👤关于我
段海新,清华大学网络科学与网络空间研究院(INSC)教授、博士生导师, 2000 年于清华大学获计算机科学博士学位,2011–2013 年赴 UC Berkeley 及 ICSI 担任访问学者/资深科学家。
研究方向聚焦于互联网基础设施安全,涵盖 DNS 安全与漏洞分析、Web 安全与 Web PKI、 HTTP/HTTPS 及 CDN 安全、网络测量与入侵检测等领域。 在 IEEE S&P、USENIX Security、ACM CCS、NDSS 等国际顶级安全会议发表论文逾 100 篇。
曾获 ACM CCS 最佳论文奖(2020)、IEEE/IFIP DSN 最佳论文奖(2020)、 NDSS 杰出论文奖(2016)及"中国网络空间安全杰出人才"称号。 担任国务院学位委员会第八届学科评议组成员(2020 至今), InForSec、XCTF、DataCon 联合创始人。
研究方向
DNS 安全与漏洞分析
Web 安全 & Web PKI
HTTP/HTTPS & CDN 安全
网络测量
入侵检测与地下经济检测
电子邮件安全
物联网安全
协议安全分析
AI 系统安全
💼工作 & 教育经历
工作经历
清华大学 · 网络科学与网络空间研究院(INSC)
主持 NISL 实验室,负责本科及研究生教学工作,
主持多项国家级科研项目,在顶级安全会议持续发表研究成果。
ICSI(国际计算机科学研究所),Berkeley, USA
加州大学伯克利分校(UC Berkeley),USA
清华大学 · 网络工程研究中心
清华大学 · 网络工程研究中心
教育背景
清华大学 · 计算机科学与技术系
专业方向:计算机系统结构
哈尔滨工业大学 · 计算机科学与技术系
专业方向:计算机系统结构
哈尔滨工业大学 · 计算机科学与技术系
荣誉与获奖
"My ZIP isn't your ZIP: Identifying and Exploiting Semantic Gaps Between ZIP Parsers"
官方链接
"Silence is not Golden: Disrupting the Load Balancing of Authoritative DNS Servers"
官方链接
"HDiff: Hiding Differences to Identify Semantic Gaps in Vulnerability Signatures"
官方链接
"DNS cache poisoning attack reloaded: Revolutions with side channels"
官方链接
"CDN Backfired: Amplification Attacks Based on HTTP Range Requests"
官方链接
"An End-to-End, Large-Scale Measurement of DNS-over-Encryption: How Far Have We Come?"
官方链接
"Forwarding-Loop Attacks in Content Delivery Networks"
官方链接
由国家互联网信息办公室颁发,首届获奖者
官方链接
📚主讲课程
本科
网络安全工程与实践
面向计算机系本科生的网络安全入门课程,覆盖密码学基础、
网络协议安全、Web 安全、入侵检测等核心主题,含实验环节。
2003 年开课至今,为清华主干课程。
研究生
网络协议安全分析
面向研究生的前沿课程,系统讲授 DNS、HTTP、TLS、BGP 等
互联网基础协议的安全设计与实际漏洞,结合课题组最新研究成果。
研究生
网络与系统安全
研究生专业课,涵盖操作系统安全、网络攻防技术、
漏洞挖掘与利用、安全测量方法论等内容。
📄发表论文
共 192 篇(含会议论文、期刊论文)。数据来源: DBLP · Google Scholar
LLMThief: Evaluating Configuration Leaking Risks in Commercial LLM App Stores
IEEE Symposium on Security and Privacy (S&P) 2026
Identifying Logical Vulnerabilities in QUIC Implementations
Network and Distributed System Security Symposium (NDSS) 2026
SIPConfusion: Exploiting SIP Semantic Ambiguities for Caller ID and SMS Spoofing
Network and Distributed System Security Symposium (NDSS) 2026
Token Time Bomb: Evaluating JWT Implementations for Vulnerability Discovery
Network and Distributed System Security Symposium (NDSS) 2026
Small Cell, Big Risk: A Security Assessment of 4G LTE Femtocells in the Wild
Network and Distributed System Security Symposium (NDSS) 2026
Understanding the Status and Strategies of the Code Signing Abuse Ecosystem
Network and Distributed System Security Symposium (NDSS) 2026
Characterizing Iran's Phased National Internet Shutdown in 2025: A Progressive and Distributed Action
The Web Conference (WWW) 2026
Explore-on-Graph: Incentivizing Autonomous Exploration of Large Language Models on Knowledge Graphs with Path-refined Reward Modeling
arXiv preprint (CoRR) 2026
RebirthDay Attack: Reviving DNS Cache Poisoning with the Birthday Paradox
ACM Conference on Computer and Communications Security (CCS) 2025
Exploring and Analyzing Cross Layer DoS Attack Against UDP-based Services on Linux
ACM Conference on Computer and Communications Security (CCS) 2025
Decoding DNS Centralization: Measuring and Identifying NS Domains Across Hosting Providers
IEEE/IFIP International Conference on Dependable Systems and Networks (DSN) 2025
Email Cloaking: Deceiving Users and Spam Email Detectors with Invisible HTML Settings
European Symposium on Research in Computer Security (ESORICS) 2025
The Danger of Packet Length Leakage: Off-path TCP/IP Hijacking Attacks Against Wireless and Mobile Networks
IEEE European Symposium on Security and Privacy (EuroS&P) 2025
Exposing the Hidden Layer: Software Repositories in the Service of Seo Manipulation
IEEE/ACM International Conference on Software Engineering (ICSE) 2025
Dive into the Cloud: Unveiling the (Ab)Usage of Serverless Cloud Function in the Wild
