|
|

楼主 |
发表于 2026-3-26 10:26:55
|
显示全部楼层
NDSS 2026共接收265篇文章' m0 L6 z1 A! Z$ V
1 A/ `2 v( m* i5 w
【1】浙江大学& q7 F/ K' t- O: }
A Causal Perspective for Enhancing Jailbreak Attack and Defense- N. i3 T' O" z+ {. j0 m
Licheng Pan (Zhejiang University) X; N% W, H4 v7 |/ s- s
2 q/ j3 v& X4 c
【2】清华大学8 v3 a0 E% s/ J0 `* M7 H" v
A Hard-Label Black-Box Evasion Attack against ML-based Malicious Traffic Detection Systems& Z1 O5 |- }2 _3 V- x
Zixuan Liu (Tsinghua University)
. u: f, {/ X0 G& X" ]
$ C3 d( g) V( v" V$ o* u5 p7 \【3】北京邮电大学
x* N! g" E( [) K7 f8 v# EA Unified Defense Framework Against Membership Inference in Federated Learning via Distillation and Contribution-Aware Aggregation
5 q% r) E. |* c# N; vLiwei Zhang (Beijing University of Posts and Telecommunications)- k5 N) A6 T; x/ @
! i2 b) K! A$ x# e+ Z【4】重庆大学4 {* k; C. y: l A C, Y
Abuse Resistant Traceability with Minimal Trust for Encrypted Messaging Systems
' ~' w2 ^- W }Zhongming Wang (Chongqing University),+ ?% T7 [% z& @5 w: Y8 r
& L2 C% B' c6 V2 J) ^9 W0 ^
【5】北京交通大学) S* u. n) N F
Accurate Identification of the Vulnerability-Introducing Commit based on Differential Analysis of Patching Patterns
2 B# {9 G; {. a# v% `Qixuan Guo (Beijing Jiaotong University)5 Z: _# ?: K" ^9 ]1 a: b
& I- W& x4 W/ P5 S# s" G$ s# t【6】清华大学" X. S$ ^' y* q% [. K
Achieving Interpretable DL-based Web Attack Detection through Malicious Payload Localization' g! ?5 L3 S. ~$ x' m0 A& |* P
Peiyang Li (INSC and the State Key Laboratory of Internet Architecture, Tsinghua University and Ant Group)& m1 a# g, H, T! c+ |) T( f
1 A4 w6 A4 i- C
【7】复旦大学
$ B/ X0 s& O; L4 E2 G6 iAnchors of Trust: A Usability Study on User Awareness, Consent, and Control in Cross-Device Authentication
; e# R* {# R7 n) c# TXin Zhang (Fudan University)
4 M( O [" V! H+ J
$ Q" }1 z5 t0 n9 `, T【8】浙江大学
" |" q7 c" ^6 v) G% Z+ KAttention is All You Need to Defend Against Indirect Prompt Injection Attacks in LLMs; i3 U& a- z8 N& F/ x7 f
Yinan Zhong (Zhejiang University)
6 h3 m& Z* j) _+ W1 n- K# W. A T/ R
$ B! w1 _+ X" K) u* j/ l# X L【9】电子科技大学
1 f5 O2 K- o6 }- o- ]) gAutomating Function-Level TARA for Automotive Full-Lifecycle Security0 J" l0 f# ?" [8 T( Y
Yuqiao Yang (UESTC)
4 L8 ~ ^! y- ]/ g. C1 h
% i4 |, I7 d4 h# R( z( ]【10】东南大学, n' v; s9 w% C/ [* U
BACnet or “BADnet”? On the (In)Security of Implicitly Reserved Fields in BACnet
" M0 T, r" g$ D+ J s7 ]Qiguang Zhang (Southeast University)
6 s b F# v! h0 {+ y! z% A) {( i; J: J
【11】复旦大学$ t! R/ ?* K/ n: ?) l7 F( r
Better Safe than Sorry: Uncovering the Insecure Resource Management in App-in-App Cloud Services
# H+ x; o" n; y$ U2 P, cYizhe Shi (Fudan University)
: t% }2 b2 D8 _3 R& T2 u4 k
! ]6 [" u- G. }9 d5 \【12】清华大学
) l: V. Q) s4 J2 W3 ^Beyond Jailbreak: Unveiling Risks in LLM Applications Arising from Blurred Capability Boundaries* _& l( l% ?- U o) ^ Z
