获奖论文
四大安全会议历年最佳论文、杰出论文与 Distinguished Paper 汇总。
IEEE S&P
Distinguished Paper Award52
- Enter, Exit, Page Fault, Leak: Testing Isolation Boundaries for Microarchitectural Leaks2026
- Your Compiler is Backdooring Your Model: Understanding and Exploiting Compilation Inconsistency Vulnerabilities in Deep Learning Compilers2026
- Demystifying and Exploiting ASLR on NVIDIA GPUs2026
- Phoenix: Rowhammer Attacks on DDR5 with Self-Correcting Synchronization2026
- Nebula: Proving machine executions via folding schemes2026
- LLMs in the SOC: An Empirical Study of Human-AI Collaboration in Security Operations Centres2026
- Auditing Apple's DifferentialPrivacy.framework: Implementation Bugs, Misconfigurations, and Practical Risks2026
- Lost in Translation: Text Message Spoofing via Email2026
- BreakFAST: Confused Deputy Attack on Infinity Fabric to Break AMD SEV-SNP2026
- Weighted Batched Threshold Encryption with Applications to Mempool Privacy2026
- TREVEX: A Black-Box Detection Framework For Data-Flow Transient Execution Vulnerabilities2026
- GPUBreach: Privilege Escalation Attacks on GPUs using Rowhammer2026
- Responsible Disclosure is a Two-Way Street: Empirically Measuring the Responsible Disclosure Contract in the Firmware Ecosystem2026
- Goldilocks and the Three P-States: Mitigating Hertzbleed with Formal Leakage Guarantees2026
- COBBL: Dynamic Constraint Generation for SNARKs2025
- Transport Layer Obscurity: Circumventing SNI Censorship on the TLS Layer2025
- Follow My Flow: Unveiling Client-Side Prototype Pollution Gadgets from One Million Real-World Websites2025
- CipherSteal: Stealing Input Data from TEE-Shielded Neural Networks with Ciphertext Side Channels2025
- Characterizing Robocalls with Multiple Vantage Points2025
- Verifiable Boosted Tree Ensembles2025
- Breaking the Barrier: Post-Barrier Spectre Attacks2025
- Unveiling Security Vulnerabilities in Git Large File Storage Protocol2025
- The Inadequacy of Similarity-based Privacy Metrics: Privacy Attacks against “Truly Anonymous” Synthetic Datasets2025
- Empc: Effective Path Prioritization for Symbolic Execution with Path Cover2025
- SLAP: Data Speculation Attacks via Load Address Prediction on Apple Silicon2025
- Detecting Taint-Style Vulnerabilities in Microservice-Structured Web Applications2025
- DataSentinel: A Game-Theoretic Detection of Prompt Injection Attacks2025
- BENZENE: A Practical Root Cause Analysis System with an Under-Constrained State Mutation2024
- Shedding Light on CVSS Scoring Inconsistencies: A User-Centric Study on Evaluating Widespread Security Vulnerabilities2024
- False negative - that one is going to kill you." - Understanding Industry Perspectives of Static Analysis based Security Testing2024
- The Great Request Robbery: An Empirical Study of Client-side Request Hijacking Vulnerabilities on the Web2024
- SoK: Prudent Evaluation Practices for Fuzzing2024
- SoK: Unintended Interactions among Machine Learning Defenses and Risks2024
- From Virtual Touch to Tesla Command: Unlocking Unauthenticated Control Chains From Smart Glasses for Vehicle Takeover2024
- From Chatbots to Phishbots?: Phishing Scam Generation in Commercial Large Language Models2024
- WESEE: Using Malicious #VC Interrupts to Break AMD SEV-SNP2024
- MEGA: Malleable Encryption Goes Awry2023
- Weak Fiat-Shamir Attacks on Modern Proof Systems2023
- Typing High-Speed Cryptography against Spectre v12023
- Practically-exploitable Cryptographic Vulnerabilities in Matrix2023
- Red Team vs. Blue Team: A Real-World Hardware Trojan Detection Case Study Across Four Modern CMOS Technology Generations2023
- It"s (DOM) Clobbering Time: Attack Techniques, Prevalence, and Defenses2023
- The Leaky Web: Automated Discovery of Cross-Site Information Leaks in Browsers and the Web2023
- WaVe: a verifiably secure WebAssembly sandboxing runtime2023
- Characterizing Everyday Misuse of Smart Home Devices2023
- Not Yet Another Digital ID: Privacy-preserving Humanitarian Aid Distribution2023
- In Eighty Percent of the Cases, I Select the Password for Them": Security and Privacy Challenges, Advice, and Opportunities at Cybercafes in Kenya2023
- Space Odyssey: An Experimental Software Security Analysis of Satellites2023
- Four Attacks and a Proof for Telegram2022
- Asleep at the Keyboard? Assessing the Security of GitHub Copilot’s Code Contributions2022
- Invisible Finger: Practical Electromagnetic Interference Attack on Touchscreen-based Electronic Devices2022
- Committed to Trust: A Qualitative Study on Security & Trust in Open Source Software Projects2022
Test of Time Award26
- A Comparison of Commercial and Military Computer Security Policies2026
- The Chinese Wall Security Policy2026
- De-anonymizing Social Networks2026
- Dissecting Android Malware: Characterization and Evolution2026
- The Quest to Replace Passwords: A Framework for Comparative Evaluation of Web Authentication Schemes2026
- Towards Making Systems Forget with Machine Unlearning2025
- CHERI: A Hybrid Capability-System Architecture for Scalable Software Compartmentalization2025
- Modeling and Discovering Vulnerabilities with Code Property Graphs2024
- Zerocash: Decentralized Anonymous Payments from Bitcoin2024
- Pinocchio: Nearly Practical Verifiable Computation2023
- Guess Again (and Again and Again): Measuring Password Strength by Simulating Password-Cracking Algorithms2023
- Unleashing Mayhem on Binary Code2022
- Click Trajectories: End-to-End Analysis of the Spam Value Chain2022
- SCION: Scalability, Control, and Isolation On Next-Generation Networks2022
- Password Cracking Using Probabilistic Context-Free Grammars2021
- Native Client: A Sandbox for Portable, Untrusted x86 Native Code2021
- Quantifying Location Privacy2021
- A Sense of Self for Unix Processes2020
- Cryptovirology: Extortion-Based Security Threats and Countermeasures2020
- Decentralized Trust Management2020
- Analysis of a Denial of Service Attack on TCP2020
- Efficient Authentication and Signing of Multicast Streams Over Lossy Channels2020
- Practical Techniques for Searches on Encrypted Data2020
- Distributed Detection of Node Replication Attacks in Sensor Networks2020
- Experimental Security Analysis of a Modern Automobile2020
- Outside the Closed World: On Using Machine Learning for Network Intrusion Detection2020
AI-Selected "Best" Poster Award1
- GlucOS: A secure, safe and extensible system for automated insulin delivery2024
Best Paper Award3
- Compositional Security for Reentrant Applications2021
- Hardware-Software Contracts for Secure Speculation2021
- TRRespass: Exploiting the Many Sides of Target Row Refresh2020
Best Poster Award1
- Private Information Leakage from Polygenic Risk Scores2025
Best Student Paper Award3
- CrawlPhish: Large-scale Analysis of Client-side Cloaking Techniques in Phishing2021
- They Would do Better if They Worked Together: The Case of Interaction Problems Between Password Managers and Websites2021
- Can Voters Detect Malicious Manipulation of Ballot Marking Devices?2020
Best Practical Paper Award2
- The EMV Standard: Break, Fix, Verify2021
- An Analysis of Pre-installed Android Software2020
Best Screenplay Award1
- Hear "No Evil", See "Kenansville": Efficient and Transferable Black-Box Attacks on Speech Recognition and Voice Identification Systems2021
Best Film Editing Award1
- Good Bot, Bad Bot: Characterizing Automated Browsing Activity2021
Best Video Award1
- Reading Between the Lines: An Extensive Evaluation of the Security and Privacy Implications of EPUB Reading Systems2021
202619
- Enter, Exit, Page Fault, Leak: Testing Isolation Boundaries for Microarchitectural LeaksDistinguished Paper Award
- Your Compiler is Backdooring Your Model: Understanding and Exploiting Compilation Inconsistency Vulnerabilities in Deep Learning CompilersDistinguished Paper Award
- Demystifying and Exploiting ASLR on NVIDIA GPUsDistinguished Paper Award
- Phoenix: Rowhammer Attacks on DDR5 with Self-Correcting SynchronizationDistinguished Paper Award
- Nebula: Proving machine executions via folding schemesDistinguished Paper Award
- LLMs in the SOC: An Empirical Study of Human-AI Collaboration in Security Operations CentresDistinguished Paper Award
- Auditing Apple's DifferentialPrivacy.framework: Implementation Bugs, Misconfigurations, and Practical RisksDistinguished Paper Award
- Lost in Translation: Text Message Spoofing via EmailDistinguished Paper Award
- BreakFAST: Confused Deputy Attack on Infinity Fabric to Break AMD SEV-SNPDistinguished Paper Award
- Weighted Batched Threshold Encryption with Applications to Mempool PrivacyDistinguished Paper Award
- TREVEX: A Black-Box Detection Framework For Data-Flow Transient Execution VulnerabilitiesDistinguished Paper Award
- GPUBreach: Privilege Escalation Attacks on GPUs using RowhammerDistinguished Paper Award
- Responsible Disclosure is a Two-Way Street: Empirically Measuring the Responsible Disclosure Contract in the Firmware EcosystemDistinguished Paper Award
