home.social

#usesec23 — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #usesec23, aggregated by home.social.

  1. Brown Secure Systems Lab (gitlab.com/brown-ssl/) had a strong representation @usenixassociation sponsored events this year! Neophytos Christou presented IvySyn at USENIX Security Symposium (SEC) '23, while Di Jin talked about EPF at USENIX Annual Technical Conference (ATC) '23 earlier in July!

    IvySyn fuzzes Deep Learning (DL) frameworks (TensorFlow, PyTorch) for memory-safety bugs and automatically synthesizes Python code snippets for triggering the respective vulnerabilities | usenix.org/.../usenixse.../pre | gitlab.com/brown-ssl/ivysyn

    EPF (ab)uses the (e)BPF interpreter for bypassing various kernel hardening mechanisms in Linux -- we also introduce a set of lightweight defenses against EPF-style attacks | usenix.org/conference/atc23/pr | gitlab.com/brown-ssl/epf

    #brownssl #ivysyn #epf #usenix #atc23 #usesec23

  2. Detecting fully encrypted traffic via entropy measurements: when being too random is itself a fingerprint
    #DeepPacketInspection #usesec23

    "How the Great Firewall of China Detects and Blocks Fully Encrypted Traffic"
    usenix.org/system/files/sec23f

  3. 📢 Our work on automated discovery of memory safety vulnerabilities in Deep Learning (DL) frameworks has been accepted at USENIX Security
    2023! Joint work with Neophytos Christou, Di Jin, Vaggelis Atlidakis, and Baishakhi Ray (Columbia) | arxiv.org/abs/2209.14921 | gitlab.com/brown-ssl/ivysyn | 39 CVEs 😎 🤘 💣 | #ivysyn #brownssl #usenixsecurity #usesec23