Yunyi Zhang (Tsinghua University)7 a5 F$ g* @" p; X, q
) y5 O! b4 X( G; M! T' \【13】浙江大学
& y, c: p5 F1 C: GBINALIGNER: Aligning Binary Code for Cross-Compilation Environment Diffing
4 H7 F! W6 ?7 x9 e( }* b- vYiran Zhu (The State Key Laboratory of Blockchain and Data Security, Zhejiang University)- t5 O Y: c7 n9 f% {
1 N# T# {! w6 b, S
【14】杭州电子科技大学( K7 C8 d+ g$ D$ d6 n6 z
Breaking Isolation: A New Perspective on Hypervisor Exploitation via Cross-Domain Attacks& U t, B2 Z! @+ Z; ~9 r% W3 F7 `
Gaoning Pan (Hangzhou Dianzi University & Zhejiang Provincial Key Laboratory of Sensitive Data Security and Confidentiality Governance)
6 o- s# g: p0 }3 ~- e3 B4 y Y* F: \6 I6 E
【15】浙江大学
% t% `: y0 ~1 C: a/ k- C% q% |Breaking the Bulkhead: Demystifying Cross-Namespace Reference Vulnerabilities in Kubernetes Operators
9 Y. W& v8 f% t+ l; P& BAndong Chen (Zhejiang University)0 ^# p& u" i% d$ y% S+ b3 A
/ K! y0 |- w, s. C
【16】合肥工业大学
$ P/ r; q6 [6 F- c( { DBreaking the Generative Steganography Trilemma: ANStega for Optimal Capacity, Efficiency, and Security+ R8 k q; @6 x3 S2 O# Y2 i+ F7 l
Yaofei Wang (Hefei University of Technology)
: ? T6 p5 ~' A: T& w) Q9 O8 {# H- D. X, C9 Z8 _: K0 X. ?3 l
【17】西安电子科技大学: p7 w: z# W) |; U* F: `' [
BSFuzzer: Context-Aware Semantic Fuzzing for BLE Logic Flaw Detection
1 i7 I3 w% S- E6 ]Ting Yang (Xidian University and Kanazawa University)
' a3 p+ Z. W- `3 r1 Z
2 V, O& \% I1 _, O- Y: m【18】清华大学
$ H5 _' N: y% y b: i6 |4 d2 kBunnyFinder: Finding Incentive Flaws for Ethereum Consensus6 y, L9 s* b! A( Y1 ]# v* P1 g
Rujia Li (Tsinghua University and State Key Laboratory of Cryptography and Digital Economy Security)
~1 P( v- x) B# l, B
1 j7 e- _# m. T5 L- Q9 H【19】中国海洋大学
( k; S8 E( p2 e/ Q3 T* A5 n& f& BCache Me, Catch You: Cache Related Security Threats in LLM Serving Frameworks
1 ~( Y$ S; X! {4 z0 W5 H# pXiangFan Wu (Ocean University of China; QI-ANXIN Technology Research Institute), D! w# X/ u5 S& Y: l. b/ E8 ~" N
) A2 E. i% d8 w9 W/ n& q
【20】西安电子科技大学" H* p8 `+ f( V8 ~
CAT: Can Trust be Predicted with Context-Awareness in Dynamic Heterogeneous Networks?: X5 |- U3 M8 a4 p
Jie Wang (State Key Laboratory of Integrated Services Networks, School of Cyber Engineering, Xidian University)
* R. x1 ]6 m! W6 `2 [* H3 ~/ r) I% G/ B7 ]5 V1 V6 S* h& t
【21】上海科技大学
/ K C$ |! R2 T; Z; P+ Q! rCausal-Guided Detoxify Backdoor Attack of Open-Weight LoRA Models! Y, o5 V V8 V1 L
Linzhi Chen (ShanghaiTech University)
; j, ~* S! g# L( {" t0 T
9 K" e( T1 P8 e, J【22】东南大学
$ H1 K7 w& j9 ~9 j# VCease at the Ultimate Goodness: Towards Efficient Website Fingerprinting Defense via Iterative Mutual Information Minimization
! W/ {' q' r2 L7 cRong Wang (Southeast University)
9 d% `6 H" b& z" ]5 E( y8 P( p2 Z2 n: _5 M
【23】浙江大学0 y/ x2 C* O. O5 F8 V! _