- Goldilocks and the Three P-States: Mitigating Hertzbleed with Formal Leakage GuaranteesDistinguished Paper Award
- A Comparison of Commercial and Military Computer Security PoliciesTest of Time Award
- The Chinese Wall Security PolicyTest of Time Award
- De-anonymizing Social NetworksTest of Time Award
- Dissecting Android Malware: Characterization and EvolutionTest of Time Award
- The Quest to Replace Passwords: A Framework for Comparative Evaluation of Web Authentication SchemesTest of Time Award
202516
- COBBL: Dynamic Constraint Generation for SNARKsDistinguished Paper Award
- Transport Layer Obscurity: Circumventing SNI Censorship on the TLS LayerDistinguished Paper Award
- Follow My Flow: Unveiling Client-Side Prototype Pollution Gadgets from One Million Real-World WebsitesDistinguished Paper Award
- CipherSteal: Stealing Input Data from TEE-Shielded Neural Networks with Ciphertext Side ChannelsDistinguished Paper Award
- Characterizing Robocalls with Multiple Vantage PointsDistinguished Paper Award
- Verifiable Boosted Tree EnsemblesDistinguished Paper Award
- Breaking the Barrier: Post-Barrier Spectre AttacksDistinguished Paper Award
- Unveiling Security Vulnerabilities in Git Large File Storage ProtocolDistinguished Paper Award
- The Inadequacy of Similarity-based Privacy Metrics: Privacy Attacks against “Truly Anonymous” Synthetic DatasetsDistinguished Paper Award
- Empc: Effective Path Prioritization for Symbolic Execution with Path CoverDistinguished Paper Award
- SLAP: Data Speculation Attacks via Load Address Prediction on Apple SiliconDistinguished Paper Award
- Detecting Taint-Style Vulnerabilities in Microservice-Structured Web ApplicationsDistinguished Paper Award
- DataSentinel: A Game-Theoretic Detection of Prompt Injection AttacksDistinguished Paper Award
- Towards Making Systems Forget with Machine UnlearningTest of Time Award
- CHERI: A Hybrid Capability-System Architecture for Scalable Software CompartmentalizationTest of Time Award
- Private Information Leakage from Polygenic Risk ScoresBest Poster Award
202412
- BENZENE: A Practical Root Cause Analysis System with an Under-Constrained State MutationDistinguished Paper Award
- Shedding Light on CVSS Scoring Inconsistencies: A User-Centric Study on Evaluating Widespread Security VulnerabilitiesDistinguished Paper Award
- False negative - that one is going to kill you." - Understanding Industry Perspectives of Static Analysis based Security TestingDistinguished Paper Award
- The Great Request Robbery: An Empirical Study of Client-side Request Hijacking Vulnerabilities on the WebDistinguished Paper Award
- SoK: Prudent Evaluation Practices for FuzzingDistinguished Paper Award
- SoK: Unintended Interactions among Machine Learning Defenses and RisksDistinguished Paper Award
- From Virtual Touch to Tesla Command: Unlocking Unauthenticated Control Chains From Smart Glasses for Vehicle TakeoverDistinguished Paper Award
- From Chatbots to Phishbots?: Phishing Scam Generation in Commercial Large Language ModelsDistinguished Paper Award
- WESEE: Using Malicious #VC Interrupts to Break AMD SEV-SNPDistinguished Paper Award
- Modeling and Discovering Vulnerabilities with Code Property GraphsTest of Time Award
- Zerocash: Decentralized Anonymous Payments from BitcoinTest of Time Award
- GlucOS: A secure, safe and extensible system for automated insulin deliveryAI-Selected "Best" Poster Award
202314
- MEGA: Malleable Encryption Goes AwryDistinguished Paper Award
- Weak Fiat-Shamir Attacks on Modern Proof SystemsDistinguished Paper Award
- Typing High-Speed Cryptography against Spectre v1Distinguished Paper Award
- Practically-exploitable Cryptographic Vulnerabilities in MatrixDistinguished Paper Award
- Red Team vs. Blue Team: A Real-World Hardware Trojan Detection Case Study Across Four Modern CMOS Technology GenerationsDistinguished Paper Award
- It"s (DOM) Clobbering Time: Attack Techniques, Prevalence, and DefensesDistinguished Paper Award
- The Leaky Web: Automated Discovery of Cross-Site Information Leaks in Browsers and the WebDistinguished Paper Award
- WaVe: a verifiably secure WebAssembly sandboxing runtimeDistinguished Paper Award
- Characterizing Everyday Misuse of Smart Home DevicesDistinguished Paper Award
- Not Yet Another Digital ID: Privacy-preserving Humanitarian Aid DistributionDistinguished Paper Award
- In Eighty Percent of the Cases, I Select the Password for Them": Security and Privacy Challenges, Advice, and Opportunities at Cybercafes in KenyaDistinguished Paper Award
- Space Odyssey: An Experimental Software Security Analysis of SatellitesDistinguished Paper Award
- Pinocchio: Nearly Practical Verifiable ComputationTest of Time Award
- Guess Again (and Again and Again): Measuring Password Strength by Simulating Password-Cracking AlgorithmsTest of Time Award
20227
- Four Attacks and a Proof for TelegramDistinguished Paper Award
- Asleep at the Keyboard? Assessing the Security of GitHub Copilot’s Code ContributionsDistinguished Paper Award
- Invisible Finger: Practical Electromagnetic Interference Attack on Touchscreen-based Electronic DevicesDistinguished Paper Award
- Committed to Trust: A Qualitative Study on Security & Trust in Open Source Software ProjectsDistinguished Paper Award
- Unleashing Mayhem on Binary CodeTest of Time Award
- Click Trajectories: End-to-End Analysis of the Spam Value ChainTest of Time Award
- SCION: Scalability, Control, and Isolation On Next-Generation NetworksTest of Time Award
202111
- Password Cracking Using Probabilistic Context-Free GrammarsTest of Time Award
- Native Client: A Sandbox for Portable, Untrusted x86 Native CodeTest of Time Award
- Quantifying Location PrivacyTest of Time Award
- Compositional Security for Reentrant ApplicationsBest Paper Award
- Hardware-Software Contracts for Secure SpeculationBest Paper Award
- CrawlPhish: Large-scale Analysis of Client-side Cloaking Techniques in PhishingBest Student Paper Award
- They Would do Better if They Worked Together: The Case of Interaction Problems Between Password Managers and WebsitesBest Student Paper Award
- The EMV Standard: Break, Fix, VerifyBest Practical Paper Award
- Hear "No Evil", See "Kenansville": Efficient and Transferable Black-Box Attacks on Speech Recognition and Voice Identification SystemsBest Screenplay Award
- Good Bot, Bad Bot: Characterizing Automated Browsing ActivityBest Film Editing Award
- Reading Between the Lines: An Extensive Evaluation of the Security and Privacy Implications of EPUB Reading SystemsBest Video Award
202012
- A Sense of Self for Unix ProcessesTest of Time Award
- Cryptovirology: Extortion-Based Security Threats and CountermeasuresTest of Time Award
- Decentralized Trust ManagementTest of Time Award
- Analysis of a Denial of Service Attack on TCPTest of Time Award
- Efficient Authentication and Signing of Multicast Streams Over Lossy ChannelsTest of Time Award
- Practical Techniques for Searches on Encrypted DataTest of Time Award
- Distributed Detection of Node Replication Attacks in Sensor NetworksTest of Time Award
- Experimental Security Analysis of a Modern AutomobileTest of Time Award
- Outside the Closed World: On Using Machine Learning for Network Intrusion DetectionTest of Time Award
- TRRespass: Exploiting the Many Sides of Target Row RefreshBest Paper Award
- Can Voters Detect Malicious Manipulation of Ballot Marking Devices?Best Student Paper Award
- An Analysis of Pre-installed Android SoftwareBest Practical Paper Award
NDSS
Distinguished Paper Award25
- An Empirical Study on Fingerprint API Misuse with Lifecycle Analysis in Real-world Android Apps2025
- ReThink: Reveal the Threat of Electromagnetic Interference on Power Inverters2025
- SafeSplit: A Novel Defense Against Client-Side Backdoor Attacks in Split Learning2025
- Provably Unlearnable Data Examples2025
- DUMPLING: Fine-grained Differential JavaScript Engine Fuzzing2025
- type++: Prohibiting Type Confusion with Inline Type Information2025
- Blindfold: Confidential Memory Management by Untrusted Operating System2025
- PropertyGPT: LLM-driven Formal Verification of Smart Contracts through Retrieval-Augmented Property Generation2025
- DiStefano: Decentralized Infrastructure for Sharing Trusted Encrypted Facts and Nothing More2025
- ReDAN: An Empirical Study on Remote DoS Attacks against NAT Networks2025
- VoiceRadar: Voice Deepfake Detection using Micro-Frequency and Compositional Analysis2025
- Rethinking Trust in Forge-Based Git Security2025
- Like, Comment, Get Scammed: Characterizing Comment Scams on Media Platforms2024
- UntrustIDE: Exploiting Weaknesses in VS Code Extensions2024
- Eavesdropping on Controller Acoustic Emanation for Keystroke Inference Attack in Virtual Reality2024
- LMSanitator: Defending Prompt-Tuning Against Task-Agnostic Backdoors2024
- Your Router is My Prober: Measuring IPv6 Networks via ICMP Rate Limiting Side Channels2023
- DARWIN: Survival of the Fittest Fuzzing Mutators2023
- Preventing Kernel Hacks with HAKCs2022