ACM Internet Measurement Conference (IMC) 2025
Chaos in the Chain: Evaluate Deployment and Construction Compliance of Web PKI Certificate Chain
ACM Internet Measurement Conference (IMC) 2025
Understanding and Characterizing Intermediate Paths of Email Delivery: The Hidden Dependencies
ACM Internet Measurement Conference (IMC) 2025
Analyzing Compliance and Complications of Integrating Internationalized X.509 Certificates
ACM Internet Measurement Conference (IMC) 2025
HADES Attack: Understanding and Evaluating Manipulation Risks of Email Blocklists
Network and Distributed System Security Symposium (NDSS) 2025
Cross-Origin Web Attacks via HTTP/2 Server Push and Signed HTTP Exchange
Network and Distributed System Security Symposium (NDSS) 2025
Automatic Insecurity: Exploring Email Auto-configuration in the Wild
Network and Distributed System Security Symposium (NDSS) 2025
Revealing the Black Box of Device Search Engine: Scanning Assets, Strategies, and Ethical Consideration
Network and Distributed System Security Symposium (NDSS) 2025
Hey, Your Secrets Leaked! Detecting and Characterizing Secret Leakage in the Wild
IEEE Symposium on Security and Privacy (S&P) 2025
Invade the Walled Garden: Evaluating GTP Security in Cellular Networks
IEEE Symposium on Security and Privacy (S&P) 2025
Detection and Mitigation of Unknown Threats in IPv6 Networks via Layered Data Adaptation
IEEE International Conference on Trust, Security and Privacy in Computing (TrustCom) 2025
My ZIP isn't your ZIP: Identifying and Exploiting Semantic Gaps Between ZIP Parsers
USENIX Security Symposium 2025
Email Spoofing with SMTP Smuggling: How the Shared Email Infrastructures Magnify this Vulnerability
USENIX Security Symposium 2025
The Silent Danger in HTTP: Identifying HTTP Desync Vulnerabilities with Gray-box Testing
USENIX Security Symposium 2025
Beyond Exploit Scanning: A Functional Change-Driven Approach to Remote Software Version Identification
USENIX Security Symposium 2025
NOKEScam: Understanding and Rectifying Non-Sense Keywords Spear Scam in Search Engines
USENIX Security Symposium 2025
Misty Registry: An Empirical Study of Flawed Domain Registry Operation
USENIX Security Symposium 2025
You Can't Eat Your Cake and Have It Too: The Performance Degradation of LLMs with Jailbreak Defense
The Web Conference (WWW) 2025
Dr. Docker: A Large-Scale Security Measurement of Docker Image Ecosystem
The Web Conference (WWW) 2025
You Can't Eat Your Cake and Have It Too: The Performance Degradation of LLMs with Jailbreak Defense
arXiv preprint (CoRR) 2025
Underground Application Collection Method Based on Spiking Traffic Analysis
International Journal of Software and Informatics 2024
Investigating Deployment Issues of DNS Root Server Instances From a China-Wide View
IEEE Transactions on Dependable and Secure Computing 2024
Dissecting Open Edge Computing Platforms: Ecosystem, Usage, and Security Risks
Annual Computer Security Applications Conference (ACSAC) 2024
Internet's Invisible Enemy: Detecting and Measuring Web Cache Poisoning in the Wild
ACM Conference on Computer and Communications Security (CCS) 2024
Inbox Invasion: Exploiting MIME Ambiguities to Evade Email Attachment Detectors
ACM Conference on Computer and Communications Security (CCS) 2024
Toward Understanding the Security of Plugins in Continuous Integration Services
ACM Conference on Computer and Communications Security (CCS) 2024
MiniCAT: Understanding and Detecting Cross-Page Request Forgery Vulnerabilities in Mini-Programs
ACM Conference on Computer and Communications Security (CCS) 2024
PowerPeeler: A Precise and General Dynamic Deobfuscation Method for PowerShell Scripts
ACM Conference on Computer and Communications Security (CCS) 2024
ChatScam: Unveiling the Rising Impact of ChatGPT on Domain Name Abuse
