Search results
-
Atkscopes: Multiresolution Adversarial Perturbation as a Unified Attack on Perceptual Hashing and Beyond
images, on the server side. In this paper, we systematically reveal a range of adversarial threats to such ...admin - October 14, 2025 - 2:49 pm
-
Stack Overflow Meets Replication: Security Research Amid Evolving Code Snippets
recommendations for future studies. We systematically reviewed papers published between 2005–2023 to identify key ... dataset to demonstrate this risk. Our findings show that four papers produced significantly different ...admin - October 30, 2025 - 3:08 pm
-
The Cost of Performance: Breaking ThreadX with Kernel Object Masquerading Attacks
Xinhui Shao and Zhen Ling, Southeast University; Yue Zhang, Drexel University; Huaiyu Yan and Yumeng Wei, Southeast University; Lan Luo and Zixia Liu, Anhui University of Technology; Junzhou Luo, Southeast University; Xinwen Fu, University of Massachusett ...admin - October 30, 2025 - 2:42 pm
-
Encarsia: Evaluating CPU Fuzzers via Automatic Bug Injection
Matej Bölcskei, Flavien Solt, Katharina Ceesay-Seitz, and Kaveh Razavi, ETH Zurich Distinguished Artifact Award Winner Hardware fuzzing has recently gained momentum with many discovered bugs in open-source RISC-V CPU designs. Comparing the effectiveness o ...admin - October 30, 2025 - 3:02 pm
-
High Stakes, Low Certainty: Evaluating the Efficacy of High-Level Indicators of Compromise in Ransomware Attribution
Max van der Horst, Delft University of Technology; Ricky Kho, Sogeti; Olga Gadyatskaya, Leiden University; Michel Mollema, Northwave Cybersecurity; Michel Van Eeten and Yury Zhauniarovich, Delft University of Technology As ransomware attacks grow in frequ ...admin - October 13, 2025 - 7:06 pm
-
Oblivious Digital Tokens
Mihael Liskij, ETH Zurich; Xuhua Ding, Singapore Management University; Gene Tsudik, UC Irvine; David Basin, ETH Zurich A computing device typically identifies itself by exhibiting unique measurable behavior or by proving its knowledge of a secret. In bot ...admin - October 14, 2025 - 3:15 pm
-
V-ORAM: A Versatile and Adaptive ORAM Framework with Service Transformation for Dynamic Workloads
efficient and cost-effective manner. To bridge the gap, in this paper, we propose a versatile ORAM framework ...admin - October 30, 2025 - 2:46 pm
-
Double-Edged Shield: On the Fingerprintability of Customized Ad Blockers
Saiid El Hajj Chehade, EPFL; Ben Stock, CISPA Helmholtz Center for Information Security; Carmela Troncoso, EPFL and Max-Planck Institute for Security and Privacy (MPI-SP) Web tracking is expanding to cookie-less techniques, like browser fingerprinting, to ...admin - October 30, 2025 - 2:22 pm
-
Evaluating the Effectiveness and Robustness of Visual Similarity-based Phishing Detection Models
but their effectiveness and robustness in real-world scenarios have been underexplored. In this paper ...admin - October 13, 2025 - 6:54 pm
-
Flexway O-Sort: Enclave-Friendly and Optimal Oblivious Sorting
optimal algorithms suffer from large constants. In this paper, we construct a new oblivious sorting ...admin - October 14, 2025 - 3:11 pm
-
Dumbo-MPC: Efficient Fully Asynchronous MPC with Optimal Resilience
Yuan Su, Xi'an Jiaotong University; Yuan Lu, Institute of Software Chinese Academy of Sciences; Jiliang Li, Xi'an Jiaotong University; Yuyi Wang, CRRC Zhuzhou Institute; Chengyi Dong, Xi'an Jiaotong University; Qiang Tang, The University of ...admin - October 30, 2025 - 2:53 pm
-
CAMP in the Odyssey: Provably Robust Reinforcement Learning with Certified Radius Maximization
Derui Wang, Kristen Moore, Diksha Goel, and Minjune Kim, CSIRO's Data61 and Cyber Security Cooperative Research Centre; Gang Li, Yang Li, and Robin Doss, Deakin University; Minhui Xue, CSIRO's Data61 and Cyber Security Cooperative Research Centr ...admin - October 30, 2025 - 2:42 pm
-
Suda: An Efficient and Secure Unbalanced Data Alignment Framework for Vertical Privacy-Preserving Machine Learning
should be optimized for efficiency in VPPML scenarios. In this paper, we propose Suda, an efficient and ...admin - October 14, 2025 - 3:13 pm
-
GeCos Replacing Experts: Generalizable and Comprehensible Industrial Intrusion Detection