- Awakening the Web"s Sleeper Agents: Misusing Service Workers for Privacy Leakage2021
- Melting Pot of Origins: Compromising the Intermediary Web Services that Rehost Websites2020
- MBeacon: Privacy-Preserving Beacons for DNA Methylation Data2019
- Establishing Software Root of Trust Unconditionally2019
- Cracking the Wall of Confinement: Understanding and Analyzing Malicious Domain Take-downs2019
- Cleaning Up the Internet of Evil Things: Real-World Evidence on ISP and Consumer Efforts to Remove Mirai2019
Best Paper Award10
- Peering Inside the Black-Box: Long-Range and Scalable Model Architecture Snooping via GPU Electromagnetic Side-Channel2026
- One Email, Many Faces: A Deep Dive into Identity Confusion in Email Aliases2026
- LOKI: Proactively Discovering Online Scam Websites by Mining Toxic Search Queries2026
- OCCUPY+PROBE: Cross-Privilege Branch Target Buffer Side-Channel Attacks at Instruction Granularity2026
- Fuzzilicon: A Post-Silicon Microcode-Guided x86 CPU Fuzzer2026
- Should I Trust You? Rethinking the Principle of Zone-Based Isolation DNS Bailiwick Checking2026
- Decompiling the Synergy: An Empirical Study of Human–LLM Teaming in Software Reverse Engineering2026
- Phishing in Wonderland: Evaluating Learning-Based Ethereum Phishing Transaction Detection and Pitfalls2026
- Indicator of Benignity: An Industry View of False Positive in Malicious Domain Detection and its Mitigation2026
- Small Cell, Big Risk: A Security Assessment of 4G LTE Femtocells in the Wild2026
Distinguished Paper Award Honorable Mentions7
- Data Oblivious ISA Extensions for Side Channel-Resistant and High Performance Computing2019
- Graph-based Security and Privacy Analytics via Collective Classification with Joint Weight Learning and Propagation2019
- ICSREF: A Framework for Automated Reverse Engineering of Industrial Control Systems Binaries2019
- Ginseng: Keeping Secrets in Registers When You Distrust the Operating System2019
- One Engine To Serve "em All: Inferring Taint Rules Without Architectural Semantics2019
- On the Challenges of Geographical Avoidance for Tor2019
- Privacy Attacks to the 4G and 5G Cellular Paging Protocols Using Side Channel Information2019
Test of Time Award8
- SMART: Secure and Minimal Architecture for (Establishing a Dynamic) Root of Trust2024
- Automated Whitebox Fuzz Testing2022
- A First Step Towards Automated Detection of Buffer Overrun Vulnerabilities2020
- The Design and Implementation of Datagram TLS2020
- Dynamic Taint Analysis for Automatic Detection, Analysis, and Signature Generation of Exploits on Commodity Software2020
- SKEME: A Versatile Secure Key Exchange Mechanism for Internet2019
- Client Puzzles: A Cryptographic Countermeasure Against Connection Depletion Attacks2019
- A Virtual Machine Introspection Based Architecture for Intrusion Detection2019
Distinguished Artifact Award3
- Unknown Target: Uncovering and Detecting Novel In-Flight Attacks to Collision Avoidance (TCAS)2026
- When Mixnets Fail: Evaluating, Quantifying, and Mitigating the Impact of Adversarial Nodes in Mix Networks2026
- Consensus in the Known Participation Model with Byzantine Faults and Sleepy Replicas2026
Artifact Evaluation Award5
- Cascading Spy Sheets: Exploiting the Complexity of Modern CSS for Email and Browser Fingerprinting2025
- JBomAudit: Assessing the Landscape, Compliance, and Security Implications of Java SBOMs2025
- SHAFT: Secure, Handy, Accurate and Fast Transformer Inference2025
- Efficient and Timely Revocation of V2X Credentials2024
- 5G-Spector: An O-RAN Compliant Layer-3 Cellular Attack Detection Service2024
Best Technical Poster Award5
- PhantomMotion: Laser-Based Motion Injection Attacks on Wireless Security Surveillance Systems2026
- JailbreakEval: An Integrated Toolkit for Evaluating Jailbreak Attempts Against Large Language Models2025
- On the Cyber-Physical Security of Commercial Indoor Delivery Robot Systems2024
- A Monte Carlo Ensemble Approach to Automatically Identifying Keywords in Binary Message Formats2023
- Detecting Misinformation about Zoom’s Security and Privacy Threats2022
Distinguished Technical Poster Award3
- Security of Deep Learning based Lane Keeping Assistance System under Physical-World Adversarial Attack2020
- PhishFarm: A Scalable Framework for Measuring the Effectiveness of Evasion Techniques Against Browser Phishing Blacklists2019
- Poster: Automated Evaluation of Fuzzers2019
Best Post Award3
- A Framework for Effective Corporate Communication after Cyber Security Incidents2021
- Limiting Damage Spread in the Internet of Things Using Features-based Immunisation Techniques2021
- Automated Vulnerability Assessment for Embedded Systems2021
Best Poster Presentation Award5
- Select-Then-Compute: Encrypted Label Selection and Analytics over Distributed Datasets using FHE2026
- Decoupling the Device and Identity in Cellular Networks with vSIM2025
- MORPH: Towards Automated Concept Drift Adaptation for Malware Detection2024
- VICEROY: GDPR-/CCPA-complaint Enforcement of Verifiable Accountless Consumer Requests2023
- Improving the Performance and Security of Tor’s Onion Services2022
Distinguished Poster Presentation2
- Poster: Cybercrime Investigators are Users Too! Understanding the Socio-Technical Challenges Faced by Law Enforcement2020
- Poster: Security Analysis of Multi-Sensor Fusion based Localization in Autonomous Vehicles2019
202615
- Peering Inside the Black-Box: Long-Range and Scalable Model Architecture Snooping via GPU Electromagnetic Side-ChannelBest Paper Award
- One Email, Many Faces: A Deep Dive into Identity Confusion in Email AliasesBest Paper Award
- LOKI: Proactively Discovering Online Scam Websites by Mining Toxic Search QueriesBest Paper Award
- OCCUPY+PROBE: Cross-Privilege Branch Target Buffer Side-Channel Attacks at Instruction GranularityBest Paper Award
- Fuzzilicon: A Post-Silicon Microcode-Guided x86 CPU FuzzerBest Paper Award
- Should I Trust You? Rethinking the Principle of Zone-Based Isolation DNS Bailiwick CheckingBest Paper Award
- Decompiling the Synergy: An Empirical Study of Human–LLM Teaming in Software Reverse EngineeringBest Paper Award
- Phishing in Wonderland: Evaluating Learning-Based Ethereum Phishing Transaction Detection and PitfallsBest Paper Award
- Indicator of Benignity: An Industry View of False Positive in Malicious Domain Detection and its MitigationBest Paper Award
- Small Cell, Big Risk: A Security Assessment of 4G LTE Femtocells in the WildBest Paper Award
- Unknown Target: Uncovering and Detecting Novel In-Flight Attacks to Collision Avoidance (TCAS)Distinguished Artifact Award
- When Mixnets Fail: Evaluating, Quantifying, and Mitigating the Impact of Adversarial Nodes in Mix NetworksDistinguished Artifact Award
- Consensus in the Known Participation Model with Byzantine Faults and Sleepy ReplicasDistinguished Artifact Award
- PhantomMotion: Laser-Based Motion Injection Attacks on Wireless Security Surveillance SystemsBest Technical Poster Award
- Select-Then-Compute: Encrypted Label Selection and Analytics over Distributed Datasets using FHEBest Poster Presentation Award
202517
- An Empirical Study on Fingerprint API Misuse with Lifecycle Analysis in Real-world Android AppsDistinguished Paper Award
- ReThink: Reveal the Threat of Electromagnetic Interference on Power InvertersDistinguished Paper Award
- SafeSplit: A Novel Defense Against Client-Side Backdoor Attacks in Split LearningDistinguished Paper Award
- Provably Unlearnable Data ExamplesDistinguished Paper Award
- DUMPLING: Fine-grained Differential JavaScript Engine FuzzingDistinguished Paper Award
- type++: Prohibiting Type Confusion with Inline Type InformationDistinguished Paper Award
- Blindfold: Confidential Memory Management by Untrusted Operating SystemDistinguished Paper Award
- PropertyGPT: LLM-driven Formal Verification of Smart Contracts through Retrieval-Augmented Property GenerationDistinguished Paper Award
- DiStefano: Decentralized Infrastructure for Sharing Trusted Encrypted Facts and Nothing MoreDistinguished Paper Award
- ReDAN: An Empirical Study on Remote DoS Attacks against NAT NetworksDistinguished Paper Award
- VoiceRadar: Voice Deepfake Detection using Micro-Frequency and Compositional AnalysisDistinguished Paper Award
- Rethinking Trust in Forge-Based Git SecurityDistinguished Paper Award
- Cascading Spy Sheets: Exploiting the Complexity of Modern CSS for Email and Browser FingerprintingArtifact Evaluation Award
- JBomAudit: Assessing the Landscape, Compliance, and Security Implications of Java SBOMsArtifact Evaluation Award
- SHAFT: Secure, Handy, Accurate and Fast Transformer InferenceArtifact Evaluation Award
- JailbreakEval: An Integrated Toolkit for Evaluating Jailbreak Attempts Against Large Language ModelsBest Technical Poster Award
- Decoupling the Device and Identity in Cellular Networks with vSIMBest Poster Presentation Award
20249
- Like, Comment, Get Scammed: Characterizing Comment Scams on Media PlatformsDistinguished Paper Award
