NISL
清华大学网络与信息安全实验室学术沙龙,欢迎关注~
This is the Paper Reading Seminar of Network and Information Security Lab (NISL) at Tsinghua University. Tune in for more details!
时间:2022年12月22日 14:00 - 16:00
腾讯会议:https://meeting.tencent.com/dm/Xm2zO15gwkir
会议ID:433-3172-5529
会议密码:221222
* 本次分享对外公开直播,线上参会者要求实名备注“姓名-单位”
Agenda
1.【论文分享】Web Cache Deception Escalates!
Presenter: 王一航
Conference: USENIX Security 2022
Authors:
Shi Seyed Ali Mirheidari, Matteo Golinelli, Kaan Onarlioglu, Engin Kirda, Bruno Crispo
Abstract:
This paper proposes a a novel WCD detection methodology that forgoes testing prerequisites, and utilizes page identicality checks and cache header heuristics to test any website.
Link to paper:
https://www.usenix.org/system/files/sec22summer_mirheidari.pdf
2.【论文分享】Non-Distinguishable Inconsistencies as a Deterministic Oracle for Detecting Security Bugs
Presenter: 殷婷婷
Conference: CCS 2022
Authors:
Qingyang Zhou, Qiushi Wu, Dinghao Liu, Shouling Ji, Kangjie Lu
Abstract:
This paper proposes a novel static method for detecting security bugs based on a new concept called Non-Distinguishable Inconsistencies (NDI).
Link to paper:
https://dl.acm.org/doi/pdf/10.1145/3548606.3560661
# 学术沙龙问卷反馈
编辑|刘明烜 高泽豫 李想
来源|NISL实验室

推荐站内搜索:最好用的开发软件、免费开源系统、渗透测试工具云盘下载、最新渗透测试资料、最新黑客工具下载……
还没有评论,来说两句吧...