IEEE/IFIP International Conference on Dependable Systems and Networks (DSN) 2024
Yesterday Once More: Global Measurement of Internet Traffic Shadowing Behaviors
ACM Internet Measurement Conference (IMC) 2024
Bounce in the Wild: A Deep Dive into Email Delivery Failures from a Large Email Service Provider
ACM Internet Measurement Conference (IMC) 2024
Understanding the Implementation and Security Implications of Protective DNS Services
Network and Distributed System Security Symposium (NDSS) 2024
BreakSPF: How Shared Infrastructures Magnify SPF Vulnerabilities Across the Internet
Network and Distributed System Security Symposium (NDSS) 2024
ReqsMiner: Automated Discovery of CDN Forwarding Request Inconsistencies and DoS Attacks with Grammar-based Fuzzing
Network and Distributed System Security Symposium (NDSS) 2024
CrypTody: Cryptographic Misuse Analysis of IoT Firmware via Data-flow Reasoning
International Symposium on Research in Attacks, Intrusions and Defenses (RAID) 2024
Break the Wall from Bottom: Automated Discovery of Protocol-Level Evasion Vulnerabilities in Web Application Firewalls
IEEE Symposium on Security and Privacy (S&P) 2024
Where URLs Become Weapons: Automated Discovery of SSRF Vulnerabilities in Web Applications
IEEE Symposium on Security and Privacy (S&P) 2024
More Haste, Less Speed: Cache Related Security Threats in Continuous Integration Services
IEEE Symposium on Security and Privacy (S&P) 2024
TuDoor Attack: Systematically Exploring and Exploiting Logic Vulnerabilities in DNS Response Pre-processing with Malformed Packets
IEEE Symposium on Security and Privacy (S&P) 2024
DNSBomb: A New Practical-and-Powerful Pulsing DoS Attack Exploiting DNS Queries-and-Responses
IEEE Symposium on Security and Privacy (S&P) 2024
Tickets or Privacy? Understand the Ecosystem of Chinese Ticket Grabbing Apps
USENIX Security Symposium 2024
ResolverFuzz: Automated Discovery of DNS Resolver Vulnerabilities with Query-Response Fuzzing
USENIX Security Symposium 2024
Into the Dark: Unveiling Internal Site Search Abused for Black Hat SEO
USENIX Security Symposium 2024
Cross the Zone: Toward a Covert Domain Hijacking via Shared DNS Infrastructure
USENIX Security Symposium 2024
Uncovering Security Vulnerabilities in Real-world Implementation and Deployment of 5G Messaging Services
ACM Conference on Security and Privacy in Wireless and Mobile Networks (WiSec) 2024
A Worldwide View on the Reachability of Encrypted DNS Services
The Web Conference (WWW) 2024
From Promises to Practice: Evaluating the Private Browsing Modes of Android Browser Apps
The Web Conference (WWW) 2024
An Empirical Study of Open Edge Computing Platforms: Ecosystem, Usage, and Security Risks
arXiv preprint (CoRR) 2024
PowerPeeler: A Precise and General Dynamic Deobfuscation Method for PowerShell Scripts
arXiv preprint (CoRR) 2024
Revealing the Black Box of Device Search Engine: Scanning Assets, Strategies, and Ethical Consideration
arXiv preprint (CoRR) 2024
Detecting and Measuring Security Risks of Hosting-Based Dangling Domains
Proceedings of the ACM on Measurement and Analysis of Computing Systems (SIGMETRICS/IMC) 2023
Automatic Generation of Adversarial Readable Chinese Texts
IEEE Transactions on Dependable and Secure Computing 2023
TAICHI: Transform Your Secret Exploits Into Mine From a Victim's Perspective
IEEE Transactions on Dependable and Secure Computing 2023
Can We Trust the Phone Vendors? Comprehensive Security Measurements on the Android Firmware Ecosystem
IEEE Transactions on Software Engineering 2023
Silence is not Golden: Disrupting the Load Balancing of Authoritative DNS Servers
ACM Turing Celebration Conference - China (ACM TUR-C) 2023
Silence is not Golden: Disrupting the Load Balancing of Authoritative DNS Servers
