Publications

(2024). Unveiling IoT Security in Reality: A Firmware-Centric Journey. Security ‘24.

(2023). CEFI: Command Execution Flow Integrity for Embedded Devices. DIMVA 2023.

(2023). Understanding MPU Usage in Microcontroller-based Systems in the Wild. BAR'23.

(2023). Good Motive but Bad Design: Pitfalls in MPU Usage in Embedded Systems in the Wild. Black Hat (Eurpoe) 2022.

(2022). What Your Firmware Tells You Is Not How You Should Emulate It: A Specification-Guided Approach for Firmware Emulation. 2022 ACM SIGSAC Conference on Computer and Communications Security (CCS), CCF-A.

(2021). Automatic Firmware Emulation through Invalidity-guided Knowledge Inference. 30th USENIX Security Symposium (Usenix), CCF-A.

PDF Cite Code Project Slides

(2021). Reviewing IoT Security via Logic Bugs in IoT Platforms and Systems. IEEE Internet of Things Journal.

Cite

(2019). Identifying Privilege Separation Vulnerabilities in IoT Firmware with Symbolic Execution. European Symposium on Research in Computer Security 2019 (ESORICS), CCF-B.

Cite

(2019). Discovering and understanding the security hazards in the interactions between iot devices, mobile apps, and clouds on smart home platforms. 28th USENIX Security Symposium (Usenix), CCF-A.

PDF Cite Project

(2018). The Effect of IoT New Features on Security and Privacy: New Threats, Existing Solutions, and Challenges Yet to Be Solved. IEEE Internet of Things Journal, ESI Highly Cited Paper(top 1%).

Cite

(2017). 物联网安全综述(Survey of Internet of things security). 计算机研究与发展, 入选领跑者5000-中国精品科技期刊顶尖学术论文平台.

Cite