Dr. Richard Gay


This is the former webpage of Dr. Richard Gay.


As a Ph.D. candidate in the MAIS group, my research addresses the topic of runtime monitoring and enforcement for distributed applications. In particular, I have been developing CliSeAu (published at ICISS'14), a tool for cooperative enforcement of security for distributed Java programs, as well as a formal model of a cooperative enforcement mechanism (published at FAST'11).

Short Bio

My first contact with the group of Heiko Mantel was in 2006 at RWTH Aachen, when I started working on the MAKS framework as a student researcher for the group. Later, yet still as a student researcher for the group, I switched to the topic of covert channels which were then also the topic of my Diploma thesis (see the publications below). After graduating in computer science at RWTH Aachen, I started as Ph.D. candidate in the MAIS group and CASED scholarship holder in 2009. Subsequently, I contributed to the projects FM-SecEng and RS3.


These documents have been provided by the contributing authors as a means to ensure timely dissemination of scholarly and technical work on a noncommercial basis. Copyright and all rights therein are retained by authors or by other copyright holders. All persons copying this information are expected to adhere to the terms and constraints invoked by each author's copyright. These works may not be reposted without the explicit permission of the copyright holder.




  • Steven Arzt, Alexandre Bartel, Richard Gay, Steffen Lortz, Enrico Lovat, Heiko Mantel, Martin Mohr, Benedikt Nordhoff, Matthias Perner, Siegfried Rasthofer, David Schneider, Gregor Snelting, Artem Starostin and Alexandra Weber. Software Security for Mobile Devices. Poster at the 25th USENIX Security Symposium, 2016.
    BibTeX entry ]
  • Thomas Bauereiss, Abhishek Bichhawat, Iulia Bolosteanu, Peter Faymonville, Bernd Finkbeiner, Deepak Garg, Richard Gay, Sergey Grebenshchikov, Christian Hammer, Dieter Hutter, Ondřej Kunčar, Peter Lammich, Heiko Mantel, Christian Müller, Andrei Popescu, Markus Rabe, Vineet Rajani, Helmut Seidl, Markus Tasch and Leander Tentrup. Security in Web-Based Workflows. Poster at the 25th USENIX Security Symposium, 2016.
    BibTeX entry ]
  • Daniel Bruns, Huy Quoc Do, Simon Greiner, Mihai Herda, Martin Mohr, Enrico Scapin, Tomasz Truderung, Bernhard Beckert, Ralf Küsters, Heiko Mantel and Richard Gay. Security in E-Voting. Poster at the 25th USENIX Security Symposium, 2016.
    BibTeX entry ]


  • Steven Arzt, Alexandre Bartel, Richard Gay, Steffen Lortz, Enrico Lovat, Heiko Mantel, Martin Mohr, Benedikt Nordhoff, Matthias Perner, Siegfried Rasthofer, David Schneider, Gregor Snelting, Artem Starostin and Alexandra Weber. Software Security for Mobile Devices. Poster at the 36th IEEE Symposium on Security and Privacy (S&P), 2015.
    BibTeX entry | Abstract ]
  • Thomas Bauereiss, Abhishek Bichhawat, Iulia Bolosteanu, Peter Faymonville, Bernd Finkbeiner, Deepak Garg, Richard Gay, Sergey Grebenshchikov, Christian Hammer, Dieter Hutter, Ondřej Kunčar, Peter Lammich, Heiko Mantel, Christian Müller, Andrei Popescu, Markus Rabe, Vineet Rajani, Helmut Seidl, Markus Tasch and Leander Tentrup. Security in Web-Based Workflows. Poster at the 36th IEEE Symposium on Security and Privacy (S&P), 2015.
    BibTeX entry | Abstract ]
  • Daniel Bruns, Huy Quoc Do, Simon Greiner, Mihai Herda, Martin Mohr, Enrico Scapin, Tomasz Truderung, Bernhard Beckert, Ralf Küsters, Heiko Mantel and Richard Gay. Security in E-Voting. Poster at the 36th IEEE Symposium on Security and Privacy (S&P), 2015.
    BibTeX entry | Abstract ]
  • Richard Gay, Heiko Mantel and Henning Sudbrock. An Empirical Bandwidth Analysis of Interrupt-Related Covert Channels. In International Journal of Secure Software Engineering (IJSSE), 6(2), pages 1-22, 2015.
    BibTeX entry ]







Supervised Theses

  • Tobias Hamann. CliSeAu for Android Applications: Design, Case Studies and Evaluation. Master Thesis, TU Darmstadt, 2016.
    BibTeX entry ]
  • Johannes Schickel. Using File-Correlation to Accelerate Decision-Making in a Decentralized Cooperative Security Enforcement. Master Thesis, TU Darmstadt, 2016.
    BibTeX entry ]
  • Moritz Tiedje. Design and Evaluation of Profiling Methods for the Distributed Enforcement Mechanism CliSeAu. Bachelor Thesis, TU Darmstadt, 2015.
    BibTeX entry ]
  • Dominic Scheurer. Enforcing Datalog Policies with Service Automata on Distributed Version Control Systems. Bachelor Thesis, TU Darmstadt, 2013.
    BibTeX entry ]
  • Markus Tasch. Exemplary Specification of Integrity Requirements by Information-Flow Properties. Bachelor Thesis, TU Darmstadt, 2013.
    BibTeX entry ]
  • Sogol Mazaheri. Race Conditions in Distributed Enforcement at the Example of Online Social Networks. Bachelor Thesis, TU Darmstadt, 2012.
    BibTeX entry ]
  • Daniel Specht. A Formal Model and Tool for Data Flow Security in Computer Networks. Bachelor Thesis, TU Darmstadt, 2012.
    BibTeX entry ]
  • Florian Wendel. An Evaluation of Delegation Strategies for Coordinated Enforcement. Bachelor Thesis, TU Darmstadt, 2012.
    BibTeX entry ]

Theses and Student Positions (HiWi)

If you are a student at TU Darmstadt and are interested in writing a Bachelor's, Diploma or Master's thesis or in working as a student researcher (HiWi) on the research topics I am researching, please contact one of my colleagues Yuri Dantas or Tobias Hamann, as I am currently not looking for students to supervise.


I have been involved in the following teaching activities:

Services to the Scientific Community

  • I was responsible assistant for the content of two project-wide meetings of the DFG Priority Program RS3 (Staff Meeting 2014 and Annual Meeting 2014), moderated working sessions of three RS3 project meetings (Annual Meetings 2011 and 2012, and Staff Meeting 2012), supported the organization of three further RS3 project meetings (Preparation Workshop 2009, Staff Meeting 2015, and Annual Meeting 2015), and organized a workshop on "Security in the Large" with researchers from the RS3 project.
  • I have been reviewing for CCS (2011 and 2012), ESORICS (2009 and 2016), ESSoS (2012 and 2013), FoSSaCS (2011), IFIP SEC (2015), IJIS, POST (2012 and 2015), and TRUST (2012).

Administration of Technical Infrastructure

I am and have been involved in the supervision of the technical infrastructure of the MAIS group. As part of this responsibility, I supervised the following apprentices:

  • André Fischer (Fachinformatiker Systemintegration), successfully finished in 2014
  • Kevin Bouhsard (Fachinformatiker Systemintegration), successfully finished in 2015. His final project was ranked first in the CAST award in IT security 2015 in the category of "other final projects".
  • Jan-Niklas Klocke (Fachinformatiker Anwendungsentwicklung), ongoing, started in 2014

Last modified on 2 March 2023.

A A A | Print | Imprint | Sitemap | Contact
zum Seitenanfang