ACM Conference on Computer and Communications Security (CCS) 2023
TsuKing: Coordinating DNS Resolvers and Queries into Potent DoS Amplifiers
ACM Conference on Computer and Communications Security (CCS) 2023
Under the Dark: A Systematical Study of Stealthy Mining Pools (Ab)use in the Wild
ACM Conference on Computer and Communications Security (CCS) 2023
Stolen Risks of Models with Security Properties
ACM Conference on Computer and Communications Security (CCS) 2023
Wolf in Sheep's Clothing: Evaluating Security Risks of the Undelegated Record on DNS Hosting Services
ACM Internet Measurement Conference (IMC) 2023
A Security Study about Electron Applications and a Programming Methodology to Tame DOM Functionalities
Network and Distributed System Security Symposium (NDSS) 2023
Ghost Domain Reloaded: Vulnerable Links in Domain Name Delegation and Revocation
Network and Distributed System Security Symposium (NDSS) 2023
Detecting and Measuring Security Risks of Hosting-Based Dangling Domains
ACM SIGMETRICS Conference 2023
Continuous Intrusion: Characterizing the Security of Continuous Integration Services
IEEE Symposium on Security and Privacy (S&P) 2023
Investigating Package Related Security Threats in Software Registries
IEEE Symposium on Security and Privacy (S&P) 2023
MTSan: A Feasible and Practical Memory Sanitizer for Fuzzing COTS Binaries
USENIX Security Symposium 2023
The Maginot Line: Attacking the Boundary of DNS Caching Protection
USENIX Security Symposium 2023
Temporal CDN-Convex Lens: A CDN-Assisted Practical Pulsing DDoS Attack
USENIX Security Symposium 2023
ResolverFuzz: Automated Discovery of DNS Resolver Vulnerabilities with Query-Response Fuzzing
arXiv preprint (CoRR) 2023
SFuzz: Slice-based Fuzzing for Real-Time Operating Systems
ACM Conference on Computer and Communications Security (CCS) 2022
An Extensive Study of Residential Proxies in China
ACM Conference on Computer and Communications Security (CCS) 2022
HDiff: A Semi-automatic Framework for Discovering Semantic Gap Attack in HTTP Implementations
IEEE/IFIP International Conference on Dependable Systems and Networks (DSN) 2022
Invoke-Deobfuscation: AST-Based and Semantics-Preserving Deobfuscation for PowerShell Scripts
IEEE/IFIP International Conference on Dependable Systems and Networks (DSN) 2022
Exploring the Characteristics and Security Risks of Emerging Emoji Domain Names
European Symposium on Research in Computer Security (ESORICS) 2022
Trampoline Over the Air: Breaking in IoT Devices Through MQTT Brokers
IEEE European Symposium on Security and Privacy (EuroS&P) 2022
Ethics in Security Research: Visions, Reality, and Paths Forward
IEEE European Symposium on Security and Privacy Workshops 2022
Large-scale Security Measurements on the Android Firmware Ecosystem
IEEE/ACM International Conference on Software Engineering (ICSE) 2022
ValCAT: Variable-Length Contextualized Adversarial Transformations Using Encoder-Decoder Language Model
Annual Conference of the North American Chapter of the ACL (NAACL-HLT) 2022
PMTUD is not Panacea: Revisiting IP Fragmentation Attacks against TCP
Network and Distributed System Security Symposium (NDSS) 2022
Measuring the Practical Effect of DNS Root Server Instances: A China-Wide Case Study
Passive and Active Measurement Conference (PAM) 2022
Encrypted Malware Traffic Detection via Graph-based Network Analysis
International Symposium on Research in Attacks, Intrusions and Defenses (RAID) 2022
Timing-Based Browsing Privacy Vulnerabilities Via Site Isolation
IEEE Symposium on Security and Privacy (S&P) 2022
Analyzing Ground-Truth Data of Mobile Gambling Scams
IEEE Symposium on Security and Privacy (S&P) 2022
Exploit the Last Straw That Breaks Android Systems
IEEE Symposium on Security and Privacy (S&P) 2022
Building an Open, Robust, and Stable Voting-Based Domain Top List