CHAMELEOSCAN: Demystifying and Detecting iOS Chameleon Apps via LLM-Powered UI Exploration6 [3 w- r8 r# n/ q0 _8 P
Hongyu Lin (Zhejiang University)
' m7 a7 u7 m7 l0 B4 v
6 h+ ?0 A' p, b( @【24】山东大学. K. @* ^7 D: n3 p. ~# R# o* e
Consensus in the Known Participation Model with Byzantine Faults and Sleepy Replicas
+ T& x$ E I1 W, \0 ^+ Z/ aChenxu Wang (Shandong University)7 @0 _, g& ~! }6 e; g
% G9 U/ g, P7 T- ~% M+ m【25】北京理工大学
' |2 j! }& }7 ~5 i% s2 f3 ?& nConstructive Noise Defeats Adversarial Noise: Adversarial Example Detection for Commercial DNN Services! ]3 `' O7 w$ [( X2 \. j
Meng Shen (Beijing Institute of Technology)
, j H5 S6 J8 h- [( E9 E! w' [& c/ i( r# Q
【26】清华大学% W; ]6 D$ A0 i4 i
CoordMail: Exploiting SMTP Timeout and Command Interaction to Coordinate Email Middleware for Convergence Amplification Attack, D2 I) B' ~+ Z2 q6 f% P
Ruixuan Li (Tsinghua University and Beijing National Research Center for Information Science and Technology)
' n8 `5 L) L) w t6 d% N& E
! l% e# @9 b7 ?【27】清华大学
! c' ?5 p/ u4 _ ?4 e+ J! R CCrack in the Armor: Underlying Infrastructure Threats to RPKI Publication Point Reachability
2 V: ~, N2 \. CYunhao Liu (Tsinghua University & Zhongguancun Laboratory)
- I4 l8 z. y8 `9 Y4 {1 A$ R6 \7 Q+ m2 x! z
【28】北京邮电大学
7 F$ ?+ Y; q3 I4 rCRISP: An Efficient Cryptographic Framework for ML Inference Against Malicious Clients
5 ^/ Q, r( f/ B- O3 c* [% B- oXiaoyu Fang (Beijing University of Posts and Telecommunications)+ t% P- w/ U' [0 w" \8 N3 h
' v5 f) S. ?6 _4 w【29】清华大学/ t# g# j1 X5 L' f" p/ k% D
Cross-Consensus Reliable Broadcast and its Applications
8 m5 R( A: Y7 i' v. ?Yue Huang (Tsinghua University): i+ }( c2 F5 b$ E) Z
$ z: N" a6 J9 D |2 u* X: _- t' t【30】清华大学9 I# E$ b* u8 Y$ q1 D9 M8 Y
CtPhishCapture: Uncovering Credential-Theft-Based Phishing Scams Targeting Cryptocurrency Wallets
6 O; v. ^- d- B1 P JHui Jiang (Tsinghua University and Baidu Inc)
( X+ G! B. e5 f. B
+ k" V- c, C. ?【31】西安电子科技大学$ ?& ]# j: n7 [
cwPSU: Efficient Unbalanced Private Set Union via Constant-weight Codes7 r M. d5 |0 }+ T% T
Qingwen Li (Xidian University)5 o3 a0 n T/ R' {
* U @. i' q* ^1 f; j( V. |2 v【32】复旦大学( o7 ? `, G4 c/ k
Dataset Reduction and Watermark Removal via Self-supervised Learning for Model Extraction Attack8 ]9 q* d9 O: a& t
Hao Luan (Institute of Big Data, Fudan University, Shanghai, China and College of Computer Science and Artificial Intelligence, Fudan University, Shanghai, China)- U u9 B! _: p: G/ r
( b; J+ B4 D6 q# k' |: p7 T; {
【33】东南大学4 p# G8 O5 N* ?
Demystifying the Access Control Mechanism of ESXi VMKernel, O& r1 V) ^! ^- i% X
Yue Liu (Southeast University)
+ X& g/ [0 A/ R! B# p1 v# ?! ]" \4 W& ?
【34】浙江大学2 y8 b& y) n$ q
DUALBREACH: Efficient Dual-Jailbreaking via Target-Driven Initialization and Multi-Target Optimization. q5 |3 p$ q: y5 U
Xinzhe Huang (Zhejiang University)2 `' K5 v& }- K4 c ?