- UntrustIDE: Exploiting Weaknesses in VS Code ExtensionsDistinguished Paper Award
- Eavesdropping on Controller Acoustic Emanation for Keystroke Inference Attack in Virtual RealityDistinguished Paper Award
- LMSanitator: Defending Prompt-Tuning Against Task-Agnostic BackdoorsDistinguished Paper Award
- SMART: Secure and Minimal Architecture for (Establishing a Dynamic) Root of TrustTest of Time Award
- Efficient and Timely Revocation of V2X CredentialsArtifact Evaluation Award
- 5G-Spector: An O-RAN Compliant Layer-3 Cellular Attack Detection ServiceArtifact Evaluation Award
- On the Cyber-Physical Security of Commercial Indoor Delivery Robot SystemsBest Technical Poster Award
- MORPH: Towards Automated Concept Drift Adaptation for Malware DetectionBest Poster Presentation Award
20234
- Your Router is My Prober: Measuring IPv6 Networks via ICMP Rate Limiting Side ChannelsDistinguished Paper Award
- DARWIN: Survival of the Fittest Fuzzing MutatorsDistinguished Paper Award
- A Monte Carlo Ensemble Approach to Automatically Identifying Keywords in Binary Message FormatsBest Technical Poster Award
- VICEROY: GDPR-/CCPA-complaint Enforcement of Verifiable Accountless Consumer RequestsBest Poster Presentation Award
20224
- Preventing Kernel Hacks with HAKCsDistinguished Paper Award
- Automated Whitebox Fuzz TestingTest of Time Award
- Detecting Misinformation about Zoom’s Security and Privacy ThreatsBest Technical Poster Award
- Improving the Performance and Security of Tor’s Onion ServicesBest Poster Presentation Award
20214
- Awakening the Web"s Sleeper Agents: Misusing Service Workers for Privacy LeakageDistinguished Paper Award
- A Framework for Effective Corporate Communication after Cyber Security IncidentsBest Post Award
- Limiting Damage Spread in the Internet of Things Using Features-based Immunisation TechniquesBest Post Award
- Automated Vulnerability Assessment for Embedded SystemsBest Post Award
20206
- Melting Pot of Origins: Compromising the Intermediary Web Services that Rehost WebsitesDistinguished Paper Award
- A First Step Towards Automated Detection of Buffer Overrun VulnerabilitiesTest of Time Award
- The Design and Implementation of Datagram TLSTest of Time Award
- Dynamic Taint Analysis for Automatic Detection, Analysis, and Signature Generation of Exploits on Commodity SoftwareTest of Time Award
- Security of Deep Learning based Lane Keeping Assistance System under Physical-World Adversarial AttackDistinguished Technical Poster Award
- Poster: Cybercrime Investigators are Users Too! Understanding the Socio-Technical Challenges Faced by Law EnforcementDistinguished Poster Presentation
201917
- MBeacon: Privacy-Preserving Beacons for DNA Methylation DataDistinguished Paper Award
- Establishing Software Root of Trust UnconditionallyDistinguished Paper Award
- Cracking the Wall of Confinement: Understanding and Analyzing Malicious Domain Take-downsDistinguished Paper Award
- Cleaning Up the Internet of Evil Things: Real-World Evidence on ISP and Consumer Efforts to Remove MiraiDistinguished Paper Award
- Data Oblivious ISA Extensions for Side Channel-Resistant and High Performance ComputingDistinguished Paper Award Honorable Mentions
- Graph-based Security and Privacy Analytics via Collective Classification with Joint Weight Learning and PropagationDistinguished Paper Award Honorable Mentions
- ICSREF: A Framework for Automated Reverse Engineering of Industrial Control Systems BinariesDistinguished Paper Award Honorable Mentions
- Ginseng: Keeping Secrets in Registers When You Distrust the Operating SystemDistinguished Paper Award Honorable Mentions
- One Engine To Serve "em All: Inferring Taint Rules Without Architectural SemanticsDistinguished Paper Award Honorable Mentions
- On the Challenges of Geographical Avoidance for TorDistinguished Paper Award Honorable Mentions
- Privacy Attacks to the 4G and 5G Cellular Paging Protocols Using Side Channel InformationDistinguished Paper Award Honorable Mentions
- SKEME: A Versatile Secure Key Exchange Mechanism for InternetTest of Time Award
- Client Puzzles: A Cryptographic Countermeasure Against Connection Depletion AttacksTest of Time Award
- A Virtual Machine Introspection Based Architecture for Intrusion DetectionTest of Time Award
- PhishFarm: A Scalable Framework for Measuring the Effectiveness of Evasion Techniques Against Browser Phishing BlacklistsDistinguished Technical Poster Award
- Poster: Automated Evaluation of FuzzersDistinguished Technical Poster Award
- Poster: Security Analysis of Multi-Sensor Fusion based Localization in Autonomous VehiclesDistinguished Poster Presentation
ACM CCS
Distinguished Paper Award79
- Split Unlearning2025
- SyzSpec: Specification Generation for Linux Kernel Fuzzing via Under-Constrained Symbolic Execution2025
- Jazzline: Composable CryptoLine functional correctness proofs for Jasmin programs2025
- BACScan: Automatic Black-Box Detection of Broken-Access-Control Vulnerabilities in Web Applications2025
- Forking the RANDAO: Manipulating Ethereum"s Distributed Randomness Beacon2025
- DivTrackee versus DynTracker: Promoting Diversity in Anti-Facial Recognition against Dynamic FR Strategy2025
- RingSG: Optimal Secure Vertex-Centric Computation for Collaborative Graph Processing2025
- High-Throughput Universally Composable Threshold FHE Decryption2025
- Rethinking Tamper-Evident Logging: A High-Performance, Co-Designed Auditing System2025
- Empirical Security Analysis of Software-based Fault Isolation through Controlled Fault Injection2025
- Leaky Apps: Large-scale Analysis of Secrets Distributed in Android and iOS Apps2025
- PAnDA: Rethinking Metric Differential Privacy Optimization at Scale with Anchor-Based Approximation2025
- Harnessing Sparsification in Federated Learning: A Secure, Efficient, and Differentially Private Realization2025
- Harnessing Vital Sign Vibration Harmonics for Effortless and Inbuilt XR User Authentication2025
- The Odyssey of robots.txt Governance: Measuring Convention Implications of Web Bots in Large Language Model Services2025
- Layered, Overlapping, and Inconsistent: A Large-Scale Analysis of the Multiple Privacy Policies and Controls of U.S. Banks2025
- Adversarial Observations in Weather Forecasting2025
- On the Security of SSH Client Signatures2025
- A Decade-long Landscape of Advanced Persistent Threats: Longitudinal Analysis and Global Trends2025
- BadAML: Exploiting Legacy Firmware Interfaces to Compromise Confidential Virtual Machines2025
- Looping for Good: Cyclic Proofs for Security Protocols2025
- Exact Robustness Certification of k-Nearest Neighbors2025
- Sliced PIR: Offloading Heavyweight Work with NTT2025
- Automatically Detecting Online Deceptive Patterns2025
- Don"t Look Up: There Are Sensitive Internal Links in the Clear on GEO Satellites2025
- WireTap: Breaking Server SGX via DRAM Bus Interposition2025
- Optimistic, Signature-Free Reliable Broadcast and Its Applications2025
- CITesting: Systematic Testing of Context Integrity Violations in Cellular Core Networks2025
- From OT to OLE with Subquadratic Communication2025
- The OCH Authenticated Encryption Scheme2025
- Better Be Computer or I"m Dumb": A Large-Scale Evaluation of Humans as Audio Deepfake Detectors2024
- Organic or Diffused: Can We Distinguish Human Art from AI-generated Images?2024
- Unmasking the Security and Usability of Password Masking2024
- Content, Nudges and Incentives: A Study on the Effectiveness and Perception of Embedded Phishing Training2024
- QueryCheetah: Fast Automated Discovery of Attribute Inference Attacks Against Query-Based Systems2024
- Cross-silo Federated Learning with Record-level Personalized Differential Privacy (Paper 1093)2024
- Lutris: A Blockchain Combining Broadcast and Consensus2024
- Atomic and Fair Data Exchange via Blockchain2024
- DoubleUp Roll: Double-spending in Arbitrum by Rolling It Back2024
- ERACAN: Defending Against an Emerging CAN Threat Model2024
- Spec-o-Scope: Cache Probing at Cache Speed2024
- Principled Microarchitectural Isolation on Cloud CPUs2024
- RefleXnoop: Passwords Snooping on NLoS Laptops Leveraging Screen-Induced Sound Reflection2024
- Libra: Architectural Support for Principled, Secure, and Efficient Balanced Execution on High-End Processors2024
- Testing Side-channel Security of Cryptographic Implementations Against Future Microarchitectures2024
- Isolate and Detect the Untrusted Driver with a Virtual Box2024
- ReSym: Harnessing LLMs to Recover Variable and Data Structure Symbols from Stripped Binaries2024
- Manipulative Interference Attacks2024
- uMMU: Securing Data Confidentiality with Unobservable Memory Subsystem2024
- Jäger: Automated Telephone Call Traceback2024
- The Harder You Try, The Harder You Fail: The KeyTrap Denial-of-Service Algorithmic Complexity Attacks on DNSSEC2024
- FuzzCache: Optimizing Web Application Fuzzing Through Software-Based Data Cache2024
- Stealing Trust: Unraveling Blind Message Attacks in Web3 Authentication2024