USENIX Security Symposium 2022
A Large-scale and Longitudinal Measurement Study of DKIM Deployment
USENIX Security Symposium 2022
Measuring the Deployment of 5G Security Enhancement
ACM Conference on Security and Privacy in Wireless and Mobile Networks (WiSec) 2022
Detecting and Characterizing SMS Spearphishing Attacks
Annual Computer Security Applications Conference (ACSAC) 2021
Rusted Anchors: A National Client-Side View of Hidden Root CAs in the Web PKI Ecosystem
ACM Conference on Computer and Communications Security (CCS) 2021
Fast IPv6 Network Periphery Discovery and Security Implications
IEEE/IFIP International Conference on Dependable Systems and Networks (DSN) 2021
Mingling of Clear and Muddy Water: Understanding and Detecting Semantic Confusion in Blackhat SEO
European Symposium on Research in Computer Security (ESORICS) 2021
On Evaluating Delegated Digital Signing of Broadcasting Messages in 5G
IEEE Global Communications Conference (GLOBECOM) 2021
From WHOIS to WHOWAS: A Large-Scale Measurement Study of Domain Registration Privacy under the GDPR
Network and Distributed System Security Symposium (NDSS) 2021
Sharing More and Checking Less: Leveraging Common Input Keywords to Detect Bugs in Embedded Systems
USENIX Security Symposium 2021
Weak Links in Authentication Chains: A Large-scale Analysis of Email Sender Spoofing Attacks
USENIX Security Symposium 2021
Characterizing Transnational Internet Performance and the Great Bottleneck of China
Proceedings of the ACM on Measurement and Analysis of Computing Systems (SIGMETRICS/IMC) 2020
Understanding Promotion-as-a-Service on GitHub
Annual Computer Security Applications Conference (ACSAC) 2020
Lies in the Air: Characterizing Fake-base-station Spam Ecosystem in China
ACM Conference on Computer and Communications Security (CCS) 2020
DNS Cache Poisoning Attack Reloaded: Revolutions with Side Channels
ACM Conference on Computer and Communications Security (CCS) 2020
Talking with Familiar Strangers: An Empirical Study on HTTPS Context Confusion Attacks
ACM Conference on Computer and Communications Security (CCS) 2020
CDN Backfired: Amplification Attacks Based on HTTP Range Requests
IEEE/IFIP International Conference on Dependable Systems and Networks (DSN) 2020
Argot: Generating Adversarial Readable Chinese Texts
International Joint Conference on Artificial Intelligence (IJCAI) 2020
CDN Judo: Breaking the CDN DoS Protection with Itself
Network and Distributed System Security Symposium (NDSS) 2020
Characterizing Transnational Internet Performance and the Great Bottleneck of China
ACM SIGMETRICS Conference 2020
TextExerciser: Feedback-driven Text Input Exercising for Android Applications
IEEE Symposium on Security and Privacy (S&P) 2020
Poison Over Troubled Forwarders: A Cache Poisoning Attack Targeting DNS Forwarding Devices
USENIX Security Symposium 2020
Weak Links in Authentication Chains: A Large-scale Analysis of Email Sender Spoofing Attacks
arXiv preprint (CoRR) 2020
Finding the best answer: measuring the optimization of public and authoritative DNS
Science China Information Sciences 2019
Casino royale: a deep exploration of illegal online gambling
Annual Computer Security Applications Conference (ACSAC) 2019
Who is answering my queries: understanding and characterizing interception of the DNS resolution path
ACM/IRTF Applied Networking Research Workshop (ANRW) 2019
TraffickStop: Detecting and Measuring Illicit Traffic Monetization Through Large-Scale DNS Analysis
IEEE European Symposium on Security and Privacy (EuroS&P) 2019
NETHCF: Enabling Line-rate and Adaptive Spoofed IP Traffic Filtering
IEEE International Conference on Network Protocols (ICNP) 2019
An End-to-End, Large-Scale Measurement of DNS-over-Encryption: How Far Have We Come?
