- Custom Permission Misconfigurations in Android: A Large-Scale Security Analysis (TrustCom 2024)
- PeepWith A Mirror: Breaking The Integrity of Android App Sandboxing via Unprivileged Cache Side Channel (USENIX Security 2024)
- MtdScout: Complementing the Identification of Insecure Methods in Android Apps via Source-to-Bytecode Signature Generation and Tree-based Layered Search (Euro S&P 2024)
- Analyzing and Revivifying Function Signature Inference using Deep Learning (EMSE 2024)
- Beyond a Joke: Dead Code Elimination Can Delete Live Code (ICSE-NIER 2024)
- Towards Speedy Permission-Based Debloating for Android Apps (MOBILESoft 2024)
- TypeSqueezer: When Static Recovery of Function Signatures for Binary Executables Meets Dynamic Analysis (ACM Conference on Computer and Communications Security)
Research Experience
- Currently looking for undergraduate and graduate students to work with
- Hiring research engineers and postdocs for various computer security projects
Background
- Research Interests: Mobile security, Software security, Computer security