Stefan Savage

Associate Professor

Department of Computer Science and Engineering

University of California, San Diego


Office: EBU3B 3106
Email: savage AT cs.ucsd.edu
Mail:

UCSD Dept of CSE

9500 Gilman Drive, MC 0404,

La Jolla, CA  92093-0404

Voice (858)-822-4895
FAX (858)-534-7029
Systems and Networking Group

Security Group


What's new? 

I started thinking about updating the what's new section.

Slides from an invited talk I gave at NDSS 2005 titled "Internet Outbreaks: Epidemiology and Defenses.

Kaia Savage was new back on 7/29/2004.

Cole Savage was the newest thing around back on 2/9/2002.

The Overnet host availability traces from our '02 IPTPS paper are available here.

The Denial-of-Service backscatter traces used in our '01 Usenix Security paper are available here.

Recent publications

Hey, You, Get Off of My Cloud: Exploring Information Leakage in Third-Party Compute Clouds, Thomas Ristenpart, Eran Tromer, Hovav Shacham, and Stefan Savage, Proceedings of the ACM Conference on Computer and Communications Security, Chicago, IL, November 2009.

When Private Keys are Public: Results from the 2008 Debian OpenSSL Debacle, Scott Yilek, Eric Rescorla, Hovav Shacham, Brandon Enright, and Stefan Savage, Proceedings of the ACM Internet Measurement Conference, Chicago, IL, November 2009.

Spamalytics: An Empirical Analysis of Spam Marketing Conversion, Chris Kanich, Christian Kreibich, Kirill Levchenko, Brandon Enright, Geoffrey M. Voelker, Vern Paxson, and Stefan Savage, Communications of the Association for Computing Machinery 52(9):99-107, September 2009.

Identifying Suspicious URLs: An Application of Large-Scale Online Learning, Justin Ma, Lawrence K. Saul, Stefan Savage, and Geoffrey M. Voelker, Proceedings of the International Conference on Machine Learning, Montreal, Quebec, June 2009.

Beyond Blacklists: Learning to Detect Malicious Web Sites from Suspicious URLs, Justin Ma, Lawrence K. Saul, Stefan Savage, and Geoffrey M. Voelker, Proceedings of the ACM SIGKDD Conference, Paris, France, June 2009.

Spamcraft: An Inside Look at Spam Campaign Orchestration, Christian Kreibich, Chris Kanich, Kirill Levchenko, Brandon Enright, Geoffrey M. Voelker, Vern Paxson, and Stefan Savage, Proceedings of the USENIX Workshop on Large-scale Exploits and Emergent Threats (LEET), Boston, MA, April 2009.

Difference Engine: Harnessing Memory Redundancy in Virtual Machines, Diwaker Gupta, Sangmin Lee, Michael Vrable, Stefan Savage, Alex C. Snoeren, George Varghese, Geoffrey M. Voelker, and Amin Vahdat, USENIX ;login: 34(2), April 2009.

Detecting Malicious Packet Losses, Alper Mizrak, Stefan Savage, and Keith Marzullo, IEEE Transactions on Parallel and Distributed Systems 20(2), February 2009.

Cumulus: Filesystem Backup to the Cloud, Michael Vrable, Stefan Savage, and Geoffrey M. Voelker, Proceedings of the 7th USENIX Conference on File and Storage Technologies (FAST), San Francisco, CA, February 2009.

Difference Engine: Harnessing Memory Redundancy in Virtual Machines, Diwaker Gupta, Sangmin Lee, Michael Vrable, Stefan Savage, Alex C. Snoeren, George Varghese, Geoffrey M. Voelker, and Amin Vahdat, Proceedings of the 8th ACM/USENIX Symposium on Operating System Design and Implementation (OSDI), San Diego, CA, December 2008. (Award paper).

Spamalytics: an Empirical Analysis of Spam Marketing Conversion, Chris Kanich, Christian Kreibich, Kirill Levchenko, Brandon Enright, Vern Paxson, Geoffrey M. Voelker, and Stefan Savage, Proceedings of the ACM Conference on Computer and Communications Security, Alexandria, VA, October 2008.