Konrad Wolsing, Eric Wagner, and Luisa Lux, Fraunhofer FKIE and RWTH Aachen University; Klaus Wehrle, RWTH Aachen University; Martin Henze, RWTH Aachen University and Fraunhofer FKIE Protecting industrial control systems against cyberattacks is crucial to ...admin - October 14, 2025 - 3:01 pm
-
Attacker Control and Bug Prioritization
Guilhem Lacombe and Sébastien Bardin, Université Paris-Saclay, CEA, List, France As bug-finding methods improve, bug-fixing capabilities are exceeded, resulting in an accumulation of potential vulnerabilities. There is thus a need for efficient and precis ...admin - October 13, 2025 - 7:03 pm
-
H2O2RAM: A High-Performance Hierarchical Doubly Oblivious RAM
Leqian Zheng, City University of Hong Kong; Zheng Zhang, ByteDance Inc.; Wentao Dong, City University of Hong Kong; Yao Zhang and Ye Wu, ByteDance Inc.; Cong Wang, City University of Hong Kong The combination of Oblivious RAM (ORAM) with Trusted Execution ...admin - October 30, 2025 - 2:48 pm
-
A Formal Analysis of Apple's iMessage PQ3 Protocol
Felix Linker, Ralf Sasse, and David Basin, ETH Zurich We present the formal verification of Apple's iMessage PQ3, a highly performant, device-to-device messaging protocol offering strong security guarantees even against an adversary with quantum comp ...admin - October 30, 2025 - 3:26 pm
-
MAESTRO: Multi-Party AES Using Lookup Tables
Hiraku Morita, Aarhus University and University of Copenhagen; Erik Pohle, COSIC, KU Leuven; Kunihiko Sadakane, The University of Tokyo; Peter Scholl, Aarhus University; Kazunari Tozawa, The University of Tokyo; Daniel Tschudi, Concordium and Eastern Swit ...admin - October 13, 2025 - 4:50 pm
-
X.509DoS: Exploiting and Detecting Denial-of-Service Vulnerabilities in Cryptographic Libraries using Crafted X.509 Certificates
Bing Shi, Wenchao Li, Yuchen Wang, and Xiaolong Bai, Alibaba Group; Luyi Xing, Indiana University Bloomington Existing studies predominantly focus on cryptographic vulnerabilities affecting confidentiality or integrity, with limited attention to those imp ...admin - October 30, 2025 - 2:41 pm
-
Lost in the Mists of Time: Expirations in DNS Footprints of Mobile Apps
Johnny So, Stony Brook University; Iskander Sanchez-Rola, Norton Research Group; Nick Nikiforakis, Stony Brook University Compared to the traditional desktop setting where web applications (apps) are live by nature, mobile apps are similar to binary progr ...admin - October 13, 2025 - 6:55 pm
-
CoVault: Secure, Scalable Analytics of Personal Data
Roberta De Viti and Isaac Sheff, Max Planck Institute for Software Systems (MPI-SWS), Saarland Informatics Campus; Noemi Glaeser, Max Planck Institute for Security and Privacy (MPI-SP) and University of Maryland; Baltasar Dinis, Instituto Superior Técnico ...admin - October 13, 2025 - 4:37 pm
-
Sound of Interference: Electromagnetic Eavesdropping Attack on Digital Microphones Using Pulse Density Modulation
Arifu Onishi, The University of Electro-Communications; S. Hrushikesh Bhupathiraju, Rishikesh Bhatt, and Sara Rampazzi, University of Florida; Takeshi Sugawara, The University of Electro-Communications We introduce a novel electromagnetic (EM) side-channe ...admin - October 13, 2025 - 6:59 pm
-
From Purity to Peril: Backdooring Merged Models From "Harmless" Benign Components
Lijin Wang, The Hong Kong University of Science and Technology (Guangzhou); Jingjing Wang, Zhejiang University; Tianshuo Cong, Tsinghua University; Xinlei He, The Hong Kong University of Science and Technology (Guangzhou); Zhan Qin, Zhejiang University; X ...admin - October 30, 2025 - 2:00 pm
-
Qelect: Lattice-based Single Secret Leader Election Made Practical
Yunhao Wang and Fan Zhang, Yale University In a single secret leader election (SSLE) protocol, all parties collectively and obliviously elect one leader. No one else should learn its identity unless it reveals itself as the leader. The problem is first fo ...admin - October 14, 2025 - 3:22 pm
-
Assuring Certified Database Utility in Privacy-Preserving Database Fingerprinting
mechanism to verify the degree of modifications. This paper, for the first time, addresses the research gap ...admin - October 14, 2025 - 3:13 pm