About
luca
Lastmod: 2023-03-14
        Office:         MF 6.122 
                        P.O. Box 513, 5600 MB
                        Eindhoven, The Netherlands
        Email:          l.allodi at tue.nl
        PGP fngrprnt:   950E 3DC8 EB66 DFF3 B64D  7848 A0AD 0BB6 5DC4 98F1

Public key here.

Curriculum Vitae

I DO NOT have a Facebook profile.
My LinkedIn page (hardly updated) is this.
My Twitter handle is @securescientist.
I am on Mastodon at @securescientist@fediscience.org.

More verbosely

I am an Assistant Professor at the Security Group of the Eindhoven University of Technology, in the Netherlands. Previously I worked and studied at the University of Trento, Italy, where graduated my PhD in 2015 with a thesis entitled: “Risk-based Vulnerability Management. Exploiting the economic nature of the attacker to build sound and measurable vulnerability mitigation strategies”.

The gist of my research is to link the technical, economic, and strategic factors that drive cyber-attackers to defensive operations and technology. To this aim I investigate the dynamic optimization problems the attacker solves when engineering a new attack, the economics of vulnerability exploitation, how these translate in novel threats at scale, and how these can be ultimately delivered to the (human) user. A newer branch of our work focuses on how to integrate these insights into more effective security defenses. My research draws from several field, including computer security, economics, risk analysis, and criminology.

I am an acknowledged authoring member of the First.org SIG Team for the upcoming CVSS v3.1 framework (the worldwide standard-de-facto for vulnerability assessment), and I am the Scientific Director of the Eindhoven Security Hub SOC (ESH-SOC). Read more about it here and here.