Reconsidering Physical Key Secrecy: Teleduplication via Optical Decoding, Benjamin Laxton, Kai Wang, and Stefan Savage, Proceedings of the ACM Conference on Computer and Communications Security, Alexandria, VA, October 2008.

When Good Instructions Go Bad: Generalizing Return-oriented Programming to the SPARC, Erik Buchanan, Ryan Roemer, Hovav Shacham, and Stefan Savage, Proceedings of the ACM Conference on Computer and Communications Security, Alexandria, VA, October 2008.

XL: An Efficient Network Routing Algorithm, Kirill Levchenko, Geoffrey M. Voelker, Ramamohan Paturi, and Stefan Savage, Proceedings of the ACM SIGCOMM Conference, Seattle, WA, August 2008.

Storm: When Researchers Collide, Brandon Enright, Geoff Voelker, Stefan Savage, Chris Kanich, and Kirill Levchenko, USENIX ;login: 33(4), August 2008.

On the Spam Campaign Trail, Christian Kreibich, Chris Kanich, Kirill Levchenko, Brandon Enright, Geoffrey M. Voelker, Vern Paxson, and Stefan Savage, Proceedings of the USENIX Workshop on Large-scale Exploits and Emergent Threats (LEET), San Franciso, CA, April 2008.

The Heisenbot Uncertainty Problem: Challenges in Separating Bots from Chaff, Chris Kanich, Kirill Levchenko, Brandon Enright, Geoffrey M. Voelker, and Stefan Savage, Proceedings of the USENIX Workshop on Large-scale Exploits and Emergent Threats (LEET), San Franciso, CA, April 2008.

Detecting Compromised Routers via Packet Forwarding Behavior, Alper Mizrak, Stefan Savage, and Keith Marzullo, IEEE Network 22(2), March 2008.

An Inquiry into the Nature and Causes of the Wealth of Internet Miscreants, Jason Franklin, Vern Paxson, Adrian Perrig, and Stefan Savage, Proceedings of the ACM Conference on Computer and Communications Security, Alexandria, VA, October 2007.

Slicing Spam with Occam's Razor, Chris Fleizach, Geoffrey M. Voelker, and Stefan Savage, Proceedings of Conference on Email and Anti-Spam (CEAS), Mountain View, CA, August 2007.

Automating Cross-Layer Diagnosis of Enterprise Wireless Networks, Yu-Chung Cheng, Mikhail Afanasyev, Patrick Verkaik, Péter Benkö, Jennifer Chiang, Alex C. Snoeren, Stefan Savage, and Geoffrey M. Voelker, Proceedings of the ACM SIGCOMM Conference, Kyoto, Japan, August 2007.

Spamscatter: Characterizing Internet Scam Hosting Infrastructure, David S. Anderson, Chris Fleizach, Stefan Savage, and Geoffrey M. Voelker, Proceedings of the USENIX Security Symposium, Boston, MA, August 2007.

Full publication list

Research  

I'm part of the Systems & Networking and Security research groups. My interests are all over the map, ranging from the economics of e-crime, to characterizing availability, to automotive systems to routing protocols, data center virtualization and back again. I have very broad interests (i.e. try me if you have a crazy idea).

Students  
Kirill Levchenko (postdoc)
Damon McCoy (postdoc)

Neha Chachra
Tristan Halvorson
Chris Kanich
Justin Ma
David Moore
Marti Motoyama
Andreas Pitsillidis
Sumeet Singh
Daniel Turner
Michael Vrable
Danny Anderson (MS)
Stephan Chenette (MS)
Erik Buchanan (MS)