6 O5 x" d& ]" T) c【35】上海交通大学% Z8 `( h" H9 j2 b( i+ D
DualStrike: Accurate, Real-time Eavesdropping and Injection of Keystrokes on Commodity Keyboards' E C* H" x* w3 }, B( S* h% K g
Xiaomeng Chen (Shanghai Jiao Tong University)4 `$ Y" q" y. \' w
5 H/ I' F; x0 @
【36】清华大学4 b5 e$ D* \9 n, k- ]/ D+ \: O! X
Enhancing Website Fingerprinting Attacks against Traffic Drift: f6 K( i+ ~8 |
Xinhao Deng (INSC, Tsinghua University and Ant Group)+ r K0 E% @+ M! w
, B2 |; ^2 Y w8 m' ], a
【37】上海交通大学+ _4 W6 U+ w: n% ]) f" H. j+ b: W
EXIA: Trusted Transitions for Enclaves via External-Input Attestation0 M8 b, E1 D$ J6 c- k
Zhen Huang (Shanghai Jiao Tong University)" W+ G! o" K( i( s, }. } Q
4 h. w7 ^) Y- d" P5 k8 c
【38】上海交通大学. Y6 M! g; V; p( n1 g3 Y ]5 l
Faster Than Ever: A New Lightweight Private Set Intersection and Its Variants
7 o+ i7 {) z' @, Z& o; kGuowei Ling (Shanghai Jiaotong University)
( z2 F; B& o6 Q5 Z# Z3 W! Q
8 T- Q2 [# p8 s, q/ z【39】天津大学
4 J! S' p* B9 G7 z6 OFidelityGPT: Correcting Decompilation Distortions with Retrieval Augmented Generation
u( C% w5 @" M; MZhiping Zhou (Tianjin University)
2 ~4 l/ i3 h1 m r0 q, V6 \; @
* Z; n" [6 T+ l( E6 R" x) ^【40】信息工程大学8 u4 p* v( a+ w2 ?2 D3 r
FirmAgent: Leveraging Fuzzing to Assist LLM Agents with IoT Firmware Vulnerability Discovery
/ |7 [3 R# e, U# n" lJiangan Ji (Information Engineering University,Tsinghua University)& k9 U* R9 K$ E: \7 H, l& \7 p
6 n: e3 K- A( F! s1 E, z3 ?
【41】国防科技大学
* A) z' G! @( \2 C/ tFirmCross: Detecting Taint-style Vulnerabilities in Modern C-Lua Hybrid Web Services of Linux-based Firmware
8 h( R; e* ]* lRunhao Liu (National University of Defense Technology)% {! o m, q3 ]6 d1 Z
/ Q r; V% i5 d+ G% v【42】武汉大学# I- A; M6 i5 _7 r# u4 f
Formal Analysis of BLE Secure Connection Pairing and Revelation of the PE Confusion Attack
1 K# o' l, q( _7 g" RMin Shi (Key Laboratory of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Cyber Science and Engineering, Wuhan University)
( Z& ^" F4 P4 N, W1 A3 B" s) A& {" H
【43】北京邮电大学$ U; Y% b) A) o! ^% I
From Obfuscated to Obvious: A Comprehensive JavaScript Deobfuscation Tool for Security Analysis2 q* {3 ^3 I7 F, s$ y
Dongchao Zhou (Beijing University of Post and Telecommunication and QI-ANXIN Technology Research Institute)
5 Q% I, Z# d* v/ r8 L% `, k6 s& J/ Y7 _4 D1 e3 s
【44】华中科技大学
' Z, `, @) E2 ?Icarus: Achieving Performant Asynchronous BFT with Only Optimistic Paths7 Z* N/ L0 D0 } }7 I4 B% k9 h
Xiaohai Dai (Huazhong University of Science and Technology)( `: Z' u: J( e8 Y% {4 w* z2 Q
/ h' M0 B: {- y% i) x* P7 _ z0 ?【45】清华大学$ K% p( D/ J# l7 Q9 X) U& j( V8 \
Identifying Logical Vulnerabilities in QUIC Implementations
% n2 w; [' y0 T5 iKaihua Wang (Tsinghua University)
; X0 D( N1 N) r, q2 t+ \" O; R, v b/ x. T8 q
【46】武汉大学
* m& s) e# x, R M+ TInverTune: A Backdoor Defense Method for Multimodal Contrastive Learning via Backdoor-Adversarial Correlation Analysis
( X/ \+ c+ N6 l6 x4 c! V+ gMengyuan Sun (Wuhan University)' V# K9 \- ~" x7 {
|" g6 t: @' h$ e: ]8 b' u0 l2 G. ~! @【47】华中科技大学
3 K# R' ?. U z, {6 \) ]2 MIpotane: Balancing the Good and Bad Cases of Asynchronous BFT