- Practical Key Extraction Attacks in Leading MPC Wallets2024
- Fast Two-party Threshold ECDSA with Proactive Security2024
- Distributed Backdoor Attacks on Federated Graph Learning and Certified Defenses2024
- Moderator: Moderating Text-to-Image Diffusion Models through Fine-grained Context-based Policies2024
- Alert Alchemy: SOC Workflows and Decisions in the Management of NIDS Rules2023
- Amplification by Shuffling without Shuffling2023
- Batchman and Robin: Batched and Non-batched Branching for Interactive ZK2023
- Capacity: Cryptographically-Enforced In-process Capabilities for Modern ARM Architectures2023
- CoCo: Efficient Browser Extension Vulnerability Detection via Coverage-guided, Concurrent Abstract Interpretation2023
- Concurrent Composition for Interactive Differential Privacy with Adaptive Privacy-Loss Parameters2023
- FutORAMa: A Concretely Efficient Hierarchical Oblivious RAM2023
- HE3DB: An Efficient and Elastic Encrypted Database Via Arithmetic-And-Logic Fully Homomorphic Encryption2023
- How Hard is Takeover in DPoS Blockchains? Understanding the Security of Coin-based Voting Governance2023
- Large Language Models for Code: Security Hardening and Adversarial Testing2023
- PANIC: PAN-assisted Intra-process Memory Isolation on ARM2023
- Security Verification of Low-Trust Architectures2023
- Silence is not Golden: Disrupting the Load Balancing of Authoritative DNS Servers2023
- Specification and Verification of Side-channel Security for Open-source Processors via Leakage Contracts2023
- SpecVerilog: Adapting Information Flow Control for Secure Speculation2023
- Stealing the Decoding Algorithms of Language Models2023
- Uncle Maker: (Time)Stamping Out The Competition in Ethereum2023
- Victory by KO: Attacking OpenPGP Using Key Overwriting2022
- Proving UNSAT in Zero Knowledge2022
- Automatic Detection of Speculative Execution Combinations2022
- Zapper: Smart Contracts with Data and Identity Privacy2022
- STAR: Secret Sharing for Private Threshold Aggregation Reporting2022
Best Paper Award26
- XSinator.com: From a Formal Model to the Automatic Evaluation of Cross-Site Leaks in Web Browsers2021
- One Glitch to Rule Them All: Fault Injection Attacks Against AMD"s Secure Encrypted Virtualization2021
- On the Renyi Differential Privacy of the Shuffle Model2021
- On the (In)Security of ElGamal in OpenPGP2021
- V-Shuttle: Scalable and Semantics-Aware Hypervisor Virtual Device Fuzzing2021
- DNS Cache Poisoning Attack Reloaded: Revolutions with Side Channels2020
- Where Does It Go? Refining Indirect-Call Targets with Multi-layer Type Analysis2019
- LEMNA: Explaining Deep Learning based Security Applications2018
- Toward Detecting Violations of Differential Privacy2018
- Scaling ORAM for Secure Computation2017
- Better Bounds for Block Cipher Modes of Operation via Nonce-Based Key Derivation2017
- DolphinAttack: Inaudible Voice Commands2017
- Authenticated Garbling and Efficient Maliciously Secure Two-Party Computation2017
- A Formal Foundation for Secure Remote Execution of Enclaves2017
- A Surfeit of SSH Cipher Suites2016
- A Systematic Analysis of the Juniper Dual EC Incident2016
- High-Throughput Semi-Honest Secure Three-Party Computation with an Honest Majority2016
- Imperfect Forward Secrecy: How Diffie-Hellman Fails In Practice2015
- Guitar: Piecing Together Android App GUIs From Memory Images2015
- Automated Analysis And Synthesis Of Authenticated Encryption Schemes2015
- Private-by-Design Advertising Meets the Real World Alexey Reznichenko and Paul Francis2014
- Code Reuse Attacks in PHP: Automated POP Chain Generation2014
- Multi-ciphersuite security of the Secure Shell (SSH) protocol2014
- FANCI: Identification of Stealthy Malicious Logic Using Boolean Functional Analysis2013
- Path ORAM: An Extremely Simple Oblivious RAM Protocol2013
- Security Analysis of Integrated Circuit Camouflaging2013
Test of Time Award3
- Model Inversion Attacks that Exploit Confidence Information and Basic Countermeasures2025
- Privacy-Preserving Deep Learning2025
- Demystifying Incentives in the Consensus Computer2025
Best Poster Award2
- Computer Security Researchers’ Experiences with Vulnerability Disclosures2025
- Scalable Privacy-Preserving Linear Regression Training via Homomorphic Encryption2025
Distinguished Artifact Award15
- On the Security of SSH Client Signatures2025
- Protocols to Code: Formal Verification of a Secure Next-Generation Internet Router2025
- PickleBall: Secure Deserialization of Pickle-based Machine Learning Models2025
- ExfilState: Automated Discovery of Timer-Free Cache Side Channels on ARM CPUs2025
- Secure Parsing and Serializing with Separation Logic Applied to CBOR, CDDL, and COSE2025
- Helium: Scalable MPC among Lightweight Participants and under Churn2024
- Rules Refine the Riddle: Global Explanation for Deep Learning-Based Anomaly Detection in Security Applications2024
- Ents: An Efficient Three-party Training Framework for Decision Trees by Communication Optimization2024
- Keeping Up with the KEMs: Stronger Security Notions for KEMs and Automated Analysis of KEM-based Protocols2024
- GenderCARE: A Comprehensive Framework for Assessing and Reducing Gender Bias in Large Language Models2024
- Specification and Verification of Strong Timing Isolation of Hardware Enclaves2024
- Blocking Tracking JavaScript at the Function Granularity2024
- Jäger: Automated Telephone Call Traceback2024
- DarthShader: Fuzzing WebGPU Shader Translators & Compilers2024
- A Framework for Differential Privacy Against Timing Attacks2024
202540
- Split UnlearningDistinguished Paper Award
- SyzSpec: Specification Generation for Linux Kernel Fuzzing via Under-Constrained Symbolic ExecutionDistinguished Paper Award
- Jazzline: Composable CryptoLine functional correctness proofs for Jasmin programsDistinguished Paper Award
- BACScan: Automatic Black-Box Detection of Broken-Access-Control Vulnerabilities in Web ApplicationsDistinguished Paper Award
- Forking the RANDAO: Manipulating Ethereum"s Distributed Randomness BeaconDistinguished Paper Award
- DivTrackee versus DynTracker: Promoting Diversity in Anti-Facial Recognition against Dynamic FR StrategyDistinguished Paper Award
- RingSG: Optimal Secure Vertex-Centric Computation for Collaborative Graph ProcessingDistinguished Paper Award
- High-Throughput Universally Composable Threshold FHE DecryptionDistinguished Paper Award
- Rethinking Tamper-Evident Logging: A High-Performance, Co-Designed Auditing SystemDistinguished Paper Award
- Empirical Security Analysis of Software-based Fault Isolation through Controlled Fault InjectionDistinguished Paper Award
- Leaky Apps: Large-scale Analysis of Secrets Distributed in Android and iOS AppsDistinguished Paper Award
- PAnDA: Rethinking Metric Differential Privacy Optimization at Scale with Anchor-Based ApproximationDistinguished Paper Award
- Harnessing Sparsification in Federated Learning: A Secure, Efficient, and Differentially Private RealizationDistinguished Paper Award
- Harnessing Vital Sign Vibration Harmonics for Effortless and Inbuilt XR User AuthenticationDistinguished Paper Award
- The Odyssey of robots.txt Governance: Measuring Convention Implications of Web Bots in Large Language Model ServicesDistinguished Paper Award
- Layered, Overlapping, and Inconsistent: A Large-Scale Analysis of the Multiple Privacy Policies and Controls of U.S. BanksDistinguished Paper Award
- Adversarial Observations in Weather ForecastingDistinguished Paper Award
- On the Security of SSH Client SignaturesDistinguished Paper Award
- A Decade-long Landscape of Advanced Persistent Threats: Longitudinal Analysis and Global TrendsDistinguished Paper Award
- BadAML: Exploiting Legacy Firmware Interfaces to Compromise Confidential Virtual MachinesDistinguished Paper Award
- Looping for Good: Cyclic Proofs for Security ProtocolsDistinguished Paper Award
- Exact Robustness Certification of k-Nearest NeighborsDistinguished Paper Award
- Sliced PIR: Offloading Heavyweight Work with NTTDistinguished Paper Award
- Automatically Detecting Online Deceptive PatternsDistinguished Paper Award
- Don"t Look Up: There Are Sensitive Internal Links in the Clear on GEO SatellitesDistinguished Paper Award
- WireTap: Breaking Server SGX via DRAM Bus InterpositionDistinguished Paper Award
- Optimistic, Signature-Free Reliable Broadcast and Its ApplicationsDistinguished Paper Award
- CITesting: Systematic Testing of Context Integrity Violations in Cellular Core NetworksDistinguished Paper Award
- From OT to OLE with Subquadratic CommunicationDistinguished Paper Award
- The OCH Authenticated Encryption SchemeDistinguished Paper Award
- Model Inversion Attacks that Exploit Confidence Information and Basic CountermeasuresTest of Time Award
- Privacy-Preserving Deep LearningTest of Time Award
- Demystifying Incentives in the Consensus ComputerTest of Time Award
- Computer Security Researchers’ Experiences with Vulnerability DisclosuresBest Poster Award