Ryan Roemer (M.S., 2009) -> Microsoft
Varun Almaula (M.S., 2008) -> Cisco
Yu-Chung Cheng (Ph.D., 2007) -> Google
Alper Mizrak (Ph.D., 2007) -> VmWare
John Bellardo (Ph.D., 2006) -> Cal Poly SLO
Chris Tuttle (M.S., 2006) -> Google
Ishwar Ramani (M.S., 2005) -> Juniper Networks
Ranjita Bhagwan (Ph.D., 2004) -> IBM Research -> Microsoft Research
Doug Brown (M.S., 2003) -> NYU Law School
Teaching  
Fall 09: CSE 123 Computing Networking
Fall 08: CSE 291 Internet Crime (grad seminar)
Spring 08: CSE 127 Computer Security (undergraduate)
Winter 08: CSE 227 Computer Security (graduate)
Fall 07: CSE 294 Systems and Networking Graduate Seminar
Spring 07: CSE 294 Systems and Networking Graduate Seminar
Spring 07: CSE 127 Computer Security
Winter 07: CSE 227 Computer Security (graduate)
Fall 06: CSE 294 Systems and Networking Graduate Seminar
Winter 06: CSE 127 Computer Security
Fall 05: CSE 123a Computer Networks
Fall 05: CSE 294 Systems and Networking Graduate Seminar
Spring 05: CSE 127 Computer Security
Spring 05: CSE 294 Systems and Networking Graduate Seminar
Winter 05: CSE 123a Computer Networks
Spring 04: CSE 123b Communications Software
Fall 03: CSE 221 Graduate Operating Systems
Spring 03: CSE 123b Communications Software
Winter 03: CSE 294 Systems and Networking Graduate Seminar
Winter 03: CSE 222 Computer Communications Networks
Spring 02: CSE 291 Topics in Wide Area Networking: Peer-to-Peer Systems
Spring 02: CSE 123b Communications Software
Fall 01: CSE 222 Computer Communications Networks
Winter 01:  CSE 291E  Selected Topics in Wide Area Networking.  
Professional Activities
Program Committee, 2009 ACM Symposium on Operating System Principles (SOSP)
Program Committee, 2009 IEEE Symposium on Security and Privacy
Program Co-chair, 2008 ACM SIGCOMM Conference
Steering Committee,
2008 USENIX LEET Workshop
Program Committe, 2008 USENIX WOWCS Workshop
Member, NSF GENI Science Council, 2007-2008
Program Co-chair, 2007 ACM Workshop on Recurring Malcode (WORM)
Program Committee, 2007 ACM Symposium on Operating System Principles (SOSP)
Program Committee, 2007 ACM SIGCOMM Conference
Program Committee, 2006 IEEE Symposium on Security and Privacy
NRC/CSTB Study: Improving Cybersecurity Research in the United States (2004-2005)
Program Committee, 2005 USENIX/ACM Networked Systems Design and Implementation (NSDI)
Program Committee, 2005 ACM Symposium on Operating System Principles (SOSP)
Program Committee, 2004 ACM Workshop on Rapid Malcode (WORM)
Program Co-chair, 2004 USENIX/ACM Networked Systems Design and Implementation (NSDI)
Co-Organizer, 2003 DIMACS Workshop on Large-Scale Internet Attacks
Program Chair, 2003 ACM Workshop on Rapid Malcode (WORM)
Program Committee, 2003 ACM Symposium on Operating System Principles (SOSP)
Program Committee, 2003 ACM SIGCOMM Conference
Program Committee, 2003 DISCEX Conference
Program Committee, 2003 ACM HotNets Workshop
Program Committee, 2002 ACM SIGCOMM Conference
Program Committee, 2001 Global Internet Symposium
Internet2 Network Research Liason Council, 2002-2004.
CSTB Research Horizons: Networking Research Workshop, 2001
DARPA ISAT Member, 2001-2004.
Misc

I got my undergrad degree in Applied History from CMU and my Ph.D. from the University of Washington (courtesy Brian Bershad and Tom Anderson). I was Co-founder and Chief Scientist at Asta Networks (now kaput), served on the Strategy Advisory Council of Rendition Networks (since acquired by OpsWare) and helped develop some of the technology used by Netsift (since acquired by Cisco). I do other consulting here and there.