ACM Internet Measurement Conference (IMC) 2019
TL;DR Hazard: A Comprehensive Study of Levelsquatting Scams
International Conference on Security and Privacy in Communication Networks (SecureComm) 2019
Fuzzing IPC with Knowledge Inference
IEEE International Symposium on Reliable Distributed Systems (SRDS) 2019
How You Get Shot in the Back: A Systematical Study about Cryptojacking in the Real World
ACM Conference on Computer and Communications Security (CCS) 2018
Path Leaks of HTTPS Side-Channel by Cookie Injection
Constructive Side-Channel Analysis and Secure Design (COSADE) 2018
A Reexamination of Internationalized Domain Names: The Good, the Bad and the Ugly
IEEE/IFIP International Conference on Dependable Systems and Networks (DSN) 2018
Analysis and Measurement of Zone Dependency in the Domain Name System
IEEE International Conference on Communications (ICC) 2018
ICUFuzzer: Fuzzing ICU Library for Exploitable Bugs in Multiple Software
Information Security Conference (ISC) 2018
Abusing CDNs for Fun and Profit: Security Issues in CDNs' Origin Validation
IEEE International Symposium on Reliable Distributed Systems (SRDS) 2018
We Still Don't Have Secure Cross-Domain Requests: an Empirical Study of CORS
USENIX Security Symposium 2018
Who Is Answering My Queries: Understanding and Characterizing Interception of the DNS Resolution Path
USENIX Security Symposium 2018
Measuring Privacy Threats in China-Wide Mobile Networks
USENIX Free and Open Communications on the Internet Workshop (FOCI) 2018
An Empirical Study of Web Resource Manipulation in Real-world Mobile Applications
USENIX Security Symposium 2018
Don't Let One Rotten Apple Spoil the Whole Barrel: Towards Automated Detection of Shadowed Domains
ACM Conference on Computer and Communications Security (CCS) 2017
How to Notify a Vulnerability to the Right Person? Case Study: In an ISP Scope
IEEE Global Communications Conference (GLOBECOM) 2017
How to Learn Klingon without a Dictionary: Detection and Measurement of Black Keywords Used by the Underground Economy
IEEE Symposium on Security and Privacy (S&P) 2017
An accurate distributed scheme for detection of prefix interception
Science China Information Sciences 2016
MAF-SAM: An effective method to perceive data plane threats of inter domain routing system
Computer Networks 2016
Reexamining DNS From a Global Recursive Resolver Perspective
IEEE/ACM Transactions on Networking 2016
What You See Isn't Always What You Get: A Measurement Study of Usage Fraud on Android Apps
Workshop on Security and Privacy in Smartphones and Mobile Devices (SPSM@CCS) 2016
Host of Troubles: Multiple Host Ambiguities in HTTP Implementations
ACM Conference on Computer and Communications Security (CCS) 2016
Forwarding-Loop Attacks in Content Delivery Networks
Network and Distributed System Security Symposium (NDSS) 2016
Seeking Nonsense, Looking for Trouble: Efficient Promotional-Infection Detection through Semantic Inconsistency Search
IEEE Symposium on Security and Privacy (S&P) 2016
The Ever-Changing Labyrinth: A Large-Scale Analysis of Wildcard DNS Powered Blackhat SEO
USENIX Security Symposium 2016
Route Leaks Identification by Detecting Routing Loops
International Conference on Security and Privacy in Communication Networks (SecureComm) 2015
IntentFuzzer: detecting capability leaks of android applications
ACM Asia Conference on Computer and Communications Security (AsiaCCS) 2014
When HTTPS Meets CDN: A Case of Authentication in Delegated Service
IEEE Symposium on Security and Privacy (S&P) 2014
Measuring Query Latency of Top Level DNS Servers
Passive and Active Measurement Conference (PAM) 2013
Research on the Anti-attack Design Principles of Low-Latency Anonymous Communication
IEEE International Conference on Trust, Security and Privacy in Computing (TrustCom) 2013
Ghost Domain Names: Revoked Yet Still Resolvable
Network and Distributed System Security Symposium (NDSS) 2012
A federated identity management system with centralized trust and unified Single Sign-On
International Conference on Communications and Networking in China (ChinaCom) 2011
User cooperation trust model and its application in network security management
International Conference on Fuzzy Systems and Knowledge Discovery (FSKD) 2011
