Research page of Cristian-Alexandru Staicu

Cristian-Alexandru Staicu

TU Darmstadt
Hochschulstrasse 10, Robert-Piloty-Gebäude (S2|02), room D216
64289 Darmstadt
Telephone number: +49-6151-1622391

This is an old page. Please visit this page for up-to-date information.

About me

I am a Ph.D. student at TU Darmstadt, advised by Prof. Dr. Michael Pradel. My current research interest is on applying programming language techniques to security problems. In particular, I am working on finding and preventing vulnerabilities specific to server-side JavaScript programs and libraries.


Research Work

  • ICSE 2020 (to appear)
    Extracting Taint Specifications for JavaScript Libraries
    Cristian-Alexandru Staicu, Martin Toldam Torp, Max Schäfer, Anders Møller, Michael Pradel
    (paper, poster)
  • USENIX Security 2019
    Leaky Images: Targeted Privacy Attacks in the Web
    Cristian-Alexandru Staicu, Michael Pradel
  • USENIX Security 2019
    Small World with High Risks: A Study of Security Threats in the npm Ecosystem
    Markus Zimmermann, Cristian-Alexandru Staicu, Cam Tenny, Michael Pradel
    (paper, reviewed by The Morning Paper)
  • The Web Conference 2019
    Anything to Hide? Studying Minified and Obfuscated Code in the Web
    Philippe Skolka, Cristian-Alexandru Staicu, Michael Pradel
    (paper, presentation, dataset)
  • PLAS@CCS 2019
    An Empirical Study of Information Flows in Real-World JavaScript
    Cristian-Alexandru Staicu, Daniel Schoepe, Musard Balliu, Michael Pradel, Andrei Sabelfeld
    (paper, presentation)
  • USENIX Security 2018
    Freezing the Web: A Study of ReDoS Vulnerabilities in JavaScript-based Web Servers
    Cristian-Alexandru Staicu, Michael Pradel
    (paper, presentation, video, reviewed by Bleeping Computer, Naked Security and TU Darmstadt website)
  • NDSS 2018
    Synode: Understanding and Automatically Preventing Injection Attacks on Node.js
    Cristian-Alexandru Staicu, Michael Pradel, Ben Livshits
    (paper, presentation, video, reviewed by The Morning Paper)
  • ASE 2017
    Saying ‘Hi!’ Is Not Enough: Mining Inputs for Effective Test Generation
    Luca Della Toffola, Cristian-Alexandru Staicu, Michael Pradel
  • CSUR 2017
    A Survey of Dynamic Analysis and Test Generation for JavaScript
    Esben Andreasen, Liang Gong, Anders Møller, Michael Pradel, Marija Selakovic, Koushik Sen, Cristian-Alexandru Staicu
  • SSBSE 2016
    Search Based Clustering for Protecting Software with Diversified Updates
    Mariano Ceccato, Paolo Falcarin, Alessandro Cabutto, Yosief Weldezghi Frezghi, Cristian-Alexandru Staicu
  • ICSE 2016
    Nomen Est Omen: Exploring and Exploiting Similarities between Argument and Parameter Names
    Hui Liu, Qiurong Liu, Cristian-Alexandru Staicu, Michael Pradel, Yue Luo.
    (paper, presentation)
  • PLDI Student Research Competition 2015
    An Empirical Study of Implicit Information Flow
    Cristian-Alexandru Staicu
    (poster, presentation)
  • Master Thesis (2014)
    Evaluation of HIMMO with Long Identifiers, an Extension of the HIMMO Key Establishment Scheme
    Cristian-Alexandru Staicu
    Work done during an internship at Philips Research Eindhoven, supervised by Oscar García Morchon and Andreas Peter.
    (thesis, presentation)
  • Bachelor Thesis (2007)
    SherlockJ - Unealta de Depanarea Statistic a Programelor Java (in Romanian)
    supervised by Prof. Marius Minea
    (thesis, presentation)


Last updated 14th of Februrary, 2020