* v. z* K: S, ^0 P" \) @) \1 YXiaohai Dai (Huazhong University of Science and Technology)
4 G, [" ] O; O* o' ?/ C X% S- F2 m9 a
【48】中山大学. |3 b3 Y0 d% v) N3 z& c) Q
IsolatOS: Detecting Double Fetch Bugs in COTS RTOS by Re-enabling Kernel Isolation
) x0 ?, X. q: \, n; K7 J0 FYingjie Cao (Sun Yat-sen University and The Hong Kong Polytechnic University)
3 F+ w" t& Q- c- o2 ]
( P1 Y! K' U- d# T) N【49】东南大学
6 e. Z/ g" Y1 o: s( |1 y: Y* ZJanus: Enabling Expressive and Efficient ACLs in High-speed RDMA Clouds7 @7 L$ n+ y8 v* l: H; c1 ]
Ziteng Chen (Southeast University)% ]: {2 g+ @0 |2 ]$ d9 Z! z
1 d& q0 \, p( U+ P【50】西安电子科技大学* F' v4 ?4 D: i1 u W
Kangaroo: A Private and Amortized Inference Framework over WAN for Large-Scale Decision Tree Evaluation
2 R- O( P! g7 n+ GWei Xu (Xidian University)' W8 O' u* Y5 T8 l7 t. o$ z
5 I1 p, `: G5 s! f3 v【51】北京大学
4 y; \% x- l4 q' EKnowHow: Automatically Applying High-Level CTI Knowledge for Interpretable and Accurate Provenance Analysis
; L* o* c- L$ g# {) V5 W/ l/ h4 o. K8 xYuhan Meng (Key Laboratory of High-Confidence Software Technologies (MOE), School of Computer Science, Peking University)! H5 P. ~( @, ?6 d/ s5 P* P# L+ d
7 d' R2 Y- h# T- @【52】北京大学
. f. Q4 }8 }5 x: [; C7 HLatticeBox: A Hardware-Software Co-Designed Framework for Scalable and Low-Latency Compartmentalization8 {2 N) R7 U+ y/ V9 ~8 S& y- q
ZhanPeng Liu (Peking University)
9 x* c! ^" `* {: v! M0 i
! z$ ^1 f1 u0 {$ B0 J0 b: t7 k【53】天津大学) g4 u7 f; }0 Q! o) d9 h# N
Limitless Scalability: A High-Throughput and Replica-Agnostic BFT Consensus
9 x0 F6 T. }: G6 h5 s# i4 sChenyu Zhang (Tianjin University)
9 Z2 _0 @( @4 n4 h# E2 k
, p! y- {2 b, b) A【54】复旦大学: G4 c. e! R( Q8 s% X
LinkGuard: A Lightweight State-Aware Runtime Guard Against Link Following Attacks in Windows File System3 f. c/ V! a6 s8 b
Bocheng Xiang (Fudan University): t. I1 o- u3 M0 Z* r
8 x2 S1 Y1 u! h( W7 U$ ^4 t; z
【55】华中科技大学
. Z0 X3 V0 l% }/ ~Losing the Beat: Understanding and Mitigating Desynchronization Risks in Container Isolation
* r7 o4 F' s: Z4 {* FZhi Li (Huazhong University of Science and Technology). `$ G. ?& L- P: M& m: u6 L1 A
7 ~7 e* H3 W1 w) `* r9 Q3 ~4 H" r1 ^$ q
【56】山东大学: @+ z6 B) q5 s; Y9 `3 J
MinBucket MPSI: Breaking the Max-Size Bottleneck in Multi-Party Private Set Intersection3 M' @7 s: \6 U% V) S
Binbin Tu (School of Cyber Science and Technology, Shandong University; State Key Laboratory of Cryptography and Digital Economy Security, Shandong University); S& V$ r# C0 F& S5 Z, [. g
" a F( c4 p5 B/ I$ k; O) S
【57】清华大学
( S7 U' D: |7 l8 jNetRadar: Enabling Robust Carpet Bombing DDoS Detection5 N& b7 ~4 Q2 e
Junchen Pan (Tsinghua University)
& c4 {) ^3 J' b7 W/ |; E7 u' i, m' x, {, }$ b" c4 G5 i L
【58】清华大学$ C; ]; e7 \7 J9 s( O" D, v5 j
OCCUPY+PROBE: Cross-Privilege Branch Target Buffer Side-Channel Attacks at Instruction Granularity3 ~$ M& O8 e7 F/ R0 h- e
Kaiyuan Rong (Tsinghua University, Zhongguancun Laboratory)& t3 c! {$ x4 v0 o
7 b' t1 A( z& h* L# o; p, o" I【59】东南大学
/ c0 M: V, ^/ f9 l& I1 iOdysseus: Jailbreaking Commercial Multimodal LLM-integrated Systems via Dual Steganography