Anonymous Communication over Invisible Mix Rings
International Conference on Algorithms and Architectures for Parallel Processing (ICA3PP) 2011
Cooperation-Based Trust Model and Its Application in Network Security Management
International Conference on Algorithms and Architectures for Parallel Processing (ICA3PP) 2011
Analysis of Anonymity in P2P Anonymous Communication Systems
IEEE International Conference on Advanced Information Networking and Applications Workshops 2010
IABA: An improved PNN Algorithm for anomaly detection in network security management
International Conference on Computing, Networking and Communications (ICNC) 2010
WindTalker: A P2P-Based Low-Latency Anonymous Communication Network
IEICE Transactions on Communications 2009
Selecting Trust Peers Based on Updated Credit Value in Peer-to-Peer Networks
International Conference on Security and Management 2009
RRM: An incentive reputation model for promoting good behaviors in distributed systems
Science China Information Sciences 2008
Dynamic emulation based modeling and detection of polymorphic shellcode at the network level
Science China Information Sciences 2008
Scheduling Peers Based on Credit Construction Period in Peer-to-Peer Networks
IEEE International Conference on Parallel and Distributed Systems (ICPADS) 2008
Attacking Test and Online Forensics in IPv6 Networks
International Conference on IT Security Incident Management and IT Forensics (IMF) 2008
An Admission Control Policy Based on Social Networks for P2P Systems
International Conference on Web-Age Information Management (WAIM) 2008
AMCAS: An Automatic Malicious Code Analysis System
International Conference on Web-Age Information Management (WAIM) 2008
Modeling and analyzing of the interaction between worms and antiworms during network worm propagation
Science China Information Sciences 2005
Efficient performance estimate for one-class support vector machine
Pattern Recognition Letters 2005
An Extensible AAA Infrastructure for IPv6
International Conference on Computational Intelligence and Security (CIS) 2005
PDTM: A Policy-Driven Trust Management Framework in Distributed Systems
International Conference on Computational Intelligence and Security (CIS) 2005
New Algorithm Mining Intrusion Patterns
International Conference on Fuzzy Systems and Knowledge Discovery (FSKD) 2005
New Method for Intrusion Features Mining in IDS
International Conference on Intelligent Computing (ICIC) 2005
Port Scan Behavior Diagnosis by Clustering
International Conference on Information and Communications Security (ICICS) 2005
The Authorization Service in Dynamic Trust Domains
International Conference on Information Technology and Applications (ICITA) 2005
Improved Marking Model ERPPM Tracing Back to DDoS Attacker
International Conference on Information Technology and Applications (ICITA) 2005
Anomaly Internet Network Traffic Detection by Kernel Principle Component Classifier
International Symposium on Neural Networks (ISNN) 2005
Workflow Oriented Network Management - A Web/Java Approach
Journal of Network and Systems Management 2004
XML Based X.509 Authorization in CERNET Grid
International Conference on Grid and Cooperative Computing (GCC) 2004
Algorithms for Congestion Detection and Control
International Conference on Grid and Cooperative Computing Workshops 2004
Improved algorithms tracing back to attacking sources
IASTED International Conference on Parallel and Distributed Computing and Networks 2004
Distributed IDS Tracing Back to Attacking Sources
International Conference on Grid and Cooperative Computing (GCC) 2003
Policy based access control framework for large networks
IEEE International Conference on Networks (ICON) 2000
🏛学术兼职 & 社会服务
学术与政府机构
- 国务院学位委员会第八届学科评议组成员(2020—)
- 中国计算机学会 网络与系统安全专委会 秘书长
- 中国网络空间安全协会 常务理事
- 中国网络安全产业联盟 理事会成员(2016—)
- 哈尔滨工业大学(威海)客座教授
期刊编委
- ACM Transactions on Privacy and Security
副主编(2020—)
期刊审稿
- IEEE Transactions on Networking
- IEEE/ACM Transactions on Networking
- Journal of Network and Computer Applications
会议程序委员会
- SecureComm 2023 PC 主席
- NDSS PC Member(多届)
- ACM CCS PC Member(多届)
- USENIX Security PC Member(多届)
- IEEE S&P PC Member(多届)
学术社区创建
- InForSec 联合创始人 & 主席(2015—)
国际网络安全研究论坛 - XCTF 联合创始人(2016—)
中国 CTF 赛事体系 - DataCon 联合创始人(2019—)
数据安全竞赛与大会