Student Scholarship to the TCIPG Summer School on Cyber Security for Smart Energy Systems, 2011 Recipient ACSAC Student Conferenceship, 2010 Recipient DIMACS Workshop on Algorithmic Decision Theory for the Smart Grid Travel Grant, 2010 Recipient HotSec Student Travel Grant, 2010 Recipient USENIX Security Symposium Travel Grant, 2008 and 2009 Recipient Harry G. Miller Fellowship, Spring 2008 Recipient R. P. Drenning Memorial Scholarship, 2007-08 Recipient John F. Kray Sr. Scholarship, 2006-07 Deans List, Fall 2004 - Fall 2007 Affiliations Member Association for Computing Machinery Member Institute of Electrical and Electronics Engineers Member USENIX The Advanced Computing Systems Association Member Tau Beta Pi the Engineering Honor Society

Professional Activities Committees: Information Security Conference (ISC 2014), PC Member Annual Computer Security Applications Conference (ACSAC 2013), PC Member ACM CCS Workshop on Smart Energy Grid Security (2013), PC Member The Second International Conference on Smart Systems, Devices and Technologies (SMART 2013), PC Member LCN Workshop on Network Security (WNS 2012, 2013), PC Member Reviewer: International Conference on Availability, Reliability and Security (ARES), 2008; International Conference on Distributed Computing Systems (ICDCS), 2008; USENIX Security, 2008; IEEE TSE; Data and Applications Security (DBSec) 2008. 16th Annual Network and Distributed System Security Symposium (NDSS) 2009; ACM Symposium on Access Control Models and Technologies (SACMAT) 2009; USENIX Security, 2009; ACM Conference on Computer and Communications Security (CCS) 2009; ACM Cloud Computing Security Workshop (CCSW) 2009; Fifth International Conference on Information Systems Security (ICISS 2009); 17th ACM Conference on Computer and Communications Security (CCS 2010); 5th USENIX Workshop on Hot Topics in Security (HotSec 2010); 26th Annual Computer Security Applications Conference (ACSAC 2010); Proceedings of the IEEE; The 17th Annual International Conference on Mobile Computing and Networking (MOBICOM 2011); IEEE Transactions on Knowledge and Data Engineering (TKDE); The 18th Annual Network and Distributed System Security Symposium (NDSS) 2012.