* b6 ?+ o& p. i t* f+ iSongze Li (Southeast University): B% p V5 @- a; ~; A# n! |0 u
T' d2 V4 {0 l
【60】复旦大学$ K4 R" G% i8 ^
One Email, Many Faces: A Deep Dive into Identity Confusion in Email Aliases
5 ]4 _4 j! n, c& J1 lMengying Wu (Fudan University, China)
6 a/ j- }' Z8 v
4 o; i" R D& [) U) D, j【61】青岛大学2 ]% W2 z0 ?! g( T
PACS: Privacy-Preserving Attribute-Driven Community Search over Attributed Graphs: W: B7 { c& F$ `# H- V+ L: U
Fangyuan Sun (Qingdao University)/ v; C# w0 L- Y1 A2 U0 L6 d1 ~
, R- U9 ?- b0 H6 S$ k7 r S) z【62】清华大学6 O' E5 q# i9 [5 n
Pando: Extremely Scalable BFT Based on Committee Sampling9 _* ]2 {# I7 g6 v
Xin Wang (Tsinghua University and State Key Laboratory of Cryptography and Digital Economy Security)! \# d) X- M' k
( D( X6 q- C7 \4 k! a, N【63】浙江大学
7 v1 y, Y6 {% ?Peering Inside the Black-Box: Long-Range and Scalable Model Architecture Snooping via GPU Electromagnetic Side-Channel
" q) h+ M! ]1 O/ A; U* S# o2 S6 b- MRui Xiao (Zhejiang University)
( P6 P$ Q* F8 y6 c. C l. w
1 a0 Y+ r3 K# t【64】浙江大学6 ^( t# z1 m$ k$ E
PhantomMap: GPU-Assisted Kernel Exploitation F: ^6 \# w2 S
Jiayi Hu (Zhejiang University)% o0 L+ }1 S( T5 |" M
% b( z* @( j: L( z【65】浙江大学
. K7 A! l2 r7 M9 @- [PhyFuzz: Detecting Sensor Vulnerabilities with Physical Signal Fuzzing
5 t% p2 N% q1 @7 T2 g5 {Zhicong Zheng (Zhejiang University)
* ]3 I0 d9 }% B3 O* `* J3 {, m( s/ g' c
【66】国防科技大学* }( n6 h s, a8 _1 X& x$ O
PortRush: Detect Write Port Contention Side-Channel Vulnerabilities via Hardware Fuzzing. C7 B, V8 o; ]5 B1 O1 `7 E
Peihong Lin (National University of Defense Technology)' h1 I4 d A. f* w3 m
# E3 j$ r5 C' M, v% a: @
【67】中国科学技术大学
) F5 C& t9 L) }5 o& Q; j9 n; wPractical Traceable Over-Threshold Multi-Party Private Set Intersection
9 {4 }) n6 G. E1 k- x& H. NLe Yang (School of Cyber Science and Technology, University of Science and Technology of China)
& e# m5 d* K7 M4 h0 _3 u7 S( `4 K `' H. M
【68】浙江大学1 |, B$ f \3 w# I
PrivATE: Differentially Private Average Treatment Effect Estimation for Observational Data
0 j$ Q( K+ B; h. HQuan Yuan (Zhejiang University and University of Virginia)
: g, o. o, B3 M4 C3 W/ d
; k- ]/ Y4 A. L' {【69】华中科技大学
$ l3 A2 O$ f5 N0 k7 IPrompt Injection Attack to Tool Selection in LLM Agents
0 h9 E7 m0 I/ m- i- yJiawen Shi (Huazhong University of Science and Technology)' c+ Z7 h0 f7 y2 {& w
! h+ L* v& ?6 d4 b3 ~' [7 U【70】山东大学; }* I q" j8 S6 C% L0 o
ProtocolGuard: Detecting Protocol Non-compliance Bugs via LLM-guided Static Analysis and Dynamic Verification
7 d; z8 H. o" g0 t; LXiangpu Song (School of Cyber Science and Technology, Shandong University)0 H1 n9 ?6 v7 j% m0 D8 w2 w0 \& l
/ p% v' G7 v/ |3 |【71】浙江大学7 H1 j# p! D6 U' G; U& K9 j5 T
Rounding-Guided Backdoor Injection in Deep Learning Model Quantization3 G/ K& U6 ?3 K! @; I: F" w
Xiangxiang Chen (Zhejiang University): N Q* L, g' ?4 E- j
+ P$ {$ l- H0 c! G u0 o3 L3 R9 e
【72】清华大学
' z) Q' }4 ]; }# r* zRoundRole: Unlocking the Efficiency of Multi-party Computation with Bandwidth-aware Execution
6 N, Z3 ]9 t* wXiaoyu Fan (Tsinghua University and Shanghai Qi Zhi Institute)( Y3 s/ Z+ I/ I. [
