Biography

Ciao, I am Daniele, an Assistant Professor at EURECOM with the software and system security (S3) group. I am doing research and teaching in applied system security and privacy with an emphasis on wireless communication, such as Bluetooth and Wi-Fi, embedded systems, such as cars and fitness trackers, mobile systems such as smartphones, and cyber-physical systems such as industrial control systems.

I spent one year and a half as a Postdoc with Mathias Payer’s HexHive group at École Polytechnique Fédérale de Lausanne (EPFL). During my postdoc, among others, I’ve participated in the design, implementation and evaluation of DP3T/GAEN, a privacy-preserving contact-tracing technology now used by Android and iOS for proximity tracing.

I hold a PhD in Computer Science from the Singapore University of Technology and Design (SUTD). My PhD thesis is titled “Design, Implementation, and Evaluation of Secure Cyber-Physical and Wireless Systems”. During my PhD I spent six months at the Computer Science Department of the University of Oxford as a visiting researcher advised by Kasper Rasmussen, and ten months as a visiting researcher at the Helmholtz Center for Information Security (CISPA) advised by Nils Ole Tippenhauer.

I hold a BS and MS in Electronics and Telecommunications Engineering from the University of Bologna (UniBO). I spent three months at the University of Massachusetts (UMass Amherst) as a research assistant to prepare my master thesis titled Design and Testing of Random Number Generators (RNG) advised by Wayne Burleson and Riccardo Rovatti.

Interests
  • Cyber-Physical Systems
  • Mobile Systems Security
  • Wireless Systems Security
  • Embedded Systems Security
  • Industrial Control System Security
  • Applied Cryptography
  • SoCurity
Education
  • PhD in Computer Science, 2019

    Singapore University of Technology and Design (SUTD)

  • MS in Electronics and Telecommunications Engineering, 2013

    University of Bologna (UniBO)

  • BS in Electronics and Telecommunications Engineering, 2010

    University of Bologna (UniBO)

Publications

Talks

On the Insecurity of Vehicles Against Protocol-Level Bluetooth Threats

Talk on Automotive Bluetooth Security at AMUSEC'25.

Cars are some of the most security-critical consumer devices. On the one hand, owners expect rich infotainment features, including audio, hands-free calls, contact management, or navigation through their connected mobile phone. On the other hand, the infotainment unit exposes exploitable wireless attack surfaces. This talk focuses on protocol-level Bluetooth threats on vehicles, a critical but unexplored wireless attack surface. These threats are crucial because they are portable across vehicles, and they can achieve impactful goals, such as accessing sensitive data or even taking remote control of the vehicle. Their evaluation is novel as prior work focused on other wireless attack surfaces, notably Bluetooth implementation bugs. Among relevant protocol-level threats, we pick the KNOB and BIAS attacks because they provide the most effective strategy to impersonate arbitrary Bluetooth devices and are not yet evaluated against vehicles.

Posts

KNOB Attack and Crypto 101 by Alfred Menezes

Alfred Menezes has published a fantastic online course on real-world cryptography called Crypto 101: Real-World Deployments.

It is an honor to be featured in the Bluetooth Security Lecture (Lecture 4) which talks about the KNOB attack.

E-Spoofer and BLUFFS Talks at THCON'24

Salut, Marco Casagrande will talk about E-Spoofer and I will talk about BLUFFS at the 2024 Toulouse Hacking Convention (THCON)! Both research works are funded by the ORSHIN Horizon Europe research grant.

  • E-Spoofer talk: 4th April 2024, 10:15-10:45
  • BLUFFS talk: 4th April 2024, 11:15-10:45
  • Where: Marthe Condat auditorium, Paul Sabatier University, Toulouse
  • THCON program

See you in Toulouse 🇫🇷 at THCON'24

Reviews

Summary

  • 216 submissions reviewed since 2016 (last update 2024-02-22)
  • Associate Editor (AE): ACM Transactions on Privacy and Security (TOPS)
  • Distinguished reviewer: NDSS'24, WOOT'21
  • Chair: Poster&Demo (WiSec'24), Publicity (NSS'20)
  • 2024: WiSec, SEC, NDSS, DIMVA, CPSS, AsiaCCS, CPSS, RAID
  • 2023: WOOT, WiSec, SEC, NDSS, CPSS, AsiaCCS, CPSS
  • 2022: WOOT, S&P, SEC, CPSS, AsiaCCS, CPSS
  • 2021: WOOT, SEC, AsiaCCS, NSS

Conferences

  • USENIX Security Symposium (SEC)
  • ACM Asia Conference on Computer and Communications Security (AsiaCCS)
  • International Conference on Network and System Security (NSS)
  • IEEE Symposium on Security and Privacy (S&P)
  • Network and Distributed System Security Symposium (NDSS)
  • ACM Conference on Security and Privacy in Wireless and Mobile Networks (WiSec)
  • Detection of Intrusions and Malware & Vulnerability Assessment (DIMVA)
  • ACM Symposium on Research in Attacks, Intrusions and Defenses (RAID)

Journals

  • ACM Transactions on Privacy and Security (TOPS)
  • IEEE Transactions on Information Forensics and Security (TIFS)
  • IEEE Transactions on Wireless Communications (TWC)
  • IEEE Transactions on Dependable and Secure Computing (TDSC)
  • IEEE Network
  • Computer Networks (ComNet)
  • Journal of Systems Research (JSys)
  • Journal of Computer Science and Technology (JCST)
  • IEEE Computer (COM)

Workshops

  • USENIX Workshop on Offensive Technologies (WOOT)
  • IEEE Workshop on Cyber-Physical Systems Security (CPS-Sec)
  • ACM Cyber-Physical System Security Workshop (CPSS)

Grants

  • German Research Foundation (DFG)

Publishers

  • Manning Publications

Students

Current PhD

  • Soumaya Boussaha
  • Tommaso Sacchetti
  • Farzam Zohdi

Graduated PhD

  • Marco Casagrande (Dec 2024, now postdoc at KTH)

Master (selected)

  • Victor.Fresno-Gomez (Double-degree EURECOM UPM)
  • Riccardo Cestaro (UniPD, Mille E Una Lode Award, 2nd prize CLUSIT Award'22)
  • Alex Ferragni (EPFL, CSEM lab)
  • Emiljano Gjiriti (EPFL, CSEM lab)

Courses

Currently as Asst. Prof

  • Spring 2022: A Bluetooth Course (ABC) MSc.
    • Bluetooth, wireless, and network security
  • Fall 2021: Mobile System Security (MOBISEC) MSc.
    • Android and iOS security

TA as a PhD (2015-2018)

  • 2018: Security Principles (SPR) MSc, University of Oxford UK, Prof K.B. Rasmussen
    • CIA, Authentication, Cryptography, RSA, Protocols
    • Exercises and presentation of Scyther
  • 2017: Networks BSc, SUTD Singapore, Prof N.O. Tippenhauer
    • TCP/IP, UDP, BGP, SDN, HTTP, REST, TLS, tunnels, NAT
    • Lab session, grading, office hours
  • 2017: Security BSc, SUTD Singapore, Prof N.O. Tippenhauer
    • CIA, Cryptography, Exploitation, TLS, CTF, Network Security
    • Lab session, grading, office hours

For fun and micro profit (2013-2015)

  • External Prof for High School Final Exams in Informatics (Italy) LAMP, SQL, PHP, JS, relational DB, MVC, HTTP(S)
  • Grad/undergrad private lessons: linear algebra, calculus, programming (C, Pascal)
  • High school private lessons: math, physics, programming (C++)

Contact