- Scalable Privacy-Preserving Linear Regression Training via Homomorphic EncryptionBest Poster Award
- On the Security of SSH Client SignaturesDistinguished Artifact Award
- Protocols to Code: Formal Verification of a Secure Next-Generation Internet RouterDistinguished Artifact Award
- PickleBall: Secure Deserialization of Pickle-based Machine Learning ModelsDistinguished Artifact Award
- ExfilState: Automated Discovery of Timer-Free Cache Side Channels on ARM CPUsDistinguished Artifact Award
- Secure Parsing and Serializing with Separation Logic Applied to CBOR, CDDL, and COSEDistinguished Artifact Award
202437
- Better Be Computer or I"m Dumb": A Large-Scale Evaluation of Humans as Audio Deepfake DetectorsDistinguished Paper Award
- Organic or Diffused: Can We Distinguish Human Art from AI-generated Images?Distinguished Paper Award
- Unmasking the Security and Usability of Password MaskingDistinguished Paper Award
- Content, Nudges and Incentives: A Study on the Effectiveness and Perception of Embedded Phishing TrainingDistinguished Paper Award
- QueryCheetah: Fast Automated Discovery of Attribute Inference Attacks Against Query-Based SystemsDistinguished Paper Award
- Cross-silo Federated Learning with Record-level Personalized Differential Privacy (Paper 1093)Distinguished Paper Award
- Lutris: A Blockchain Combining Broadcast and ConsensusDistinguished Paper Award
- Atomic and Fair Data Exchange via BlockchainDistinguished Paper Award
- DoubleUp Roll: Double-spending in Arbitrum by Rolling It BackDistinguished Paper Award
- ERACAN: Defending Against an Emerging CAN Threat ModelDistinguished Paper Award
- Spec-o-Scope: Cache Probing at Cache SpeedDistinguished Paper Award
- Principled Microarchitectural Isolation on Cloud CPUsDistinguished Paper Award
- RefleXnoop: Passwords Snooping on NLoS Laptops Leveraging Screen-Induced Sound ReflectionDistinguished Paper Award
- Libra: Architectural Support for Principled, Secure, and Efficient Balanced Execution on High-End ProcessorsDistinguished Paper Award
- Testing Side-channel Security of Cryptographic Implementations Against Future MicroarchitecturesDistinguished Paper Award
- Isolate and Detect the Untrusted Driver with a Virtual BoxDistinguished Paper Award
- ReSym: Harnessing LLMs to Recover Variable and Data Structure Symbols from Stripped BinariesDistinguished Paper Award
- Manipulative Interference AttacksDistinguished Paper Award
- uMMU: Securing Data Confidentiality with Unobservable Memory SubsystemDistinguished Paper Award
- Jäger: Automated Telephone Call TracebackDistinguished Paper Award
- The Harder You Try, The Harder You Fail: The KeyTrap Denial-of-Service Algorithmic Complexity Attacks on DNSSECDistinguished Paper Award
- FuzzCache: Optimizing Web Application Fuzzing Through Software-Based Data CacheDistinguished Paper Award
- Stealing Trust: Unraveling Blind Message Attacks in Web3 AuthenticationDistinguished Paper Award
- Practical Key Extraction Attacks in Leading MPC WalletsDistinguished Paper Award
- Fast Two-party Threshold ECDSA with Proactive SecurityDistinguished Paper Award
- Distributed Backdoor Attacks on Federated Graph Learning and Certified DefensesDistinguished Paper Award
- Moderator: Moderating Text-to-Image Diffusion Models through Fine-grained Context-based PoliciesDistinguished Paper Award
- Helium: Scalable MPC among Lightweight Participants and under ChurnDistinguished Artifact Award
- Rules Refine the Riddle: Global Explanation for Deep Learning-Based Anomaly Detection in Security ApplicationsDistinguished Artifact Award
- Ents: An Efficient Three-party Training Framework for Decision Trees by Communication OptimizationDistinguished Artifact Award
- Keeping Up with the KEMs: Stronger Security Notions for KEMs and Automated Analysis of KEM-based ProtocolsDistinguished Artifact Award
- GenderCARE: A Comprehensive Framework for Assessing and Reducing Gender Bias in Large Language ModelsDistinguished Artifact Award
- Specification and Verification of Strong Timing Isolation of Hardware EnclavesDistinguished Artifact Award
- Blocking Tracking JavaScript at the Function GranularityDistinguished Artifact Award
- Jäger: Automated Telephone Call TracebackDistinguished Artifact Award
- DarthShader: Fuzzing WebGPU Shader Translators & CompilersDistinguished Artifact Award
- A Framework for Differential Privacy Against Timing AttacksDistinguished Artifact Award
202317
- Alert Alchemy: SOC Workflows and Decisions in the Management of NIDS RulesDistinguished Paper Award
- Amplification by Shuffling without ShufflingDistinguished Paper Award
- Batchman and Robin: Batched and Non-batched Branching for Interactive ZKDistinguished Paper Award
- Capacity: Cryptographically-Enforced In-process Capabilities for Modern ARM ArchitecturesDistinguished Paper Award
- CoCo: Efficient Browser Extension Vulnerability Detection via Coverage-guided, Concurrent Abstract InterpretationDistinguished Paper Award
- Concurrent Composition for Interactive Differential Privacy with Adaptive Privacy-Loss ParametersDistinguished Paper Award
- FutORAMa: A Concretely Efficient Hierarchical Oblivious RAMDistinguished Paper Award
- HE3DB: An Efficient and Elastic Encrypted Database Via Arithmetic-And-Logic Fully Homomorphic EncryptionDistinguished Paper Award
- How Hard is Takeover in DPoS Blockchains? Understanding the Security of Coin-based Voting GovernanceDistinguished Paper Award
- Large Language Models for Code: Security Hardening and Adversarial TestingDistinguished Paper Award
- PANIC: PAN-assisted Intra-process Memory Isolation on ARMDistinguished Paper Award
- Security Verification of Low-Trust ArchitecturesDistinguished Paper Award
- Silence is not Golden: Disrupting the Load Balancing of Authoritative DNS ServersDistinguished Paper Award
- Specification and Verification of Side-channel Security for Open-source Processors via Leakage ContractsDistinguished Paper Award
- SpecVerilog: Adapting Information Flow Control for Secure SpeculationDistinguished Paper Award
- Stealing the Decoding Algorithms of Language ModelsDistinguished Paper Award
- Uncle Maker: (Time)Stamping Out The Competition in EthereumDistinguished Paper Award
20225
- Victory by KO: Attacking OpenPGP Using Key OverwritingDistinguished Paper Award
- Proving UNSAT in Zero KnowledgeDistinguished Paper Award
- Automatic Detection of Speculative Execution CombinationsDistinguished Paper Award
- Zapper: Smart Contracts with Data and Identity PrivacyDistinguished Paper Award
- STAR: Secret Sharing for Private Threshold Aggregation ReportingDistinguished Paper Award
20215
- XSinator.com: From a Formal Model to the Automatic Evaluation of Cross-Site Leaks in Web BrowsersBest Paper Award
- One Glitch to Rule Them All: Fault Injection Attacks Against AMD"s Secure Encrypted VirtualizationBest Paper Award
- On the Renyi Differential Privacy of the Shuffle ModelBest Paper Award
- On the (In)Security of ElGamal in OpenPGPBest Paper Award
- V-Shuttle: Scalable and Semantics-Aware Hypervisor Virtual Device FuzzingBest Paper Award
20201
- DNS Cache Poisoning Attack Reloaded: Revolutions with Side ChannelsBest Paper Award
20191
- Where Does It Go? Refining Indirect-Call Targets with Multi-layer Type AnalysisBest Paper Award
20182
- LEMNA: Explaining Deep Learning based Security ApplicationsBest Paper Award
- Toward Detecting Violations of Differential PrivacyBest Paper Award
20175
- Scaling ORAM for Secure ComputationBest Paper Award
- Better Bounds for Block Cipher Modes of Operation via Nonce-Based Key DerivationBest Paper Award
- DolphinAttack: Inaudible Voice CommandsBest Paper Award
- Authenticated Garbling and Efficient Maliciously Secure Two-Party ComputationBest Paper Award
- A Formal Foundation for Secure Remote Execution of EnclavesBest Paper Award
20163
- A Surfeit of SSH Cipher SuitesBest Paper Award
- A Systematic Analysis of the Juniper Dual EC IncidentBest Paper Award
- High-Throughput Semi-Honest Secure Three-Party Computation with an Honest MajorityBest Paper Award
20153
- Imperfect Forward Secrecy: How Diffie-Hellman Fails In PracticeBest Paper Award
- Guitar: Piecing Together Android App GUIs From Memory ImagesBest Paper Award
- Automated Analysis And Synthesis Of Authenticated Encryption SchemesBest Paper Award
20143
- Private-by-Design Advertising Meets the Real World Alexey Reznichenko and Paul FrancisBest Paper Award
- Code Reuse Attacks in PHP: Automated POP Chain GenerationBest Paper Award
- Multi-ciphersuite security of the Secure Shell (SSH) protocolBest Paper Award
20133
- FANCI: Identification of Stealthy Malicious Logic Using Boolean Functional AnalysisBest Paper Award
- Path ORAM: An Extremely Simple Oblivious RAM ProtocolBest Paper Award
- Security Analysis of Integrated Circuit CamouflagingBest Paper Award
USENIX Sec
Distinguished Paper Award94
- Confusing Value with Enumeration: Studying the Use of CVEs in Academia2025
- Characterizing and Detecting Propaganda-Spreading Accounts on Telegram2025