5 b- p2 |8 N$ _ @- U. b
【73】浙江大学% K: w$ u) ^% o
Shadow in the Cache: Unveiling and Mitigating Privacy Risks of KV-cache in LLM Inference( A# E7 ?. |' i0 Q( [- B% x
Zhifan Luo (State Key Laboratory of Blockchain and Data Security, Zhejiang University)
0 q! A" s# t1 O/ J
+ h! s5 A4 G$ e; p' i8 G/ J5 i【74】清华大学/ A4 \' E8 e% v1 y0 {! t# `
Should I Trust You? Rethinking the Principle of Zone-Based Isolation DNS Bailiwick Checking- d, A" L/ N6 e2 v3 u
Yuxiao Wu (Institute for Network Sciences and Cyberspace, BNRist, Tsinghua University)
6 f; J$ H- g) u( V: E' [0 O; a, t! P& C" D e1 S' o
【75】清华大学 / C& a( J8 X( M
SIPConfusion: Exploiting SIP Semantic Ambiguities for Caller ID and SMS Spoofing3 E0 c% j. T2 \% S4 k
Qi Wang (Tsinghua University)
2 A, W7 E3 N0 G
1 O4 c' C, y2 g# h【76】清华大学
* d$ @( B; `6 K7 l0 gSmall Cell, Big Risk: A Security Assessment of 4G LTE Femtocells in the Wild
% M8 s- w2 {! I( N# o( eYaru Yang (Tsinghua University)
% B5 Y4 N- W0 u, }8 {+ l9 G% j2 o0 E+ j5 T
【77】华中科技大学
4 m/ i" |: K' @+ K2 C. SSoK: Take a Deep Step into Linux Kernel Hardening Effectiveness from the Offensive-Defensive Perspective
) L- I( r' z$ ]! r0 F! hYinhao Hu (Huazhong University of Science and Technology & Zhongguancun Laboratory)
0 x5 R$ F- Z6 G2 V. K( P8 X3 p5 v0 _7 U% n9 \( _7 A5 |
【78】浙江大学
- E e5 w1 X WSoK: Understanding the Fundamentals and Implications of Sensor Out-of-band Vulnerabilities9 s3 ~9 G3 S5 z* w- Y& C# m
Shilin Xiao (Zhejiang University)! u! ^% i" {1 U2 A
) Q. Z, Z7 t; X$ ?1 T9 F4 J- {
【79】南开大学
$ K5 x) j7 d2 `) r. j. I# h, ySuccess Rates Doubled with Only One Character: Mask Password Guessing' D. |2 a( E1 n* f
Yunkai Zou (Nankai University)
x. E6 _* H T
. G& ^( e# e4 [& v+ o【80】南开大学
$ L8 Y3 I% k2 x( T9 t9 ^7 _Targeted Password Guessing Using k-Nearest Neighbors; X3 b0 t/ i$ j( y. o) ]# [, o Z
Zhen Li (Nankai University)7 \9 P% J' |( h3 u
% H; k0 @ O1 \; E# A【81】西安电子科技大学" x1 i! ?6 U1 {3 r* n
The Dark Side of Flexibility: Detecting Risky Permission Chaining Attacks in Serverless Applications
1 D2 Z- ]. n5 C8 W m/ y& [( y5 tXunqi Liu (State Key Laboratory of Integrated Services Networks, School of Cyber Engineering, Xidian University)
# u$ \9 J/ E( k, N g8 y
+ p$ | {$ ^: \4 @/ w) M【82】上海交通大学
( b& }0 J7 B; z7 U7 E, xThinkTrap: Denial-of-Service Attacks against Black-box LLM Services via Infinite Thinking
/ t8 l' b+ `) t" Q- z" X4 g, eYunzhe Li (Shanghai Jiao Tong University)
% a1 v8 y. c# {
% F J! o& P0 C+ g0 Y& M7 L f【83】东南大学8 Z# y4 f2 B6 \; K2 O' U
Time will Tell: Large-scale De-anonymization of Hidden I2P Services via Live Behavior Alignment
; h2 d y/ |1 y; kHongze Wang (Southeast University)$ j. W \! q$ Z) @) D: P
, h8 H; \- t8 ?" `1 {) W, J! |
【84】江苏大学) e! b# k7 B2 G: _3 i
TIPSO-GAN: Malicious Network Traffic Detection Using a Novel Optimized Generative Adversarial Network
S# i5 c6 x/ m" r tErnest Akpaku (School of Computer Science and Communication Engineering, Jiangsu University)
# S0 y6 T! r) s5 \% D% E4 @$ f- ` O
【85】清华大学4 t7 z, N/ L+ d, v
Token Time Bomb: Evaluating JWT Implementations for Vulnerability Discovery
* _+ T+ y* [2 H8 dJingcheng Yang (Tsinghua University) Q+ I; ?& k: d) _( M' A, w$ p
( z' O6 j" r* D P3 Y( s【86】东南大学6 r& D6 P/ h p( U
UIEE: Secure and Efficient User-space Isolated Execution Environment for Embedded TEE Systems1 k+ A$ C# J; ^9 _
Huaiyu Yan (Southeast University)
+ r; y) p/ D( w) e6 d D! X9 D: C; h d+ ?: I
【87】清华大学
0 U! e- m$ C: ]5 D+ z2 lUnderstanding the Status and Strategies of the Code Signing Abuse Ecosystem
/ H% M) @9 Y/ |# j6 O3 Y$ oHanqing Zhao (Tsinghua University & QI-ANXIN Technology Research Institute): g; k2 R; A7 [
/ Q; ?# N% n2 m8 @0 Z4 y9 b9 P; M【88】北京交通大学
0 h2 y2 y D' n. p! F. mValidity Is Not Enough: Uncovering the Security Pitfall in Chainlink’s Off-Chain Reporting Protocol& z+ Y7 T$ @+ [# y, M, D
Di Zhai (Beijing Jiaotong University)
* n; |& i2 A7 E( `7 ]1 H8 G4 w% a. o5 G/ }$ P+ G3 [( ]
【89】深圳大学
* }2 a7 Z6 h1 eVeriLoRA: Fine-Tuning Large Language Models with Verifiable Security via Zero-Knowledge Proofs
9 ~. t, r0 Z! @+ p0 nGuofu Liao (Shenzhen University)1 W. C! d5 Y- O
$ A6 q+ W! N" u+ U5 g, O
【90】山东大学: p8 o2 w3 e. A2 w
VDORAM: Towards a Random Access Machine with Both Public Verifiability and Distributed Obliviousness
% l% Y4 C2 Q- p3 x: F" c) A/ _+ F+ ?Huayi Qi (School of Computer Science and Technology, Shandong University, Qingdao$ i# e4 N/ V7 `8 T
: j0 c# v5 o9 v4 V【91】浙江大学" o4 l# m9 m1 G/ J: \
VICTOR: Dataset Copyright Auditing in Video Recognition Systems
/ A: I9 s4 B& I7 J7 i- S5 J8 ] N# sQuan Yuan (Zhejiang University)8 l+ W* H S1 Y* F- g5 A. D8 a
4 M' a7 @, N) z F1 r$ i* F% y/ o! I
【92】华中科技大学
0 F* S U$ Q! H4 ~0 K8 b$ [+ W6 B* ^: bVulSCA: A Community-Level SCA Approach for Accurate C/C++ Supply Chain Vulnerability Analysis# j3 {1 |- C6 x: u
Yutao Hu (Huazhong University of Science and Technology)
+ R6 G9 y! _7 A7 _6 b
$ L" I$ l7 _! N' d5 `6 s3 D' F【93】复旦大学" }6 _( K3 M Y- O U
Was My Data Used for Training? Membership Inference in Open-Source LLMs via Neural Activations
1 x8 ~8 Z/ @* g% w' R, tXue Tan (Institute of Big Data, Fudan University, Shanghai, China and College of Computer Science and Artificial Intelligence, Fudan University, Shanghai, China)- G% J8 w% L$ h7 v S/ b
- ~# o& C% N( _【94】同济大学( L0 t$ u6 O% x5 U2 c/ J
WBSLT: A Framework for White-Box Encryption Based on Substitution-Linear Transformation Ciphers: X! l; n3 }: ^
Yang Shi (Tongji University)0 y7 y+ ?/ O- o' {: U( }, u5 [
9 c) ~: T) C; q9 O. h【95】南方科技大学% C% i ?* g& ?7 d7 A4 m" o3 c
When Cache Poisoning Meets LLM Systems: Semantic Cache Poisoning and Its Countermeasures
. [# }( `! I' g ^4 i% w, Y8 sGuanlong Wu (SUSTech)$ `( @/ p- @5 X8 b
2 u9 p$ q+ ^4 c% e, ]【96】华中科技大学. B$ f. P9 j' F) F- U: r9 {8 v
WhiteCloak: How to Hold Anonymous Malicious Clients Accountable in Secure Aggregation?1 V* m, ^+ s! m2 n/ A: }1 t( y6 {
Zhi Lu (Huazhong university of Science and Technology)
+ m* H, x( T) v* [$ Y4 g: B5 n% t9 j( C8 t3 A/ I; A
【97】华东师范大学' p) y6 x) n7 p0 c
ZKSL: Verifiable and Efficient Split Federated Learning via Asynchronous Zero-Knowledge Proofs) `1 y/ _3 ^ p- r- B6 o0 ?5 z5 R
Yixiao Zheng (East China Normal University) |
|