- My ZIP isn"t your ZIP: Identifying and Exploiting Semantic Gaps Between ZIP Parsers2025
- How Transparent is Usable Privacy and Security Research? A Meta-Study on Current Research Transparency Practices2025
- Catch-22: Uncovering Compromised Hosts using SSH Public Keys2025
- We Have a Package for You! A Comprehensive Analysis of Package Hallucinations by Code Generating LLMs2025
- Branch Privilege Injection: Compromising Spectre v2 Hardware Mitigations by Exploiting Branch Predictor Race Conditions2025
- Fuzzing the PHP Interpreter via Dataflow Fusion2025
- Indirector: High-Precision Branch Target Injection Attacks Exploiting the Indirect Branch Predictor2024
- ENG25519: Faster TLS 1.3 handshake using optimized X25519 and Ed255192024
- Digital Discrimination of Users in Sanctioned States: The Case of the Cuba Embargo2024
- InSpectre Gadget: Inspecting the Residual Attack Surface of Cross-privilege Spectre v22024
- I Don"t Know If We"re Doing Good. I Don"t Know If We"re Doing Bad": Investigating How Practitioners ScopeMotivate, and Conduct Privacy Work When Developing AI Products2024
- Data Coverage for Guided Fuzzing2024
- DVSorder: Ballot Randomization Flaws Threaten Voter Privacy2024
- PURE: Payments with UWB RElay-protection2024
- HYPERPILL: Fuzzing for Hypervisor-bugs by Leveraging the Hardware Virtualization Interface2024
- Learning with Semantics: Towards a Semantics-Aware Routing Anomaly Detection System2024
- Adversarial Illusions in Multi-Modal Embeddings2024
- Dancer in the Dark: Synthesizing and Evaluating Polyglots for Blind Cross-Site Scripting2024
- Smudged Fingerprints: Characterizing and Improving the Performance of Web Application Fingerprinting2024
- YesOne-Bit-Flip Matters! Universal DNN Model Inference Depletion with Runtime Code Fault Injection2024
- WhisperFuzz: White-Box Fuzzing for Detecting and Locating Timing Vulnerabilities in Processors2024
- Logic Gone Astray: A Security Analysis Framework for the Control Plane Protocols of 5G Basebands2024
- Terrapin Attack: Breaking SSH Channel Integrity By Sequence Number Manipulation2024
- Don"t Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language Models2024
- Automated Analysis of Protocols that use Authenticated Encryption: How Subtle AEAD Differences can impact Protocol Security2023
- A Bug"s Life: Analyzing the Lifecycle and Mitigation Process of Content Security Policy Bugs2023
- BotScreen: Trust Everybodybut Cut the Aimbots Yourself2023
- Ethical Frameworks and Computer Security Trolley Problems: Foundations for Conversations2023
- Glaze: Protecting Artists from Style Mimicry by Text-to-Image Models2023
- Remote Direct Memory Introspection2023
- Don’t be Dense: Efficient Keyword PIR for Sparse Databases2023
- TreeSync: Authenticated Group Management for Messaging Layer Security2023
- Hash Gone Bad: Automated discovery of protocol attacks that exploit hash function weaknesses2023
- Bug Hunters’ Perspectives on the Challenges and Benefits of the Bug Bounty Ecosystem2023
- An Efficient Design of Intelligent Network Data Plane2023
- Examining Power Dynamics and User Privacy in Smart Technology Use Among Jordanian Households2023
- Tight Auditing of Differentially Private Machine Learning2023
- Account Security Interfaces: ImportantUnintuitive, and Untrustworthy2023
- TreeSync: Authenticated Group Management for Messaging Layer Security2023
- Hash Gone Bad: Automated discovery of protocol attacks that exploit hash function weaknesses2023
- FIXREVERTER: A Realistic Bug Injection Methodology for Benchmarking Fuzz Testing2022
- Attacks on Deidentification"s Defenses2022
- Augmenting Decompiler Output with Learned Variable Names and Types2022
- The Antrim County 2020 Election Incident: An Independent Forensic Investigation2022
- Identity Confusion in WebView-based Mobile App-in-app Ecosystems2022
- Provably-Safe Multilingual Software Sandboxing using WebAssembly2022
- An Audit of Facebook"s Political Ad Policy Enforcement2022
- Private Signaling2022
- Faster Yet Safer: Logging System Via Fixed-Key Blockcipher2022
- Online Website Fingerprinting: Evaluating Website Fingerprinting Attacks on Tor in the Real World2022
- Dos and Don"ts of Machine Learning in Computer Security2022
- OpenVPN is Open to VPN Fingerprinting2022
- You Autocomplete Me: Poisoning Vulnerabilities in Neural Code Completion2021
- Why wouldn"t someone think of democracy as a target?": Security practices & challenges of people involved with U.S. political campaigns2021
- An Analysis of Speculative Type Confusion Vulnerabilities in the Wild2021
- Weaponizing Middleboxes for TCP Reflected Amplification2021
- Rage Against the Machine Clear: A Systematic Analysis of Machine Clears and Their Implications for Transient Execution Attacks2021
- It"s stressful having all these phones": Investigating Sex Workers" Safety GoalsRisks, and Practices Online2021
- Poisoning the Unlabeled Dataset of Semi-Supervised Learning2021
- The Tools and Tactics Used in Intimate Partner Surveillance: An Analysis of Online Infidelity Forums2020
- Symbolic execution with SymCC: Don"t interpretcompile!2020
- The Unpatchable Silicon: A Full Break of the Bitstream Encryption of Xilinx 7-Series FPGAs2020
- Who"s Calling? Characterizing Robocalls through Audio and Metadata Analysis2020
- Understanding security mistakes developers make: Qualitative analysis from Build ItBreak It, Fix It2020
- Datalog Disassembly2020
- A Comprehensive Quality Evaluation of Security and Privacy Advice on the Web2020
- Sunrise to Sunset: Analyzing the End-to-end Life Cycle and Effectiveness of Phishing Attacks at Scale2020
- Retrofitting Fine Grain Isolation in the Firefox Renderer2020
- Pancake: Frequency Smoothing for Encrypted Data Stores2020
- Composition Kills: A Case Study of Email Sender Authentication2020
- Protecting accounts from credential stuffing with password breach alerting2019
- Computer Security and Privacy in the Interactions Between Victim Service Providers and Human Trafficking Survivors2019
- Users Really Do Answer Telephone Scams2019
- Detecting and Characterizing Lateral Phishing at Scale2019
- ERIM: SecureEfficient In-process Isolation with Protection Keys (MPK)2019
- 50 Ways to Leak Your Data: An Exploration of Apps" Circumvention of the Android Permissions System2019
- Fear the Reaper: Characterization and Fast Detection of Card Skimmers2018
- Who Left Open the Cookie Jar? A Comprehensive Evaluation of Third-Party Cookie Policies2018
- The Battle for New York: A Case Study of Applied Digital Threat Modeling at the Enterprise Level2018
- NAVEX: Precise and Scalable Exploit Generation for Dynamic Web Applications2018
- QSYM : A Practical Concolic Execution Engine Tailored for Hybrid Fuzzing2018
- Detecting Credential Spearphishing in Enterprise Settings2017
- MPI: Multiple Perspective Attack Investigation with Semantic Aware Execution Partitioning2017
- Vale: Verifying High-Performance Cryptographic Assembly Code2017
- CLKSCREW: Exposing the Perils of Security-Oblivious Energy Management2017
- A LongitudinalEnd-to-End View of the DNSSEC Ecosystem2017
- Loophole: Timing Attacks on Shared Event Loops in Chrome2017
- ZKBoo: Faster Zero-Knowledge for Boolean Circuits2016
- The Million-Key Question—Investigating the Origins of RSA Public Keys2016
- Under-Constrained Symbolic Execution: Correctness Checking for Real Code2016
- All Your Biases Belong to Us: Breaking RC4 in WPA-TKIP and TLS2015
- Fast, Lean, and Accurate: Modeling Password Guessability Using Neural Networks2015
Test of Time Award4
- Comprehensive Experimental Analyses of Automotive Attack Surfaces2025
- Privacy in Pharmacogenetics: An End-to-End Case Study of Personalized Warfarin Dosing2024
- Mining Your Ps and Qs: Detection of Widespread Weak Keys in Network Devices2022
- Bro: A System for Detecting Network Intruders in Real-Time2022
20259
- Confusing Value with Enumeration: Studying the Use of CVEs in AcademiaDistinguished Paper Award
- Characterizing and Detecting Propaganda-Spreading Accounts on TelegramDistinguished Paper Award
- My ZIP isn"t your ZIP: Identifying and Exploiting Semantic Gaps Between ZIP ParsersDistinguished Paper Award
- How Transparent is Usable Privacy and Security Research? A Meta-Study on Current Research Transparency PracticesDistinguished Paper Award
- Catch-22: Uncovering Compromised Hosts using SSH Public KeysDistinguished Paper Award
- We Have a Package for You! A Comprehensive Analysis of Package Hallucinations by Code Generating LLMsDistinguished Paper Award
- Branch Privilege Injection: Compromising Spectre v2 Hardware Mitigations by Exploiting Branch Predictor Race ConditionsDistinguished Paper Award
- Fuzzing the PHP Interpreter via Dataflow FusionDistinguished Paper Award
- Comprehensive Experimental Analyses of Automotive Attack SurfacesTest of Time Award
202419
- Indirector: High-Precision Branch Target Injection Attacks Exploiting the Indirect Branch PredictorDistinguished Paper Award
- ENG25519: Faster TLS 1.3 handshake using optimized X25519 and Ed25519Distinguished Paper Award
- Digital Discrimination of Users in Sanctioned States: The Case of the Cuba EmbargoDistinguished Paper Award
- InSpectre Gadget: Inspecting the Residual Attack Surface of Cross-privilege Spectre v2Distinguished Paper Award
- I Don"t Know If We"re Doing Good. I Don"t Know If We"re Doing Bad": Investigating How Practitioners ScopeMotivate, and Conduct Privacy Work When Developing AI ProductsDistinguished Paper Award
- Data Coverage for Guided FuzzingDistinguished Paper Award
- DVSorder: Ballot Randomization Flaws Threaten Voter PrivacyDistinguished Paper Award
- PURE: Payments with UWB RElay-protectionDistinguished Paper Award
- HYPERPILL: Fuzzing for Hypervisor-bugs by Leveraging the Hardware Virtualization InterfaceDistinguished Paper Award
- Learning with Semantics: Towards a Semantics-Aware Routing Anomaly Detection SystemDistinguished Paper Award
- Adversarial Illusions in Multi-Modal EmbeddingsDistinguished Paper Award
- Dancer in the Dark: Synthesizing and Evaluating Polyglots for Blind Cross-Site ScriptingDistinguished Paper Award
- Smudged Fingerprints: Characterizing and Improving the Performance of Web Application FingerprintingDistinguished Paper Award
- YesOne-Bit-Flip Matters! Universal DNN Model Inference Depletion with Runtime Code Fault InjectionDistinguished Paper Award
- WhisperFuzz: White-Box Fuzzing for Detecting and Locating Timing Vulnerabilities in ProcessorsDistinguished Paper Award
- Logic Gone Astray: A Security Analysis Framework for the Control Plane Protocols of 5G BasebandsDistinguished Paper Award
- Terrapin Attack: Breaking SSH Channel Integrity By Sequence Number ManipulationDistinguished Paper Award
- Don"t Listen To Me: Understanding and Exploring Jailbreak Prompts of Large Language ModelsDistinguished Paper Award
- Privacy in Pharmacogenetics: An End-to-End Case Study of Personalized Warfarin DosingTest of Time Award
202316
- Automated Analysis of Protocols that use Authenticated Encryption: How Subtle AEAD Differences can impact Protocol SecurityDistinguished Paper Award
- A Bug"s Life: Analyzing the Lifecycle and Mitigation Process of Content Security Policy BugsDistinguished Paper Award
- BotScreen: Trust Everybodybut Cut the Aimbots YourselfDistinguished Paper Award
- Ethical Frameworks and Computer Security Trolley Problems: Foundations for ConversationsDistinguished Paper Award
- Glaze: Protecting Artists from Style Mimicry by Text-to-Image ModelsDistinguished Paper Award
- Remote Direct Memory IntrospectionDistinguished Paper Award
- Don’t be Dense: Efficient Keyword PIR for Sparse DatabasesDistinguished Paper Award
- TreeSync: Authenticated Group Management for Messaging Layer SecurityDistinguished Paper Award
- Hash Gone Bad: Automated discovery of protocol attacks that exploit hash function weaknessesDistinguished Paper Award
- Bug Hunters’ Perspectives on the Challenges and Benefits of the Bug Bounty EcosystemDistinguished Paper Award
- An Efficient Design of Intelligent Network Data PlaneDistinguished Paper Award
- Examining Power Dynamics and User Privacy in Smart Technology Use Among Jordanian HouseholdsDistinguished Paper Award
- Tight Auditing of Differentially Private Machine LearningDistinguished Paper Award
- Account Security Interfaces: ImportantUnintuitive, and UntrustworthyDistinguished Paper Award
- TreeSync: Authenticated Group Management for Messaging Layer SecurityDistinguished Paper Award
- Hash Gone Bad: Automated discovery of protocol attacks that exploit hash function weaknessesDistinguished Paper Award
202214
- FIXREVERTER: A Realistic Bug Injection Methodology for Benchmarking Fuzz TestingDistinguished Paper Award
- Attacks on Deidentification"s DefensesDistinguished Paper Award
- Augmenting Decompiler Output with Learned Variable Names and TypesDistinguished Paper Award
- The Antrim County 2020 Election Incident: An Independent Forensic InvestigationDistinguished Paper Award
- Identity Confusion in WebView-based Mobile App-in-app EcosystemsDistinguished Paper Award
- Provably-Safe Multilingual Software Sandboxing using WebAssemblyDistinguished Paper Award
- An Audit of Facebook"s Political Ad Policy EnforcementDistinguished Paper Award
- Private SignalingDistinguished Paper Award
- Faster Yet Safer: Logging System Via Fixed-Key BlockcipherDistinguished Paper Award
- Online Website Fingerprinting: Evaluating Website Fingerprinting Attacks on Tor in the Real WorldDistinguished Paper Award
- Dos and Don"ts of Machine Learning in Computer SecurityDistinguished Paper Award
- OpenVPN is Open to VPN FingerprintingDistinguished Paper Award
- Mining Your Ps and Qs: Detection of Widespread Weak Keys in Network DevicesTest of Time Award
- Bro: A System for Detecting Network Intruders in Real-TimeTest of Time Award
20217
- You Autocomplete Me: Poisoning Vulnerabilities in Neural Code CompletionDistinguished Paper Award
- Why wouldn"t someone think of democracy as a target?": Security practices & challenges of people involved with U.S. political campaignsDistinguished Paper Award
- An Analysis of Speculative Type Confusion Vulnerabilities in the WildDistinguished Paper Award
- Weaponizing Middleboxes for TCP Reflected AmplificationDistinguished Paper Award
- Rage Against the Machine Clear: A Systematic Analysis of Machine Clears and Their Implications for Transient Execution AttacksDistinguished Paper Award
- It"s stressful having all these phones": Investigating Sex Workers" Safety GoalsRisks, and Practices OnlineDistinguished Paper Award
- Poisoning the Unlabeled Dataset of Semi-Supervised LearningDistinguished Paper Award
202011
- The Tools and Tactics Used in Intimate Partner Surveillance: An Analysis of Online Infidelity ForumsDistinguished Paper Award
- Symbolic execution with SymCC: Don"t interpretcompile!Distinguished Paper Award
- The Unpatchable Silicon: A Full Break of the Bitstream Encryption of Xilinx 7-Series FPGAsDistinguished Paper Award
- Who"s Calling? Characterizing Robocalls through Audio and Metadata AnalysisDistinguished Paper Award
- Understanding security mistakes developers make: Qualitative analysis from Build ItBreak It, Fix ItDistinguished Paper Award
- Datalog DisassemblyDistinguished Paper Award
- A Comprehensive Quality Evaluation of Security and Privacy Advice on the WebDistinguished Paper Award
- Sunrise to Sunset: Analyzing the End-to-end Life Cycle and Effectiveness of Phishing Attacks at ScaleDistinguished Paper Award
- Retrofitting Fine Grain Isolation in the Firefox RendererDistinguished Paper Award
- Pancake: Frequency Smoothing for Encrypted Data StoresDistinguished Paper Award
- Composition Kills: A Case Study of Email Sender AuthenticationDistinguished Paper Award
20196
- Protecting accounts from credential stuffing with password breach alertingDistinguished Paper Award
- Computer Security and Privacy in the Interactions Between Victim Service Providers and Human Trafficking SurvivorsDistinguished Paper Award
- Users Really Do Answer Telephone ScamsDistinguished Paper Award
- Detecting and Characterizing Lateral Phishing at ScaleDistinguished Paper Award
- ERIM: SecureEfficient In-process Isolation with Protection Keys (MPK)Distinguished Paper Award
- 50 Ways to Leak Your Data: An Exploration of Apps" Circumvention of the Android Permissions SystemDistinguished Paper Award
20185
- Fear the Reaper: Characterization and Fast Detection of Card SkimmersDistinguished Paper Award
- Who Left Open the Cookie Jar? A Comprehensive Evaluation of Third-Party Cookie PoliciesDistinguished Paper Award
- The Battle for New York: A Case Study of Applied Digital Threat Modeling at the Enterprise LevelDistinguished Paper Award
- NAVEX: Precise and Scalable Exploit Generation for Dynamic Web ApplicationsDistinguished Paper Award
- QSYM : A Practical Concolic Execution Engine Tailored for Hybrid FuzzingDistinguished Paper Award
20176
- Detecting Credential Spearphishing in Enterprise SettingsDistinguished Paper Award
- MPI: Multiple Perspective Attack Investigation with Semantic Aware Execution PartitioningDistinguished Paper Award
- Vale: Verifying High-Performance Cryptographic Assembly CodeDistinguished Paper Award
- CLKSCREW: Exposing the Perils of Security-Oblivious Energy ManagementDistinguished Paper Award
- A LongitudinalEnd-to-End View of the DNSSEC EcosystemDistinguished Paper Award
- Loophole: Timing Attacks on Shared Event Loops in ChromeDistinguished Paper Award
20163
- ZKBoo: Faster Zero-Knowledge for Boolean CircuitsDistinguished Paper Award
- The Million-Key Question—Investigating the Origins of RSA Public KeysDistinguished Paper Award
- Under-Constrained Symbolic Execution: Correctness Checking for Real CodeDistinguished Paper Award
20152
- All Your Biases Belong to Us: Breaking RC4 in WPA-TKIP and TLSDistinguished Paper Award
- Fast, Lean, and Accurate: Modeling Password Guessability Using Neural NetworksDistinguished Paper Award